EnergyMonitor

Privacy Policy

Last updated: January 2026

At EnergyMonitor Oy ("we", "our", "us"), we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our environmental monitoring platform.

1. Information We Collect

Account Information

When you create an account, we collect:

  • Email address
  • Password (stored securely using Argon2 hashing)
  • Organization name (optional)
  • Billing information (processed by Paytrail)

Device and Sensor Data

When you connect sensors to our platform, we collect:

  • Device identifiers (EUI)
  • Sensor readings (temperature, humidity, CO2, etc.)
  • Device metadata (model, firmware version)
  • Timestamps and location data (if enabled)

Usage Data

We automatically collect certain information when you use our services:

  • IP address and browser type
  • Pages visited and features used
  • Time and date of access
  • Device information

2. How We Use Your Information

We use the collected information to:

  • Provide and maintain our monitoring services
  • Process your sensor data and generate alerts
  • Send service notifications and alert emails
  • Process payments and manage subscriptions
  • Improve our services and develop new features
  • Respond to customer support requests
  • Comply with legal obligations

3. Data Retention

Account data

Retained until you delete your account

Sensor data

Retained according to your subscription plan (7 days to 1 year)

Logs

Retained for 90 days for security purposes

Backups

Retained for 30 days

4. Data Sharing

We do not sell your personal data.

We may share data with:

Service providers

Who help us operate our platform (hosting, email, payments)

Legal authorities

When required by law or to protect our rights

Business transfers

In connection with a merger or acquisition

Third-Party Services

We use the following third-party services:

Paytrail: Payment processing (Privacy Policy)
Resend: Email delivery (Privacy Policy)
Hetzner: Cloud infrastructure (EU-based)

5. Your Rights (GDPR)

As a data subject in the EU, you have the following rights:

Access

Request a copy of your personal data

Rectification

Correct inaccurate personal data

Erasure

Request deletion of your personal data

Portability

Receive your data in a machine-readable format

Restriction

Limit how we process your data

Objection

Object to certain types of processing

Withdraw consent

Where processing is based on consent

To exercise these rights, contact us at privacy@energymonitor.fi

6. Cookies

We use essential cookies for:

Authentication and session management
Security features
Remembering your preferences

We do not use third-party tracking or advertising cookies.

7. Data Security

We implement appropriate security measures including:

Encryption in transit (TLS 1.3)
Encryption at rest for sensitive data
Regular security audits
Access controls and authentication
Monitoring and logging

8. International Transfers

EU Data Processing

Your data is stored and processed within the European Union. We use EU-based infrastructure providers to ensure GDPR compliance.

9. Children's Privacy

Age Restriction

Our services are not intended for individuals under 18 years of age. We do not knowingly collect data from children.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.

11. Contact Us

If you have questions about this Privacy Policy, please contact us:

Address

EnergyMonitor Oy, Helsinki, Finland

Note: This privacy policy is a template and should be reviewed by legal counsel before use in production. Please consult with a lawyer to ensure compliance with all applicable laws and regulations.