Privacy Policy
Last Updated: October 12, 2025
1. Introduction
Markov Innovations ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard information related to our ultra-low-power IoT hardware devices, including smart blind modules, environmental sensors, sprinkler controllers, and MQTT-BLE bridges.
Our Privacy Philosophy: We believe in local-first operation. Our devices are designed to function fully without cloud connectivity. Any data transmission to our servers or third-party services is optional and under your control.
2. Information We Collect
2.1 Device Information (Local Operation)
When our devices operate locally without cloud connectivity, the following data is stored only on the device:
- Configuration Data: Device settings, schedules, automation rules
- Sensor Readings: Temperature, humidity, pressure, light levels, orientation data (stored locally)
- Operational Logs: Device activity history, error logs, maintenance records
- User Preferences: Custom settings, zone configurations, schedule preferences
Important: This local data is not transmitted to Markov Innovations or any third party unless you explicitly enable cloud connectivity.
2.2 Purchase and Registration Information
When you purchase our products or register devices, we may collect:
- Contact Information: Name, email address, shipping address, phone number
- Order Information: Products purchased, order date, payment method (processed by third-party payment processors)
- Device Registration: Device serial numbers, purchase date, warranty information
- Support Requests: Technical support inquiries, device issues, correspondence
2.3 Cloud-Connected Device Data (Optional)
If you choose to connect your devices to Markov Shifts Cloud or third-party services (Google Home, Amazon Alexa), we may collect:
- Device Telemetry: Sensor readings, device status, battery level, firmware version
- Usage Patterns: Automation triggers, schedule execution, manual overrides
- Environmental Data: Temperature trends, humidity levels, light measurements, structural data
- Network Information: IP address, Wi-Fi network name (SSID), signal strength
- Location Data: Approximate geographic location for weather integration and analytics
You Control Cloud Connectivity: Cloud features can be enabled or disabled at any time through device settings.
2.4 Website and Analytics Data
When you visit our website, we may collect:
- Browsing Data: Pages visited, time spent, referral source
- Device Information: Browser type, operating system, screen resolution
- Cookies: Session cookies, preference cookies, analytics cookies
3. How We Use Your Information
3.1 Product Operation and Improvement
- Provide core device functionality (all features work locally)
- Deliver optional cloud-based features when enabled
- Improve device performance and reliability
- Develop new features and products
- Conduct product research and analytics
3.2 Customer Support
- Respond to support requests and technical issues
- Provide warranty service and repairs
- Send important product updates and safety notifications
- Troubleshoot device problems
3.3 Order Fulfillment
- Process and ship orders
- Manage returns and refunds
- Maintain purchase records for warranty purposes
- Prevent fraud and unauthorized transactions
3.4 Optional Cloud Features
When you enable cloud connectivity, we use device data to:
- Provide remote access and control
- Enable AI-powered optimization and scheduling
- Generate usage reports and analytics
- Integrate with third-party smart home platforms
- Deliver weather-based automation
- Provide long-term trend analysis
4. Data Sharing and Disclosure
4.1 Third-Party Service Providers
We may share limited information with trusted service providers:
- Payment Processors: For secure payment processing (we do not store credit card information)
- Shipping Partners: For order fulfillment and delivery
- Cloud Infrastructure: AWS, Azure, or similar providers for cloud services (if enabled)
- Analytics Services: To understand product usage and improve our offerings
- Email Services: For transactional emails and support communications
These providers are contractually obligated to protect your data and use it only for services they provide to us.
4.2 Third-Party Integrations (Your Choice)
If you choose to connect your devices to third-party services, data may be shared with:
- Markov Shifts Cloud: For advanced cloud features and AI optimization
- Google Home: For voice control and Google Assistant integration
- Amazon Alexa: For voice control and Alexa integration
- IFTTT and Other Automation Platforms: For custom automation workflows
- Weather Services: For weather-based scheduling and optimization
Each integration requires your explicit consent and can be revoked at any time.
4.3 Legal Requirements
We may disclose information if required by law or to:
- Comply with legal processes, court orders, or government requests
- Protect our rights, property, or safety, or that of our users
- Prevent fraud or security threats
- Enforce our Terms of Service
4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred. We will notify you of any such change and provide options regarding your data.
4.5 Aggregated and Anonymized Data
We may use and share aggregated, anonymized data that cannot identify individual users or devices for:
- Product improvement and research
- Industry reports and statistics
- Marketing and business development
5. Data Security
We implement robust security measures to protect your information:
- Local Encryption: Sensitive data stored on devices is encrypted
- Secure Communication: All cloud communications use TLS/SSL encryption
- HMAC Authentication: Device-to-cloud authentication uses industry-standard HMAC
- Firmware Security: Signed firmware updates prevent unauthorized modifications
- Access Controls: Strict internal access controls and authentication
- Regular Security Audits: Periodic security assessments and penetration testing
- Secure Development: Security-focused development practices and code reviews
However, no method of transmission or storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
6. Data Retention
We retain different types of data for different periods:
- Local Device Data: Retained on device until manually deleted or device is reset
- Purchase Records: Retained for warranty period plus applicable legal requirements
- Cloud Data: Retained while cloud services are active; deleted within 30 days of account closure
- Support Records: Retained for 2 years for quality assurance and legal compliance
- Aggregated Analytics: Retained indefinitely in anonymized form
7. Your Rights and Choices
7.1 Device Data Control
- Local-Only Operation: Operate devices entirely offline without any cloud connectivity
- Cloud Enable/Disable: Toggle cloud connectivity on or off at any time
- Data Export: Export device data from local storage or cloud dashboard
- Factory Reset: Erase all local device data and return to factory settings
7.2 Account and Personal Data Rights
- Access: Request access to personal information we hold about you
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your personal data (subject to legal requirements)
- Portability: Receive your data in a portable format
- Opt-Out: Opt-out of marketing communications
- Withdraw Consent: Withdraw consent for data processing at any time
7.3 Third-Party Integration Control
- Disconnect from third-party services at any time
- Revoke OAuth tokens and API access
- Delete data from third-party platforms (subject to their policies)
To exercise these rights, contact our Privacy & Data Protection department via our contact page. We will respond within 30 days.
8. Children's Privacy
Our products and services are not directed to children under 13. We do not knowingly collect information from children. If we discover we have collected information from a child, we will delete it immediately.
9. International Data Transfers
Your information may be processed in countries other than your country of residence. When we transfer data internationally, we ensure appropriate safeguards are in place through:
- Standard contractual clauses
- Adequacy decisions by regulatory authorities
- Your explicit consent where required
10. California Privacy Rights (CCPA)
California residents have additional rights:
- Right to know what personal information is collected and used
- Right to delete personal information
- Right to opt-out of sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising privacy rights
Contact our Privacy & Data Protection department via our contact page to exercise these rights.
11. European Privacy Rights (GDPR)
If you are in the European Economic Area (EEA), you have rights under the GDPR:
- Legal basis for processing: Consent, contract performance, legitimate interests, or legal obligations
- Right to object to processing based on legitimate interests
- Right to lodge a complaint with your supervisory authority
- Right to withdraw consent at any time
Our Data Protection Officer: Contact our Privacy & Data Protection department via our contact page
12. Cookies and Tracking
Our website uses cookies:
- Essential Cookies: Required for website functionality
- Analytics Cookies: Help us understand how visitors use our site
- Preference Cookies: Remember your settings and preferences
You can control cookies through your browser settings. Disabling cookies may limit website functionality.
13. Changes to This Privacy Policy
We may update this Privacy Policy periodically. Material changes will be announced via:
- Email notification to registered users
- Notice on our website
- In-app notifications (if cloud-connected)
Continued use of our products and services after changes constitutes acceptance of the updated policy.
14. Contact Us
← Back to Home
View Terms of Service →