PRIVACY NOTICE

Last updated: January 30, 2026

This privacy notice for PinMy OÜ ("Company," "we," "us," or "our"), describes how and why we might collect, store, use, and/or share ("process") your information when you use our services ("Services"), such as when you:

  • Visit our website at http://www.pinmy.co
  • Download and use our mobile application (PinMy)
  • Engage with us in other related ways, including any sales, marketing, or events

Questions or concerns? Reading this privacy notice will help you understand your privacy rights and choices. If you do not agree with our policies and practices, please do not use our Services. If you still have any questions or concerns, please contact us at info@pinmy.co.


TABLE OF CONTENTS

  1. WHAT INFORMATION DO WE COLLECT?
  2. HOW DO WE PROCESS YOUR INFORMATION?
  3. WHAT LEGAL BASES DO WE RELY ON TO PROCESS YOUR PERSONAL INFORMATION?
  4. WHEN AND WITH WHOM DO WE SHARE YOUR PERSONAL INFORMATION?
  5. HOW DO WE HANDLE YOUR SOCIAL LOGINS?
  6. HOW LONG DO WE KEEP YOUR INFORMATION?
  7. HOW DO WE KEEP YOUR INFORMATION SAFE?
  8. WHAT ARE YOUR PRIVACY RIGHTS?
  9. CONTROLS FOR DO-NOT-TRACK FEATURES
  10. DO CALIFORNIA RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?
  11. DO VIRGINIA RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?
  12. DO WE MAKE UPDATES TO THIS NOTICE?
  13. HOW CAN YOU CONTACT US ABOUT THIS NOTICE?
  14. HOW CAN YOU REVIEW, UPDATE, OR DELETE THE DATA WE COLLECT FROM YOU?

1. WHAT INFORMATION DO WE COLLECT?

Personal information you disclose to us

In Short: We collect personal information that you provide to us.

We collect personal information that you voluntarily provide to us when you register on the Services, express an interest in obtaining information about us or our products and Services, when you participate in activities on the Services (such as posting comments or uploading media), or otherwise when you contact us.

Personal Information Provided by You. The personal information that we collect depends on the context of your interactions with us and the Services. The personal information we collect may include the following:

  • Names
  • Email addresses
  • Usernames
  • Billing addresses (for paid plans)
  • Debit/credit card numbers (processed securely by payment providers)
  • Contact or authentication data

Sensitive Information. We do not process sensitive information (such as race, religion, or political opinions).

Social Media Login Data. We may provide you with the option to register with us using your existing social media account details (like Facebook, Google, or Apple). If you choose to register in this way, we will collect the information described in the section called "HOW DO WE HANDLE YOUR SOCIAL LOGINS?" below.

Application Data & Permissions

If you use our mobile application(s), we may collect the following information if you choose to provide us with access or permission:

  • Geolocation Information: We may request access or permission to track location-based information from your mobile device to provide core location-based services. Specifically, we use this data to allow you to place "Pins" (tasks/comments) accurately on interactive maps and to verify the location of created reports. We may request Precise Location access while you are using the app. You can change our access or permissions in your device's settings.
  • Mobile Device Access (Camera & Photos): We may request access to your mobile device's camera and photo gallery. This allows you to capture and upload photos or videos directly to Pins and reports within the app. If you wish to change our access or permissions, you may do so in your device's settings.
  • Push Notifications: We may request to send you push notifications regarding task assignments, updates on your Pins, or account alerts. You may turn them off in your device's settings.

Information automatically collected

In Short: Some information — such as your Internet Protocol (IP) address and/or browser and device characteristics — is collected automatically when you visit our Services.

This information does not reveal your specific identity (like your name) but may include device and usage information, such as your IP address, browser and device characteristics, operating system, language preferences, device name, country, and information about how and when you use our Services (e.g., which features you use most often). This information is primarily needed to maintain the security and operation of our Services, and for our internal analytics.


2. HOW DO WE PROCESS YOUR INFORMATION?

In Short: We process your information to provide, improve, and administer our Services, communicate with you, for security, and to comply with law.

We process your personal information for a variety of reasons, including:

  • To facilitate account creation and authentication: To allow you to log in and use the app.
  • To deliver services to the user: specifically, to enable the visualization of construction data, rendering of maps, and synchronization of tasks (Pins) across devices.
  • To enable user-to-user communications: allowing you to assign tasks (Pins) to other users (e.g., Managers, Installers) and comment on them.
  • To respond to user inquiries: To solve potential issues you might have with the service.
  • To send administrative information: Such as changes to our terms, policies, or feature updates.
  • To fulfill and manage your orders: If you subscribe to a Premium plan.

3. WHAT LEGAL BASES DO WE RELY ON TO PROCESS YOUR INFORMATION?

In Short: We only process your personal information when we have a valid legal reason.

If you are located in the EU or UK, this section applies to you. The General Data Protection Regulation (GDPR) allows us to rely on the following legal bases:

  • Consent: We may process your information if you have given us permission (e.g., granting Location or Camera permissions).
  • Performance of a Contract: We process your information to fulfill our obligations to provide the PinMy Service to you.
  • Legal Obligations: We may process your information for compliance with our legal obligations.

4. WHEN AND WITH WHOM DO WE SHARE YOUR PERSONAL INFORMATION?

In Short: We may share information in specific situations described in this section.

  • Business Transfers: We may share or transfer your information in connection with any merger, sale of company assets, or acquisition.
  • Service Providers: We may share data with third-party vendors (e.g., hosting services like Firebase/Supabase, map providers, or payment processors) who perform services for us.
  • Other Users: When you post content (Pins, comments, photos) to a shared Workspace or Project, such personal information and content may be viewed by other users who have access to that specific Project.

5. HOW DO WE HANDLE YOUR SOCIAL LOGINS?

In Short: If you choose to register or log in to our Services using a social media account, we may have access to certain information about you.

Our Services offer you the ability to register and log in using your third-party social media account details (like Facebook, Google, or Apple). We will receive certain profile information about you from your social media provider, usually including your name, email address, and profile picture. We use this information only to create your account and authenticate you.


6. HOW LONG DO WE KEEP YOUR INFORMATION?

In Short: We keep your information for as long as necessary to fulfill the purposes outlined in this privacy notice unless otherwise required by law.

We will only keep your personal information for as long as it is necessary for the purposes set out in this privacy notice. If you delete your account, we will delete or anonymize your information, unless we are required to retain it for legal (tax/accounting) reasons.


7. HOW DO WE KEEP YOUR INFORMATION SAFE?

In Short: We aim to protect your personal information through a system of organizational and technical security measures.

We have implemented appropriate technical and organizational security measures (such as encryption in transit and at rest) designed to protect the security of any personal information we process. However, no electronic transmission over the Internet can be guaranteed to be 100% secure, so we cannot promise that hackers or unauthorized third parties will not be able to defeat our security.


8. WHAT ARE YOUR PRIVACY RIGHTS?

In Short: You may review, change, or terminate your account at any time.

In regions like the EEA, UK, and Canada, you have rights including:

  • Request access and obtain a copy of your personal information.
  • Request rectification or erasure.
  • Restrict the processing of your personal information.
  • Data portability.

Account Information: If you would at any time like to review or change the information in your account or terminate your account, you can log in to your account settings or contact us. Upon your request to terminate your account, we will deactivate or delete your account and information from our active databases.

Withdrawing Consent: If we are relying on your consent to process your personal information (e.g., GPS location), you can withdraw your consent at any time by changing the settings on your mobile device.


9. CONTROLS FOR DO-NOT-TRACK FEATURES

Most mobile operating systems include a Do-Not-Track ("DNT") feature or privacy controls. We respect your device settings. If you set restrictions on tracking in your device (such as iOS App Tracking Transparency), we will honor those choices.


10. DO CALIFORNIA RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?

In Short: Yes, if you are a resident of California, you are granted specific rights regarding access to your personal information.

PinMy OÜ has not disclosed, sold, or shared any personal information to third parties for a business or commercial purpose in the preceding twelve (12) months. We do not sell your personal data.

California residents have the right to request deletion of their data, the right to be informed, and the right to non-discrimination for the exercise of privacy rights.


11. DO VIRGINIA RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?

In Short: Yes, if you are a resident of Virginia, you may be granted specific rights.

PinMy OÜ has not sold any personal data to third parties. Virginia residents have the right to access, correct, delete, and opt-out of the processing of their personal data for targeted advertising or sale.


12. DO WE MAKE UPDATES TO THIS NOTICE?

In Short: Yes, we will update this notice as necessary to stay compliant with relevant laws.

The updated version will be indicated by an updated "Revised" date. We encourage you to review this privacy notice frequently.


13. HOW CAN YOU CONTACT US ABOUT THIS NOTICE?

If you have questions or comments about this notice, you may email us at info@pinmy.co or by post to:

PinMy OÜ Registry code: 16728502 Address: Harju maakond, Tallinn, Lasnamäe linnaosa, Sepapaja tn 6, 15551, Estonia


14. HOW CAN YOU REVIEW, UPDATE, OR DELETE THE DATA WE COLLECT FROM YOU?

Based on the applicable laws of your country, you have the right to request access to the personal information we collect from you, change that information, or delete it.

To delete your account and data: You can find the "Delete Account" option directly within the Settings menu of the PinMy mobile application. Alternatively, you can submit a request by visiting https://pinmy.co/ or emailing us at info@pinmy.co.