PRIVACY POLICY OF THE SHELLY FLEET MANAGER
(In force from 20 November 2024)
CONTENT
- Introduction
- Controller
- Personal Data
- Data Subject
- Data Protection Officer
- About the Shelly Service
- Types of Personal Data That We Process for the Provision of the Service
- Cross-Border Data Transfers
- Retention of Data
- The Service User’s Rights as Data Subject
- Information Security Measures
- Privacy Policy Updates
- Further Information
1. INTRODUCTION
Shelly Fleet Manager is a digital service enabling remote access, control, and monitoring of Shelly-branded devices and the appliances they are attached to.
This Privacy Policy applies to personal data processed when using Shelly Fleet Manager, accessible via Android/iOS or at https://fleet.shelly.com/. It is applicable whether used as a subscription-based pre-paid service or otherwise.
When users interact with Shelly Fleet Manager, Shelly Europe Ltd. processes their data as detailed herein, ensuring compliance with applicable data protection laws like the European Union’s GDPR.
2. CONTROLLER
The data controller for Shelly Fleet Manager is Shelly Europe Ltd., UIC: 202320104.
Registered Address:
103 Cherni Vruh Blvd., Sofia, 1407, Bulgaria
3. PERSONAL DATA
Personal data refers to any information that identifies or could identify a natural person, as defined under GDPR. Examples include:
- Name
- Identification number
- Location data
- Online identifiers
4. DATA SUBJECT
The data subject under this policy is any registered user of the Shelly Fleet Manager service, categorized as either an Admin User or Account User.
5. DATA PROTECTION OFFICER
For inquiries about the processing of personal data, contact the Data Protection Officer:
Email: dpo@shelly.com
6. ABOUT THE SHELLY FLEET MANAGER SERVICE
Shelly Fleet Manager provides monitoring and control capabilities for appliances via connected Shelly Devices. Key features include:
- Remote operation
- Power consumption measurements
- Schedule and mode configurations
Access Points:
- Mobile devices
- Laptops
- Tablets
Shelly Devices are linked to only one account. The Admin User can share device data at their discretion.
7. TYPES OF PERSONAL DATA THAT WE PROCESS FOR THE PROVISION OF THE SERVICE
7.1 Account Data
We process data such as:
- Email addresses
- Usernames
- Passwords
- Language preferences
- Customer support history
Purpose: Ensure secure service access, communication, and support.
7.2 Device Data & Service Usage
Collected data includes:
- Shelly device identifiers
- Network/server credentials
- Terminal device information (IP addresses, OS version)
Purpose: Enable device control, user interaction tracking, and system diagnostics.
7.3 Data with Explicit Consent
Includes personalized marketing emails and push notifications. Users can withdraw consent anytime via their account settings.
8. CROSS-BORDER DATA TRANSFERS
Data is processed primarily in Bulgaria, EU. For providers outside the EU, measures like Standard Contractual Clauses (SCCs) ensure compliance with GDPR.
9. RETENTION OF DATA
Data retention depends on:
- Contractual obligations: Retained while the account is active.
- Consent: Data deleted upon withdrawal of consent.
- Legal compliance: Retention per statutory requirements.
10. THE SERVICE USER’S RIGHTS AS DATA SUBJECT
10.1 Right to Access
Users may request a free copy of their personal data.
10.2 Right to Rectification
Users may correct inaccurate information through their account or by contacting support.
10.3 Right to Erasure (Right to be Forgotten)
Users may delete their account and associated data via account settings.
11. INFORMATION SECURITY MEASURES
We employ technical, contractual, and organizational measures to protect user data against unauthorized access. Regular reviews ensure system security compliance.
12. PRIVACY POLICY UPDATES
This Privacy Policy is subject to updates. Users are notified of changes via email or on the platform.
13. FURTHER INFORMATION
For additional queries, contact us at: dpo@shelly.com.