Privacy Policy

Effective date: July 15, 2026

Last updated: July 15, 2026

This Privacy Policy explains how Limited Liability Company "Neyrosint", a company incorporated under the laws of the Republic of Belarus, UNP 193753284, registered office: 16 Gazety Zvyazda Avenue, office 52, Minsk, 220117, Republic of Belarus ("we", "us", the "Provider") processes personal data in connection with the AisleRadar software service available at aisleradar.com (the "Service").

We act as the controller of personal data described in Sections 3.1–3.4, and as a processor on behalf of our business customers with respect to data they upload to the Service (Section 3.5).

The Service is offered to business customers only and is not directed to consumers or children.

1. Who to contact

  • Controller: Limited Liability Company "Neyrosint", 16 Gazety Zvyazda Avenue, office 52, Minsk, 220117, Republic of Belarus. Email: support@aisleradar.com.

2. Laws this Policy is designed to comply with

  • Law of the Republic of Belarus No. 99-Z of 7 May 2021 "On Personal Data Protection";
  • Regulation (EU) 2016/679 (GDPR) and UK GDPR — for data subjects in the EU/EEA and the UK;
  • California Online Privacy Protection Act (CalOPPA) and other applicable US state laws — for users from the United States.

3. What data we collect and why

3.1. Account data: name, business email address, company name, country, VAT or other tax identification number, password hash.

*Purpose:* creating and operating your account, verifying business status (VIES check of EU VAT numbers), invoicing.

*Legal basis (GDPR):* performance of a contract (Art. 6(1)(b)); legal obligation for tax records (Art. 6(1)(c)).

3.2. Billing data: subscription plan, payment history, invoice details. Card payments are processed by the payment provider indicated at checkout; we do not receive or store full card numbers.

*Purpose:* charging for subscriptions, refunds, accounting.

*Legal basis:* performance of a contract; legal obligation.

3.3. Usage and technical data: IP address, browser and device information, log records, pages visited within the Service, feature usage.

*Purpose:* operating and securing the Service, preventing abuse, improving the product.

*Legal basis:* legitimate interests (Art. 6(1)(f)) — running a secure, functional service.

3.4. Support and marketing communications: correspondence with our support, email preferences.

*Purpose:* responding to requests; sending product updates and offers if you have opted in.

*Legal basis:* legitimate interests (support); consent (marketing, Art. 6(1)(a)) — you can withdraw it at any time via the unsubscribe link.

3.5. Customer content: data our business customers upload to or connect with the Service. We process it only on the customer's instructions as a processor, under the data processing terms of our Terms of Service. Customers are responsible for the lawfulness of the data they upload.

We do not collect special categories of personal data and do not knowingly collect data of persons under 18.

4. Cookies and similar technologies

The Service currently sets strictly necessary cookies only (login session, security) — they are always active and require no consent.

We do not use analytics or advertising cookies. Third parties do not collect personal data about your online activities over time and across different websites through the Service. If this changes, we will update this Policy and, where required by law (EU/EEA/UK), ask for your consent before placing any non-essential cookies.

5. "Do Not Track" and opt-out signals (CalOPPA disclosure)

Our Service does not respond to browser "Do Not Track" signals; as described in Section 4, we do not track visitors across third-party websites in the first place, and we treat all visitors according to this Policy.

6. Who we share data with

We do not sell or rent personal data, and we do not share it for cross-context behavioral advertising. We disclose personal data only to:

  • Infrastructure and service providers (processors): hosting — Serverspace (data center in the USA); payment processing — the payment provider indicated at checkout. Each is bound by data processing terms.
  • Authorities, where disclosure is required by a law applicable to us, on a valid legal request.
  • A buyer or successor in the event of a merger or sale of the business, under the same protections; we will notify you before your data becomes subject to a different privacy policy.

7. International transfers

We are located in the Republic of Belarus; the Service is hosted in a US data center.

  • EU/EEA and UK users: transfers to our US infrastructure providers are safeguarded by the data processing terms of those providers, including the European Commission's Standard Contractual Clauses where applicable. Transfers to us in Belarus occur because you contract with a Belarusian company; we apply the safeguards described in this Policy and in our Terms of Service.
  • Belarus law: by registering, you consent to the cross-border transfer of your data to the processors listed above, as required by Law No. 99-Z.

8. How long we keep data

  • Account data — for the life of the account and 30 calendar days after termination (export window), then deleted;
  • Billing and tax records — for the period required by Belarusian accounting and tax law;
  • Log data — up to 12 months;
  • Marketing consents — until withdrawn.

9. Your rights

All users: access to your data; correction; deletion (where we are not required to keep it); objection to marketing at any time. Write to support@aisleradar.com — we respond within 30 days.

EU/EEA and UK users additionally (GDPR): restriction of processing; data portability; objection to processing based on legitimate interests; withdrawal of consent without affecting prior processing; the right to lodge a complaint with your local supervisory authority (list: edpb.europa.eu; UK: ico.org.uk).

Belarus Law No. 99-Z: rights of access, correction, withdrawal of consent and deletion may also be exercised via the procedure of Law No. 99-Z; supervisory authority — the National Personal Data Protection Center of the Republic of Belarus (nc.pd.by).

US state residents: where a US state privacy law grants you rights of access, deletion, correction or opt-out, you may exercise them via support@aisleradar.com. We do not sell personal data as defined by those laws.

We verify the identity of the requester before acting on a request and do not discriminate against users for exercising their rights.

10. Security

We use encryption in transit (TLS), access controls, isolation of customer data, and vendor due diligence. No internet service can guarantee absolute security; we will notify affected users and authorities of personal data breaches where the law requires it.

11. Changes to this Policy

We will post any changes on this page and update the "Last updated" date. For material changes we will additionally notify registered users by email at least 10 calendar days before the changes take effect. Continued use of the Service after the effective date constitutes acceptance of the updated Policy.

12. How to contact us

Email: support@aisleradar.com

Postal address: Limited Liability Company "Neyrosint", 16 Gazety Zvyazda Avenue, office 52, Minsk, 220117, Republic of Belarus