Privacy Policy
Our mission at ScamGuardian.AI is to free the world of AI based scams. We will do our best to be a reliable partner for You and the community.
At ScamGuardian.AI our mission is to help our Users and their contacts stay safe from AI-based scams. We do this by:
-
allowing Users to enlist their family members and colleagues to experience simulated scam messages and calls;
-
allowing Users to deepfake their voice and video in order to simulate sophisticated AI scam calls to test basic information extraction from their family members or colleagues; and
-
allowing Users to send educational materials to help defend enlisted users after simulated experiences.
We want to make sure that all data that gets to us is safe and people’s privacy is respected. That is why we try to collect the bare minimal set of information allowing the service to work.
For Personal Data that we do process we have taken upon ourselves to adhere to rules and principles set out in this Privacy Policy.
ScamGuardian.AI SaaS Landing Page Template uses visitors' data for the following general purposes:
- 1.1 DEFINITIONS: Here you can find explanation to capitalised words.
- 1.2 GENERAL PROVISIONS: General Provisions tell you who the controller of Personal Data is and when the Privacy Policy applies
- 1.3 PRINCIPLES: Here you find the principles that are always followed by ScamGuardian.AI while Processing your Personal Data.
- 1.4 COMPOSITION OF PERSONAL DATA: Here you find information on how we collect Personal Data.
- 1.5 COMPOSITION, PURPOSES AND BASES FOR PROCESSING OF PERSONAL DATA: Here you find out for which purposes and under which bases we can Process your Personal Data.
- 1.6 DISCLOSURE AND/OR TRANSFER OF USER DATA TO THIRD PERSONS: Here you find information on when we may transfer your Personal Data to our cooperation partners.
- 1.7 SECURITY OF PERONAL DATA PROCESSING: Here you find a description of how we will protect your Personal Data and where you can find information on the storage periods of Personal Data.
- 1.8 PROCESSING OF THE PERSONAL DATA OF CHILDREN: The Services of ScamGuardian.AI are not targeting Children.
- 1.9 RIGHTS OF DATA SUBJECTS: Your Personal Data belongs to you, and here you find information on the rights you have in protecting your Personal Data.
- 1.10 EXERCISING OF RIGHTS AND FILING OF COMPLAINTS: Here you find information on how to receive explanations or how and to where a complaint should be filed.
- 1.11 COOKIES AND OTHER WEB TECHNOLOGIES: Here you find information on the types of Cookies or other technologies we use and how you can control the use of such technologies.
- 1.12 CONTACT DETAILS AND INFORMATION: Here you find our contact details.
- 1.13 OTHER TERMS AND CONDITIONS: Here you find information on the validity of and amendments to the Privacy Policy.
- 2. DEFINITIONS
- 2.1 Data Subject is a natural person about whom ScamGuardian.AI has got information or data enabling to identify the natural person. Data Subjects are, for example, the Users, Visitors and cooperation partners, as well as the employees who are natural persons and whose personal data are held by ScamGuardian.AI.
- 2.2 Privacy Policy is this text which sets out the principles for Personal Data Processing by ScamGuardian.AI.
- 2.3 Personal Data is any information concerning an identified or identifiable natural person.
- 2.4 Personal Data Processing is any operation or set of operations which is performed on the Personal Data of a Data Subject, such as collection, recording, organisation, structuring, storage, alteration and disclosure, enabling an access to, retrieval, consultation, use, transmission, cross-checks, alignment or combination, restriction, erasure or destruction of Personal Data, irrespective of the manner of performing these operations or the means exploited.
- 2.5 User is any natural or legal person that uses or has expressed a desire to use the Services of ScamGuardian.AI.
- 2.6 LLM is any Large Language Model made generally accessible to public.
- 2.7 Terms of Service set forth the terms and conditions applied to the usage of ScamGuardian.AI’s Service.
- 2.8 Website means the website of ScamGuardian.AI: https://scamguardian.ai/.
- 2.9 Visitor is any person using the Website of ScamGuardian.AI.
- 2.10 Child is a person who is under 13 years of age in the context of Personal Data Processing upon provision of information society services in the European Union.
- 2.11 Services are any services and products offered by ScamGuardian.AI and it includes any (mobile) applications and content within the Services.
- 2.12 Cookies are the data files sometimes recorded in the device of a Visitor of the Website.
- 2.13 Person who is responsible for data protection at ScamGuardian.AI is the person who monitors the implementation of the Personal Data Processing principles at ScamGuardian.AI and who can be contacted by the Data Subject in case of a complaint.
- 2.14 Sales Channels are the means used by ScamGuardian.AI for communicating with a Data Subject, devices created for selling the goods and providing the services, including e-mail, telephone, public and social media, various chat lines, individualised and interactive advertisements and other tools on the Websites and elsewhere.
- 2.15 Special Categories of Personal Data means Personal Data that reveals racial or ethnic origin, political opinions, religious or philosophical beliefs, or trade union membership, and the cases of processing of genetic data, biometric data for the purpose of uniquely identifying a natural person, data concerning health or data concerning a natural person’s sex life or sexual orientation. Special categories of data include personal data relating to criminal convictions and offences or related security measures based, however we have assessed that data relating to acts of the Traffic Participant may only become such a data after there is a decision by a competent authority of the court establishing criminal conviction or offence.
The above words and expressions are used in the meanings set out above in the Privacy Policy, Terms of Service and in the communication between the parties.
- 3. GENERAL PROVISIONS
- 3.1 ScamGuardian.AI is the legal person Perceptron OU registry code 12616373 , address Merikotka 9, Kuressaare, Estonia.
- 3.2 ScamGuardian.AI may process Personal Data as:
- (1) a controller, while determining the purposes and means of processing;
- (2) a processor in accordance with the instructions from the controller; and
- a recipient to the extent to whom the Personal Data are transferred.
- Please contact [email protected] for information about our processors.
- 3.3 This Privacy Policy of ScamGuardian.AI constitutes an inseparable part of the Terms of Service entered into between ScamGuardian.AI and the User. However it also regulates the use of Personal Data by ScamGuardian.AI regards to Visitors and Traffic Participants.
- 3.4 The Privacy Policy shall apply to the Data Subjects, and the rights and obligations set out in the Privacy Policy shall be followed by all the employees and cooperation partners of ScamGuardian.AI who come into contact with the Personal Data that are in the possession of ScamGuardian.AI.
- 4. PRINCIPLES
- 4.1 The objective of ScamGuardian.AI is to Process Personal Data responsibly, based on the best practice, with the aim of always being prepared to demonstrate the conformity of Personal Data Processing to the established purposes, and ScamGuardian.AI shall always take into account the interests, rights and freedoms of Data Subjects.
- 4.2 All the processes, guidelines, operations and activities of ScamGuardian.AI that are related to Personal Data Processing are based on the following principles:
- (1) Lawfulness. There is always a legal basis for the Processing of Personal Data, i.e. consent;
- (2) Fairness. Personal Data Processing shall be fair, while providing a Data Subject with sufficient information and communication on how the Personal Data are Processed, for example via the register of processing operations;
- (3) Transparency. Personal Data Processing shall be transparent for the Data Subject, including via the User Account created for the very same purpose;
- (4) Purposefulness. Personal Data shall be collected for legitimate purposes that have been established precisely and clearly, and shall not later be processed in any manner which is in conflict with these purposes;
- (5) Minimisation. Personal Data shall be adequate, relevant and limited to what is necessary for the purpose of Processing the given Personal Data. ScamGuardian.AI shall be guided by the principle of minimum Processing in Personal Data Processing, and as soon as the Personal Data are no longer necessary or are no longer needed for the purposes for which they were collected, the Personal Data shall be deleted;
- (6) Accuracy. Personal Data shall be correct and shall be updated as necessary, and all reasonable measures shall be taken to ensure that Personal Data which are incorrect in the light of the purpose of Personal Data Processing shall be deleted or corrected without delay;
- (7) Limit of storage.ScamGuardian.AI shall do its best to make sure that there is no Personal Data. Personal Data shall be stored in the format enabling the identification of Data Subjects only as long as it is necessary to achieve the purpose for which the Personal Data are processed. It means that in case ScamGuardian.AI wishes to store the Personal Data for a longer period of time than necessary for the purpose of collecting the data, ScamGuardian.AI shall anonymise the data in such manner that the Data Subject shall no longer be identifiable. ScamGuardian.AI shall store the data that have been received by ScamGuardian.AI via a User relationship or any other similar relationship, in accordance with the best practice, and the data processed on the basis of consent generally for as long as the consent is withdrawn;
- (8) Reliability and confidentiality. Personal Data Processing shall be carried out in the manner ensuring the adequate security of Personal Data, including their protection against unauthorised or unlawful Processing and against accidental loss, destruction or damage, by taking reasonable technical or organisational measures;
- (9) Data protection by design and by default. ScamGuardian.AI shall ensure that all the systems used shall meet the required technical criteria. The suitable data protection measures have been planned upon the renewal or design of every information or data system (e.g. the information systems and business processes are constructed using pseudonymisation, anonymization and encryption).
- 4.3 Upon Personal Data Processing ScamGuardian.AI shall act with the purpose of always being capable of evidencing the conformity to the aforesaid principles and additional information regarding the conformity to these principles can also be requested from [email protected].
- 5. COMPOSITION OF PERSONAL DATA
- 5.1 ScamGuardian.AI collects, inter alia, the following types of Personal Data:
- (1) the Personal Data disclosed to ScamGuardian.AI by the Data Subject (incl. Users);
- (2) the Personal Data generated as a result of the day-to-day communication between the Data Subject and ScamGuardian.AI;
- (3) the Personal Data generated upon consumption of Services (e.g. in the use of the ScamGuardian.AI’s Service;
- (4) the Personal Data generated as a result of visiting and using the Website (e.g. the time spent on the Website);
- (5) the Personal Data created and combined by ScamGuardian.AI.
- 6. COMPOSITION, PURPOSES AND BASES FOR PROCESSING OF PERSONAL DATA
- 6.1 ScamGuardian.AI shall Process Personal Data only on if there is a legal basis for Processing. Legal bases for Processing of Personal Data include but are not limited to legitimate interests or an agreement between the Data Subject and ScamGuardian.AI or consent.
- 6.2 ScamGuardian.AI shall Process Personal Data on the basis of consent precisely within the limits, to the extent and for the purposes determined by the Data Subject.
- 6.3 Upon entry into and performance of an agreement, Personal Data Processing may be additionally provided for in the Terms of Service or specific agreement, but ScamGuardian.AI may Process Personal Data for the following Purposes:
- (1) in order to take steps at the request of the Data Subject prior to entering into the agreement;
- (2) to identify the User to the extent required by due diligence;
- (3) to perform the obligations to the User regarding the provision of its Services;
- (4) to communicate with the User;
- (5) to ensure the performance of the payment obligation of the User (if applicable);
- (6) to submit, realise and defend claims.
- 6.4 For the entry into an employment agreement, the Processing of the Personal Data of a job applicant by ScamGuardian.AI based on the entry into the agreement and legitimate interest shall include:
- (1) Processing of the data submitted by the job applicant to ScamGuardian.AI for the purpose of entering into an employment agreement;
- (2) Processing of the Personal Data received from the person indicated as the referee by the job applicant;
- (3) Processing of the Personal Data collected from state databases and registers and public (social) media.
- In case a job applicant is not selected, ScamGuardian.AI shall store the Personal Data collected for the entry into an employment contract for two years in order to make a job offer to the job applicant in case a suitable position becomes vacant. When two years have passed after the submission of a job application, the Personal Data of the job applicant who was not selected shall be deleted.
- 6.5 Legitimate interest means the interest of ScamGuardian.AI in the management and direction of its business in order to be able to achieve its goals. ScamGuardian.AI shall Process Personal Data on a legal basis only after careful consideration in order to ascertain the legitimate interest of ScamGuardian.AI, based on which the Personal Data Processing is necessary and is in compliance with the interests and rights of a Data Subject (after carrying out the so-called three-step test). In particular, Personal Data Processing may take place on the basis of a legitimate interest for the following purposes:
- (1) for provision of Services;
- (2) for ensuring a trust-based relationship with a User, for example Personal Data Processing that is strictly necessary to determine the ultimate beneficiaries or to prevent fraud (if applicable);
- (3) for the administration and analysing the User base to improve the availability, selection and quality of Services and products, and to make the best and more personalised offers to the User upon the User’s consent;
- (4) for the identifiers and Personal Data collected upon the use of websites, mobile applications and other Services. ScamGuardian.AI shall use the collected data for web analysis or for the analysis of mobile and information society services, for ensuring and improving the functioning, for statistical purposes and for analysing the behaviour and using experience of Visitors and for providing better and more personalised Services;
- (5) for the organisation of campaigns, including organisation of personalised and targeted campaigns, carrying out User and Visitor satisfaction surveys, and measuring the effectiveness of the performed marketing activities;
- (6) for analysing the behaviour of the Users and Visitors in different Sales Channels and on Websites;
- (7) for monitoring of the service. ScamGuardian.AI may record the messages and instructions given in its premises as well as by means of communication (e-mail, telephone, etc.), as well as information and other operations carried out by ScamGuardian.AI, and shall use those recordings as needed to evidence instructions or other operations;
- (8) for network, information and cyber security considerations, for example for fighting against piracy and for ensuring the security of the Websites, as well as for the measures taken for making and storing backup copies;
- (9) for developing and improving ScamGuardian.AI’s Service;
- (10) for corporate purposes, in particular for the financial management;
- (11) for the establishment, exercise or defence of legal claims.
- 6.6 For performing a legal obligation, ScamGuardian.AI shall Process Personal Data to perform the obligations set forth by law or to exercise the uses permitted by law. Legal obligations derive, for example, from adhering to the rules of payment processing and prevention of money laundering.
- 6.7 In case Personal Data Processing is carried out for a new purpose, different from those for which the Personal Data were originally collected, or is not based on the consent given by the Data Subject, ScamGuardian.AI shall carefully assess the permissibility of such new Processing. In order to determine whether the Processing for the new purpose is in compliance with the purpose for which the Personal Data were originally collected, ScamGuardian.AI shall take into consideration, inter alia, the following:
- (1) any link between the purposes for which the Personal Data were collected and the intended further purposes Processing;
- (2) the context of collecting the Personal Data, in particular regarding the relationship between the Data Subject and ScamGuardian.AI;
- (3) the nature of the Personal Data, in particular whether any special categories of Personal Data, or Personal Data related to criminal convictions and offences are processed;
- (4) possible consequences of the intended further processing for the Data Subjects;
- (5) existence of appropriate protection measures which may consist in, for example, encryption and pseudonymisation.
- 7. DISCLOSURE AND/OR TRANSFER OF USER DATA TO THIRD PERSONS
- 7.1 ScamGuardian.AI cooperates with persons, to whom ScamGuardian.AI may transfer data regarding the Data Subjects, including their Personal Data, in the context and for the purposes of co-operation.
- 7.2 Such third persons may be ScamGuardian.AI’s IT partners, persons, authorities and organisations intermediating or providing (electronic) mail services, marketing partners, companies carrying out User satisfaction surveys, credit registers, provided that:
- (1) the respective purpose and the Processing are lawful;
- (2) the Personal Data Processing is carried out in accordance with the guidelines of ScamGuardian.AI and on the basis of a valid agreement;
- (3) the data regarding the respective processors are disclosed to the Data Subjects.
- 7.3 ScamGuardian.AI shall transfer Personal Data to outside the European Union only if there is sufficient protection in the respective country; if protection measures have been agreed upon (e.g. binding internal rules of the group or standard data protection clauses); the Data Subject has given a clear and informed consent for such transfer; the transfer is clearly required by an agreement entered into with the Data Subject; the transfer is not repeated, it concerns only a limited number of Data Subjects; it is necessary for protecting the legitimate interests of ScamGuardian.AI which are not overridden by the interests, rights or freedoms of the Data Subject, and if all the circumstances related to the transfer have been assessed and suitable protection measures have been established to protect the Personal Data, or if there is some other legal basis therefor. ScamGuardian.AI shall inform the Data Protection Inspectorate of the transfer based on a legitimate interest.
- 8. SECURITY OF PERONAL DATA PROCESSING
- 8.1 ScamGuardian.AI shall store the Personal Data strictly only for the period required. The Personal Data with an expired storage period shall be destructed using the best practice and in accordance with the procedure established for this purpose by ScamGuardian.AI.
- 8.2 ScamGuardian.AI has established guidelines and procedural rules for ensuring the security of Personal Data by both organisational and technical measures.
- 8.3 ScamGuardian.AI has taken different technical measures to ensure maximum privacy and safety to Users
- 8.4 In case of an incident related to Personal Data, ScamGuardian.AI shall take all necessary measures to mitigate the consequences and hedge any relevant risks in the future. Inter alia, ScamGuardian.AI shall register all the incidents and shall inform the Data Protection Inspectorate and the Data Subject directly (e.g. by email) or in public (e.g. via the news) in prescribed cases.
- 9. PROCESSING OF THE PERSONAL DATA OF CHILDREN
- 9.1 The Services of ScamGuardian.AI, including the information society services, are not targeting Children.
- 9.2 ScamGuardian.AI does not knowingly collect any information on persons under 13 years of age, i.e. Children, and in case of any respective informed activity we shall act on the basis of the requests of a parent or guardian.
- 9.3 In case ScamGuardian.AI finds out that it has still collected Personal Data from a Child or regarding a Child, ScamGuardian.AI shall use its best efforts to discontinue the Processing of the respective Personal Data.
- 10. RIGHTS OF DATA SUBJECTS
- 10.1 Rights related to consent:
- A Data Subject will always be entitled to inform ScamGuardian.AI about his or her wish to withdraw the consent for the Personal Data Processing.
- 10.2 A Data Subject has also the following rights upon Personal Data Processing:
- (1) Right to receive information i.e. the right of a Data Subject to receive information regarding the Personal Data collected about him or her.
- (2) Right of access to data which, inter alia, includes the right of a Data Subject to a copy of the Processed Personal Data.
- (3) Right to rectification of inaccurate Personal Data. A Data Subject will be able, inter alia, to correct inaccurate data.
- (4) Deletion of data i.e. in certain cases a Data Subject will be entitled to demand the deletion of Personal Data, for example if the Processing is carried out only on the basis of a consent.
- (5) Right to demand restriction of Personal Data Processing. This right is created, inter alia, in case the Personal Data Processing is not permitted under law or if the Data Subject challenges the accuracy of the Personal Data. A Data Subject will be entitled to demand the restriction of the Personal Data Processing for a period enabling the processor to check the accuracy of the Personal Data or if the Personal Data Processing is unlawful but the Data Subject does not request the deletion of the Personal Data.
- (6) Right to data portability i.e. a Data Subject shall have, in certain cases, the right to receive the Personal Data in a machine-readable format, and to take these data along or transfer them to another controller.
- (7) Rights related to automated Processing mean, inter alia, that a Data Subject will have the right to object, on grounds relating to his or her particular situation, at any time to Processing of Personal Data concerning him or her, based on automated decision-making. ScamGuardian.AI doesn’t use automated decision making at this moment. We will inform you if that will change. You have the right to avoid any decisions based on automated Personal Data Processing if they can be classified as profiling;
- (8) Right to the assessment of a supervisory authority on whether the Processing of the Personal Data of the Data Subject is lawful;
- (9) Compensation for damage.
- 11. EXERCISING OF RIGHTS AND FILING OF COMPLAINTS
- 11.1 Exercising of rights. A Data Subject will be entitled to address ScamGuardian.AI using the contact details set out in section 12 in case of any question, request or complaint related to Personal Data Processing.
- 11.2 Filing of complaints. A Data Subject will be entitled to address a complaint to ScamGuardian.AI, to the Data Protection Inspectorate or to a court if the Data Subject is of the opinion that his or her rights have been infringed in Personal Data Processing. The contact details of the Data Protection Inspectorate are available on the website of the Data Protection Inspectorate.
- 12. COOKIES AND OTHER WEB TECHNOLOGIES
- 12.1 ScamGuardian.AI may collect data regarding the Visitors of the Websites and other information society services by using Cookies for this purpose (i.e. small pieces of information stored by the Visitor’s browser on the hard disk of the computer of any other device of the Visitor) or other similar technologies (e.g. IP address, equipment information, location information) and process these data.
- 12.2 ScamGuardian.AI uses the collected data to enable the provision of the Service in accordance with the habits of a Visitor or User; to ensure the best Service quality; to inform the Visitor and User about the contents and give recommendations; to update advertisements and make marketing efforts more efficient; and to facilitate logging in and protection of data. The collected data shall also be used for counting the Visitors and recording their using habits.
- 12.3 ScamGuardian.AI uses session Cookies, persistent Cookies and advertising Cookies. A session Cookie is deleted automatically after every visit; persistent Cookies shall remain upon repeated use of the Website, and advertising Cookies and third party Cookies are used by the Websites of the partners of ScamGuardian.AI which are connected with the Website of ScamGuardian.AI. ScamGuardian.AI does not control the generation of those Cookies, therefore information on these Cookies can be obtained from third persons.
- 12.4 As to the Cookies, Visitors agree with the use of Cookies on the Website, in information society service devices or the web browser.
- 12.5 Most of the web browsers allow Cookies. Without fully allowing Cookies, the functions of the Website are not available to a Visitor. The allowing or prohibiting Cookies and other similar technologies shall be under the control of a Visitor via the settings of the Visitor’s own web browser, settings of the information society service and platforms for making such privacy more efficient.
- 13. CONTACT DETAILS AND INFORMATION
- 13.1 The contact details of ScamGuardian.AI that are important for a Data Subject:
Regarding Personal Data issues, ScamGuardian.AI can be contacted by e-mail [email protected].
- 14. OTHER TERMS AND CONDITIONS
- 14.1 ScamGuardian.AI will be entitled to unilaterally amend this Privacy Policy. ScamGuardian.AI shall inform Data Subjects about amendments on the website of ScamGuardian.AI, by e-mail or by other means.
- 14.2 The latest amendments and entry into force of the Privacy Policy: