OKSpin Privacy Policy
Effective Date: Sept. 4th, 2024
1. Introduction
OKSPIN Co., Limited ("Company," "we," "us," "our") is an ad network that provides a suite of tools for app developers and businesses to streamline and enhance the marketing and monetization of their platforms, products, and services. We facilitate the placement of various types of advertisements on digital properties, including mobile apps and connected TV devices (collectively, the "Services"). Through the Services, we also provide End Users with gaming opportunities where they can earn Rewards by participating in activities specified by OKSPIN. Advertisers, Publishers/Developers and End Users who use the Services are collectively referred to as "you" , "your" or "yours". To deliver these Services, we collect and utilise certain information related to user activity and preferences. This Privacy Policy outlines our practices for collecting, using, and sharing information through our Services, which encompass our advertising and optimization platform and other interactive products that link to this Privacy Policy (also collectively as the "Services"). We are committed to safeguarding your privacy and ensuring the protection of the personal information we handle.
1.1 Acceptance of this Privacy Policy
This Privacy Policy applies to both our website and the Services we offer. It outlines how OKSpin Co., Limited collects, uses, shares, and stores information that personally identifies you ("Personal Data") and provides details about your rights and options concerning the use, access, and correction of your personal information. Please note that this policy does not extend to the practices of companies we do not own or control, nor to individuals we do not employ or manage.
1.2 Scope and definition of this privacy policy
This Privacy Policy explains how OKSpin Co., Limited ("Company," "we," "us," "our") collects, uses, shares, and stores personal information ("Personal Data") in connection with our Services and website. The practices outlined in this policy govern our handling of all personal information we process and ensure your rights and choices regarding that information are protected.
Individuals interacting with our Services will generally fall into one of the following categories:
Site Visitor: Those who access or browse our website.
Customer: Individuals or entities that request our Services.
Partner: Individuals or entities that provide services enabling us to deliver our Services to Customers.
Targeted End User: Users of mobile apps provided by our Customers who may receive advertisements through our platform.
"Personal Information" or "Personal Data" refers to any information that can directly or indirectly identify you. This includes, but is not limited to:
Direct Identifiers: Information that can identify you directly, such as your name, email address, physical address, mobile phone number, or profile picture.
Indirect Identifiers: Information that identifies you indirectly, such as pseudonymized data like unique user IDs, IP addresses, or specific information about your mobile device or browser.
User Behavior and Preferences: Data related to your use of mobile apps, including user content and personal preferences.
Financial and Sensitive Data: Financial information, health-related information, and other sensitive data, such as your CPF, PAN card number, Aadhaar number, or KYC verification information (e.g., videos or documents mandated by regulatory authorities).
Business-Related Information: Professional information related to your business dealings with us or our partners.
This Privacy Policy ensures that all Personal Data collected, whether directly or indirectly, is handled in accordance with applicable data protection laws and is subject to your rights of access, correction, and control.
2. General Information Collection and Use
2.1 What information we collect
When you download and use an application that includes the OKSpin SDK and API or interact with our Services through advertisements on digital properties, we may collect the following information:
Device, Application, and Browser Data
Device Details: Make, model, operating system, screen size, orientation, audio settings, battery status, device memory usage, and boot time.
Device Settings: Accessibility features, font size, and theme preferences.
Network Information: Carrier, network connection type and speed.
Application Information: Name and properties of the mobile application used to interact with our Services.
Geographical Information: Country, time zone, and locale settings (country and preferred language).
Technical Data: IP address, internet browser user-agent, HTTP header information, Advertising IDs (IDFA/GAID/Amazon FOSAID), Vendor IDs (IDFV), App Set IDs, and advertising and tracking preferences and restrictions.
Personal Identifiers
Identification Information: Names, email addresses, mobile phone numbers, CPF, PAN card numbers, mailing addresses, and usernames, geographic data.Identification Information: Names, email addresses, mobile phone numbers, CPF, PAN card numbers, mailing addresses, and usernames, geographic data.
Additional Data: Information from the clipboard and gallery.
Web Usage Data
Automatic Records: IP address, browser type and version, operating system type and version, language preferences, and the web page visited prior to accessing our Website or Services.
Interaction Data: Time spent on web pages, search queries, access times and dates, images actively selected and uploaded, copied passwords during activities, and other relevant statistics.
We also collect and store any information you knowingly provide when you create an account or complete online forms on our Website. While you may choose not to provide certain information, please be aware that some features of our Services may not be accessible without it. If you are uncertain about what information is required, please contact us for clarification.
2.2. How we collect information
We use the following methods to collect personal information:
A. You voluntarily share your information with us. For example, when you create an account and when you fill any online forms on the Website.
B. We use automated data collection technologies to collect your information, such as cookies, HTML5 local storage, tags and pixels, mobile device identifiers, etc. We also collect information from you through these technologies when you integrate our SDK, API into your applications, websites and/or Ads.
C. Information collected from other sources. We may receive your information from third parties with whom we work and from public sources.
2.3. How We Use Your Information
We use the information we collect to support and enhance our Services through various means:
Service Delivery and Improvement: We use your information to deliver, maintain, and enhance our Services. This includes ensuring that our Services operate effectively and efficiently, and developing new features and services based on user feedback and needs.
Safety and Security: Your information helps us promote the safety, security, and integrity of our Services. We use it to prevent and address security threats, detect and respond to fraudulent activities, and protect against unauthorised access and misuse.
Measurement and Reporting: We conduct measurement, analytics, and reporting to understand how our Services are used and how they perform. This information guides us in optimising our offerings and making informed decisions for improvements.
Legal and Regulatory Compliance: We process your information to comply with applicable laws and regulations, including those related to data protection and privacy.
Additionally, we may process your information in the following specific ways:
Service Provision: We use your information to provide and manage the products and services you request. This includes delivering technical support, responding to inquiries, and addressing your comments or concerns.
Communication: We may send you emails, push notifications, text messages, alerts, and other communications about our Services and those of our third-party partners, based on your preferences and consent.
Personalization: We use your data to customise the content and advertisements you see while using our Services or interacting with third-party websites and services. This personalization aligns with your interests and preferences.
Device Linking: We link information across different devices you may use to analyse usage patterns, optimise user experience, and deliver personalised advertising. This helps us improve our Services and provide a more cohesive experience.
Activity Monitoring and Enforcement: We monitor and address prohibited activities, such as hacking or cheating, to maintain the fairness and integrity of our Services. This includes enforcing our Terms of Service and End User Licence Agreement to ensure compliance.
Development and Research: We analyse data and feedback to enhance our existing Services and innovate new products and features. This includes conducting surveys, polls, and research to better understand user needs and preferences.
By processing your information in these ways, we aim to provide a secure, personalised, and high-quality experience while adhering to legal standards.
The information we collect through our Services may also be used to deliver ads that we believe you may be interested in. We process Non-Personal Information to identify potential cases of abuse and to generate statistical insights about Website usage. This statistical information is anonymized and not used in a way that could identify specific users. To enhance our service and improve user experience, OKSpin automatically collects and records certain information sent by your browser when you use our Services. Details of the types of personal information can be found at Annex A.
We may use personal information that has been aggregated, deidentified, or otherwise anonymized and thus does not directly or indirectly identify you and that cannot, with reasonable efforts, resources, and technologies, be used to reidentify you. Such aggregated, anonymized, deidentified, or otherwise not re-identifiable information is not personal information within the scope of this Privacy Policy or applicable privacy laws.
We use such information to identify potential cases of abuse and to generate statistical insights about Website usage. This statistical information is anonymized and not used in a way that could identify specific users.
To enhance our service and improve user experience, OKSPIN automatically collects and records certain information sent by your browser when you use our Services. Details of the types of personal information can be found at Annex A.
2.4 Legal Bases for Processing Personal Information
We process your personal information based on several legal grounds, depending on the context and purpose of the processing. These legal bases include:
A. Consent:
We may process your data based on your explicit consent, particularly for purposes related to advertising, the use of certain cookies, collection of precise geolocation information, cross-device data combination, and international data transfers. You have the right to withdraw your consent at any time. The withdrawal of consent does not affect the lawfulness of processing carried out before the consent was withdrawn.
B. Legitimate Interests:
We process your personal information based on our legitimate interests, which may include:
Improving our services to better meet your needs and expectations.
Preventing fraud and ensuring the security of our services.
Implementing and securing our contractual rights and claims.
Maintaining the technical safety and proper functioning of our services.
C. Legal Obligations:
We may process your information to comply with legal and regulatory requirements. This includes adhering to statutory obligations related to data collection, storage, and processing as prescribed by applicable laws.
These legal bases ensure that our processing activities are compliant with relevant data protection regulations and are carried out in a manner that respects your rights and privacy. We may combine the information we collect with data obtained from third parties, aggregate and de-identify the collected information for research and marketing purposes and may share such data with third parties.
3. Cookies
We and our partners use cookies and similar technologies to analyse trends, manage our Site, track user activity, monitor user activity across our Site, and collect demographic information about our overall user base. Cookies help retain user preferences, store information such as shopping cart contents, and provide anonymized tracking data for third-party applications, generally enhancing your browsing experience.
You have the ability to accept or decline cookies. Most web browsers automatically accept cookies, but you can usually modify your browser settings to decline cookies if you prefer. Note that certain parts of the Website may not function properly without cookies. Additionally, even if you limit cookies for interest-based advertising, you may still receive ads, but they may be less relevant to your interests. If you erase your cookies, reset your device identifier, or use different browsers or devices, you may need to make your choices again. If you prefer not to use cookies, you can disable them through your browser settings.
We may also permit certain third-party companies to place cookies and track user behaviour to help us deliver advertising that may be of interest to users. For more guidance on managing cookies, you can consult the Help section of your browser or visit internetcookies.com.
3.1. Opt-out
If you would prefer to not receive personalised ads based on your browser or device usage, you may generally express your opt-out preference to no longer receive tailored advertisements. Please note that you will continue to see advertisements, but they will no longer be tailored to your interests. To opt-out of interest-based advertising by participating companies in the following consumer choice mechanisms, please visit:
A. Digital Advertising Alliance (DAA)’s self-regulatory opt-out page (http:// optout.aboutads.info/) and mobile application-based "AppChoices" download page (https://youradchoices.com/appchoices).
B. European Interactive Digital Advertising Alliiance (EDAA)'s consumer opt-out page (http://youronlinechoices.eu).
C. Network Advertising Initiative (NAI)’s self-regulatory opt-out page (http://optout.networkadvertising.org/).
In the mobile environment, most mobile operating systems offer device-based opt-out choices that are transmitted to companies providing interest-based advertising. To set an opt-out preference for a mobile device identifier (such as Android's GAID), visit the device manufacturer's current choice instructions pages, or read more about sending signals to limit ad tracking for your operating system here: http:// www.networkadvertising.org/mobile-choices.
Please note that these settings must be performed on each device (including each web browser on each device) for which you wish to opt-out, and if you clear your cookies or if you use a different browser or device, you will need to renew your opt-out preferences.
3.2 Do Not Track Signals
Some browsers incorporate a Do Not Track feature that signals to websites you visit that you do not want to have your online activity tracked. Tracking is not the same as using or collecting information in connection with a website. For these purposes, tracking refers to collecting personally identifiable information from consumers who use or visit a website or online service as they move across different websites over time. Our Website does not track its visitors over time and across third party websites. However, some third party sites may keep track of your browsing activities when they serve you content, which enables them to tailor what they present to you.
4. Information Sharing
We may share the information we collect or derive with third parties under the following circumstances:
A. Service Providers: We transfer information to service providers and other partners who support our business operations. This includes partners that provide technical infrastructure services, help us analyse how our Services are used, measure ad effectiveness, cheating detection, facilitate payments, or offer customer support. These partners are required to adhere to strict confidentiality obligations consistent with this Privacy Policy and our agreements with them. They are authorised to use your personal information only as necessary to perform their functions on our behalf. We partner with anti-cheating platforms such as “CheatBlocker” who provide us with cheating detection services, so as to ensure the integrity and security of our Services.
B. Affiliates: We may share your information with our affiliates for purposes that are consistent with this Privacy Policy. This allows us to streamline operations across our business entities and deliver a cohesive user experience.
C. Advertising Partners: We work with advertising partners, including advertisers, ad networks, exchanges, publishers, and others, to provide advertising services. We may share your information with these partners to help deliver ads that are relevant to you, conduct web analytics, and improve ad experiences. These partners may use the information to measure ad performance, provide interest-based or behavioural advertising, and analyse traffic. Please note that our advertising partners have their own privacy policies, which govern their use of your data.
D. Regulatory or Legal Requirements: We may disclose information to governmental or regulatory authorities as required by law, such as for tax or accounting purposes. We may also disclose information in response to a subpoena, court order, or other legal process, or to assist in investigations. Additionally, we may share information in connection with claims, disputes, or litigation, or to comply with legal obligations.
E. Safety and Terms Enforcement: If we determine that disclosure is necessary to protect the health, safety, or rights of any individual, prevent fraud, or enforce our legal rights (including contractual commitments made to us by third parties), we may share your information. This helps ensure the security and integrity of our Services.
F. Business Transfers: In the event of a business transaction, such as a merger, acquisition, joint venture, financing, or sale of assets, we may disclose personal information to a third party as part of the transaction. This may also include instances of insolvency, bankruptcy, or receivership, where personal information is transferred as part of organisational assets.
G. Consent-Based Sharing: With your consent, we may share your information for specific purposes, such as advertising and marketing. You can contact us to opt out of such sharing at any time. If you do not want us to share your personal information with third parties for marketing purposes, please reach out to us at privacy@okspin.tech.
H. Additionally, we may disclose information when we believe in good faith that it is necessary to protect our rights, ensure your safety or the safety of others, investigate fraud, or respond to a government request.
5. Information Security and Retention
5.1 Data Security
At OKSpin, safeguarding your personal information is a top priority. We employ robust physical, technical, and administrative security measures to protect the data we collect, process, and store. Our security protocols ensure that the data exchanged between you and our platform is protected during transmission. You can verify that your connection is encrypted by looking for the "https://" in the browser's address bar, along with a padlock symbol.
In addition to encryption, we regularly review and update our security measures to keep pace with technological advancements. Our security practices include:
Pseudonymization: For Targeted End Users, advertising device IDs are pseudonymized by using SHA1 hashing before storage. Since SHA1 is a one-way hashing algorithm, the original advertising device ID cannot be retrieved from the hashed version.
Regular Audits: We conduct regular security audits to identify and address vulnerabilities.
Access Control: Only authorised personnel have access to sensitive data, and all employees are trained on the importance of maintaining data privacy and security.
However, despite our best efforts, no method of data transmission over the internet or electronic storage can be completely secure. Therefore, while we strive to protect your personal information, we cannot guarantee its absolute security. It is also important to note that data transmitted in an unencrypted form, such as via email, could be intercepted by unauthorised third parties. Users should take precautions to protect their data during transmission, such as using encryption tools or other protective measures.
If you have any concerns about the security of your personal information, please contact us at security@okspin.tech.
5.2 Fraud Prevention and Automated Decision-Making
We utilize automated anti-fraud heuristics and machine learning to detect and prevent fraudulent behavior and to avoid misuse of our Services, including combating bots and synthetic users. The information processed for this purpose may include in-app behavior modeling and user device characteristics, among others. This processing is necessary to secure our Services and prevent misuse of the loyalty program. Without this activity, we would not be able to provide the OKSPIN loyalty program and rewards.
Furthermore, we may process your biometric data using facial scan technology to prevent fraudulent, synthetic, or illegitimate users from misusing the OKSPIN loyalty rewards program to wrongfully acquire rewards. Such processing is crucial for maintaining the integrity of our Services and ensuring we can continue to provide them to you. Therefore, if you do not provide your consent for the processing of biometric data, we may not be able to offer you such Services. You may opt to receive alternative services from OKSPIN without the loyalty rewards program by signing up for the OKSPIN game discovery email newsletter.
If fraudulent or synthetic behavior is detected, we will remove or block the account. We have implemented appropriate measures to safeguard your rights, freedoms, and legitimate interests, including the right to obtain human intervention, express your point of view, and contest the decision by appealing the account block or termination by contacting customer support at privacyr@okspin.tech.
5.3 Data Breach
In the event we become aware that the security of the Website has been compromised or users Personal Information has been disclosed to unrelated third parties as a result of external activity, including, but not limited to, security attacks or fraud, we reserve the right to take reasonably appropriate measures, including, but not limited to, investigation and reporting, as well as notification to and cooperation with law enforcement authorities. In the event of a data breach, we will make reasonable efforts to notify affected individuals if we believe that there is a reasonable risk of harm to the user as a result of the breach or if notice is otherwise required by law. When we do, we will post a notice on the Website and/or send you an email.
5.4 Storage Duration of Your Personal Information
We retain personal information only for as long as it is necessary to fulfil the purposes for which it was collected, or as required by legal and regulatory obligations. Our data retention practices include the following:
Contractual Data: If you engage in contracts with us, we will store your personal data for the duration of the contract and for the time necessary to fulfil post-contractual obligations. We may also retain the data for statutory retention periods, which may extend up to 10 years.
Marketing Data: If you have provided consent for the use of your email address for marketing purposes, we will retain this information within our mailing database until you unsubscribe or request its deletion.
Query Data: Personal data associated with queries will be retained for the duration necessary to process and resolve your inquiry.
Targeted End Users: Data related to Targeted End Users is retained for 365 days in a pseudonymized form before being automatically deleted from our active databases. However, backups may be stored for longer periods.
Compliance and Legal Obligations: We may retain personal data beyond the stated retention periods if necessary to comply with legal obligations, resolve disputes, enforce agreements, or manage our rights, such as asserting claims in court.
Once personal data is no longer required for the purposes for which it was collected, we will either erase it or anonymize it so that it can no longer be linked back to individuals.
6. Your Rights
You have specific rights in terms of your personal information. Please send us an email at supportr@okspin.tech at any time if you would like more information about these or to exercise any of them. The following rights are yours:
A. Withdrawal of Consent: You have the right to withdraw consent if you previously gave it for processing your personal information. Withdrawal of consent does not affect the legality of processing based on consent before its withdrawal.
B. Objection to Processing: You can object to the processing of your personal information if it is carried out based on a legal basis other than consent. If your personal information is processed for direct marketing purposes, you can object at any time without providing justification.
C. Right to Access: You have the right to know if your information is being processed by us. You can request disclosure about certain aspects of the processing and obtain a copy of the information being processed.
D. Right to Rectification: You have the right to verify the accuracy of your personal information and request updates or corrections if it is inaccurate or incomplete.
E. Right to Restrict Processing: Under certain circumstances, you can request to restrict the processing of your personal information. When processing is restricted, we will only store your information and not process it for other purposes.
F. Right to Erasure: You have the right to request the erasure of your personal information under certain conditions. We will comply unless we are required to retain it for legal obligations or to establish, exercise, or defend legal claims.
G. Right to Data Portability: You have the right to receive your personal information in a structured, commonly used, and machine-readable format. If technically feasible, you can request that it be transmitted to another controller. This right applies if your information is processed by automated means based on your consent, a contract you are part of, or pre-contractual obligations.
H. Retention and Exceptions: We may retain certain personal information to comply with legal obligations, resolve disputes, or enforce agreements. Some data may be exempt from deletion or restriction requests if necessary to meet legal requirements or defend legal claims.
7. Links to Other Websites
Our Website contains links to other websites that are not owned or controlled by us. When activating these links, you will be forwarded directly to the websites of the other service providers. Please be aware that we are not responsible for the privacy practices of such other websites or third-parties. We encourage you to be aware when you leave our Website and to read the privacy statements of each and every website that may collect Personal Information. We cannot accept any responsibility for the confidential handling of your Personal Data on these websites of third-party companies, as we have no influence on the compliance of these companies with the data protection regulations. Please inform yourself about the use of your Personal Data by these companies directly on these websites. Providing Personal Data to these third-party websites is at your own risk.
8. Privacy of Children
We do not knowingly collect personal information from minors. We encourage parents to supervise their children's online activities and ensure they do not provide personal information through our platform. If you are under the age of 18, please do not submit any personal information through our Website or Services. If you suspect that a child under 18 has submitted personal data through our Website or Services, please contact us immediately, and we will promptly delete the information. If you are aware of any such instances, notify us by privacyr@okspin.tech.
9. International Transfers
As we are based in Hong Kong, if you are located outside Hong Kong and provide personal information to us, or to one of our group companies, your information will be transferred to us in Hong Kong in accordance with this privacy policy. We also would transfer personal data to countries which are recognized as providing an adequate level of legal protection or where we can be satisfied that alternative arrangements are in place to protect your privacy rights.
Please be aware, if you are based in the United Kingdom or the European Economic Area, that we may also transfer any personal information we collect from you to third-party data processors based in other countries (such as the United States) or to other companies in our group.
10. Policy Changes
This Privacy Policy may be modified from time to time at our exclusive discretion to take into account changing industry standards, technological advancements, legal obligations, and other factors. We will update the "Effective Date" at the top of this privacy policy if we make any changes. Before the change takes effect, we may send you an email (sent to the email address you provided when creating your account) or post a notice on the website if we make any significant changes. It is recommended that you frequently review this Privacy Policy to make sure you are aware of the ways in which we gather, utilise, and distribute information.
Any modifications to this privacy statement will take effect as soon as they are published on the website. You consent to accept the amended Privacy Policy's terms by using the Website or Advertising Services after such changes.
11. Contact Us
If you have any questions or comments about this Privacy Policy, or you have a customer care issue, please send email to privacy@okspin.tech.
Please be sure to include your relevant account information in any correspondence to us. This will help ensure that we can respond to your inquiry in a timely manner.
● fit: App installation time
● flt: The first time the app was opened
● zo: Time zone offset
● tz: Time Zone ID
● session: Session ID
● uid: SDK generates user ID
● lang: Device Language
● bundle: APP package name
● make: device manufacturer
● brand: Equipment brand
● model: Equipment model
● os: Device Operating System
● osv: System version number
● appv: APP version
● sdkv: SDK version number
● width: device screen width
● height: device screen height
● ts: The current time of the device
● contype: Current network type
● carrier: Operator name
● mccmnc: Device country network code
● gcy: SIM card country code
● appk: App: Key
● okid: Unique ID of the platform
● oaid: Open anonymous device ID
● did: Device Advertising ID
● cdid: Media User ID
● fp: Device fingerprint string
● host: Device Host
● hw: Equipment HARDWARE
● bl: Version number of the system BOOTLOADER
● display: System Build ID
● device: Device Device
● product: Equipment Product
● board: Device: BOARD
● arm: arm architecture
● didDur: Time taken to obtain device ID: ms
● gpvc: Google Play Store version number
● gpvn: Google Play Store version name
● simOp: SIM card operator
● or: APP startup information
● lang_comde: Device language encoding