PRIVACY POLICY FOR CloudSeal Global (iOS)

Effective Date:June 10, 2026

CloudSeal Global (the “App”) is operated by Geechee Technology Solutions Co., LTD (“we,” “us,” or “our”). We are committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application.

Please read this Privacy Policy carefully. By accessing or using the App, you agree to the terms of this Privacy Policy. If you do not agree with the terms, please do not access or use the App.

1. INFORMATION WE COLLECT

We collect information that identifies, relates to, describes, or is capable of being associated with you (“Personal Information”). The categories of Personal Information we collect include:

A. Account Information

   Email address – used for registration, login, and account management.

   Name (optional) – for personalized user experience.

   User role (Guest / User / Owner) – determined by device claim status.

B. Device & Connectivity Information

   Bluetooth (BLE) data – required to discover, connect to, and communicate with CloudSeal smart locks and lead seals.

   Location permissions – required by Android OS to enable Bluetooth Low Energy (BLE) scanning. We do not track or store your precise location; this permission is solely to comply with Android system requirements for BLE discovery. [11†L5-L8]

   Device identifiers – including device model, OS version, and unique device IDs for troubleshooting and security.

C. Smart Lock / Lead Seal Data

   Claimed devices – list of smart locks/seals associated with your account.

   Access records – each Access created, including associated devices, PIN codes (hashed/encrypted), and validity period.

   Operation logs – timestamped records of unlock attempts, PIN code usage, and access events performed by all user roles (Guest, User, Owner).

D. Usage Data

   App interaction data (e.g., features accessed, time spent) for performance improvement.

   Crash logs and diagnostics.

2. HOW WE USE YOUR INFORMATION

We use your information for the following business purposes:


PurposeLegal Basis / CCPA Business Purpose
Account creation and authenticationPerform the contract / Provide the service
Bluetooth connection to smart locks/sealsPerform the contract / Functionality
Managing Access (PIN code generation, device binding)Perform the contract / Core service
Recording operation logs (security & audit trail)Legitimate interest / Security
Improving App performance and user experienceLegitimate interest
Responding to customer support requestsLegitimate interest
Detecting and preventing fraud or unauthorized accessLegal obligation / Security

We do not sell your Personal Information to third parties. We do not share your Personal Information for cross-context behavioral advertising.

3. HOW WE SHARE YOUR INFORMATION

We may share your Personal Information only in the following limited circumstances:

A. Service Providers

We may share information with third-party vendors who perform services on our behalf, such as:

   Cloud hosting providers (e.g., AWS, Google Cloud)

   Analytics services (e.g., to track app performance)

   Customer support platforms

These service providers are contractually obligated to use your information only as necessary to perform services for us and to maintain its confidentiality.

B. Compliance with Laws

We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a subpoena, court order, or government investigation).

C. Business Transfers

If we are involved in a merger, acquisition, or sale of all or a portion of our assets, your information may be transferred as part of that transaction. We will notify you via email and/or a prominent notice in the App of any change in ownership or use of your Personal Information.

D. With Your Consent

We may share your information for other purposes with your explicit consent.

4. DATA RETENTION

We retain your Personal Information only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements.

   Account information – retained for as long as your account is active, plus a reasonable period afterward as required by law.

   Operation logs – retained for [e.g., 12 months] to provide audit trails; older logs may be anonymized or deleted.

   Device association data – retained until you release a claimed device (Owner → User downgrade) or delete your account.

   PIN codes – stored in encrypted/hashed form and retained only for the duration of the Access validity period.

When you delete your account, we will delete or anonymize your Personal Information within [e.g., 30 days], subject to legal retention requirements.

5. YOUR PRIVACY RIGHTS

Depending on your state of residence (in particular, California residents under the CCPA/CPRA), you may have the following rights regarding your Personal Information:

A. Right to Know

You have the right to request that we disclose the categories and specific pieces of Personal Information we have collected about you, the categories of sources from which the information was collected, the business purpose for collecting it, and the categories of third parties with whom we share it.

B. Right to Delete

You have the right to request that we delete any Personal Information we have collected from you, subject to certain exceptions (e.g., if the information is necessary to complete a transaction, detect security incidents, or comply with legal obligations).

C. Right to Correct

You have the right to request that we correct inaccurate Personal Information we maintain about you.

D. Right to Opt-Out of Sale/Sharing

We do not sell your Personal Information. We do not share your Personal Information for cross-context behavioral advertising. Therefore, we do not offer an opt-out for such activities. If our practices change, we will update this policy and provide an opt-out mechanism.

E. Right to Non-Discrimination

We will not discriminate against you for exercising any of your privacy rights (e.g., by denying services, charging different prices, or providing a different level of service).

F. Right to Limit Use of Sensitive Personal Information

We do not collect sensitive Personal Information (e.g., Social Security number, driver‘s license, precise geolocation, racial or ethnic origin, religious beliefs, or health data). Therefore, this right does not apply.

G. Right to Data Portability

You have the right to receive a copy of your Personal Information in a structured, commonly used, machine-readable format.

How to Exercise Your Rights

To exercise any of these rights, please submit a verifiable consumer request to us by:

   Email: geecheetech@gmail.com

   Contact Form:https://www.geecheetech.com/

Only you, or someone legally authorized to act on your behalf, may make a verifiable consumer request related to your Personal Information. We will respond to your request within 45 days of receipt (or within a reasonable extension period, with notice).

6. CHILDREN‘S PRIVACY (COPPA COMPLIANCE)

The App is not intended for children under the age of 13. We do not knowingly collect Personal Information from children under 13. If you become aware that a child under 13 has provided us with Personal Information, please contact us immediately. If we learn that we have collected Personal Information from a child under 13 without verification of parental consent, we will take steps to delete that information as soon as possible. [9†L42-L47]

7. SECURITY MEASURES

We implement reasonable and industry-standard security measures designed to protect your Personal Information from unauthorized access, use, alteration, or disclosure, including:

   Encryption – Personal Information is encrypted in transit (TLS) and at rest.

   Access controls – Role-based access to data (Guest, User, Owner) is enforced within the App and backend systems.

   PIN code security – PIN codes are hashed or encrypted and never stored in plaintext.

   Regular security audits – We periodically review our security practices.

However, no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Information, we cannot guarantee its absolute security.

8. PERMISSIONS REQUIRED BY THE APP

The App requires the following permissions to function properly:


PermissionPurposeRequired?
BluetoothDiscover and connect to CloudSeal smart locks/lead sealsYes – core functionality
Location (Android)Required by Android OS to enable BLE scanning; we do not track or store your locationYes – due to OS requirements [10†L4-L7]
CameraScan QR codes displayed on CloudSeal devices for quick Access and device claimingYes – for Guest/User to claim devices

You may revoke these permissions at any time through your device settings. However, revoking Bluetooth or camera permissions will prevent the App from connecting to or claiming CloudSeal devices, rendering the core functionality unavailable.

9. THIRD-PARTY LINKS AND SERVICES

The App may contain links to third-party websites or services (e.g., support documentation, purchase pages). This Privacy Policy does not apply to those third-party services. We are not responsible for the privacy practices or content of such third parties. We encourage you to review the privacy policies of any third-party services you access.

SDK Provider NameService PurposeKey Data CollectedOfficial Privacy Policy URL
iOS
CoreBluetooth + Capacitor Bluetooth LE
Provider: Apple / Capacitor Community (open source)  ·  Native + H5 (WebView)
Scan for, connect to and exchange commands with the BWL500 cloud-seal lock (lock / unlock, read records).Bluetooth information (peripheral identifier, advertisement data, signal strength); device identifiers of the connected lock.Apple: https://www.apple.com/legal/privacy/
Capacitor (Ionic): https://ionic.io/privacy
SwiftMQTT
Provider: open source  ·  Native
Transport lock operation logs and device status messages to the backend message broker.Operation records (lock / unlock events, timestamps), device number, and the location attached to each operation.N/A (open-source library, no separate privacy policy)
Repo: https://github.com/aciidb0mb3r/SwiftMQTT
Google Maps Platform — Maps JavaScript API
Provider: Google LLC  ·  H5 (WebView)
Render the map and display the device / activity location on the device-detail and activity pages.Location data (latitude / longitude, approximate location); device & network information (IP address) required to load map tiles from Google servers.https://policies.google.com/privacy
Capacitor Filesystem
Provider: Capacitor / Ionic (open source)  ·  H5 (WebView)
Write exported files (e.g. operation records) to the device storage / cache directory.File content written to local storage and the generated file path; no data uploaded by the plugin itself.https://ionic.io/privacy
Capacitor Share
Provider: Capacitor / Ionic (open source)  ·  H5 (WebView)
Invoke the system share sheet to share text / exported files with other apps chosen by the user.The text / file the user chooses to share is passed to the system share sheet and the target app selected by the user.https://ionic.io/privacy
Capacitor Clipboard
Provider: Capacitor / Ionic (open source)  ·  H5 (WebView)
Read from / write to the system clipboard (e.g. copy device number).Clipboard content read or written on the user's action.https://ionic.io/privacy
Capacitor Preferences
Provider: Capacitor / Ionic (open source)  ·  H5 (WebView)
Persist the auth token and app preferences in the native key-value store (local storage only).Auth token and app preference data stored locally on the device.https://ionic.io/privacy

10. INTERNATIONAL DATA TRANSFERS

Your Personal Information may be transferred to and processed in countries other than the country in which you reside. These countries may have data protection laws that differ from those in your jurisdiction. By using the App, you consent to the transfer of your Personal Information to our servers located in [e.g., United States] and to the processing of that information as described in this Privacy Policy.

We take steps to ensure that any international transfer of Personal Information complies with applicable data protection laws and that your information remains protected.

11. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. We will notify you of any material changes by:

   Posting the updated policy within the App (e.g., in the Settings menu, as required by CCPA regulations effective January 1, 2026) [0†L35-L39].

   Updating the “Effective Date“ at the top of this Privacy Policy.

   Where required by law, seeking your consent before implementing material changes.

Your continued use of the App after any changes to this Privacy Policy constitutes your acceptance of the updated terms.

12. CALIFORNIA RESIDENTS – ADDITIONAL DISCLOSURES (CCPA/CPRA)

This section applies only to California residents, as required by the California Consumer Privacy Act of 2018, as amended by the California Privacy Rights Act of 2024 (CCPA/CPRA).

Categories of Personal Information Collected in the Last 12 Months


CategoryExamplesCollected
IdentifiersEmail address, name, device IDsYes
Commercial informationAccess records, device claim historyYes
Internet/network activityApp usage data, logs, crash reportsYes
Geolocation dataBluetooth-based scanning (not stored)No – only used for BLE
InferencesUser role (Guest/User/Owner)Yes

Categories of Sources

    Directly from you (account creation, Access creation)

    From your device (Bluetooth, camera, sensors)

   Automated technologies (logs, diagnostics)

Business or Commercial Purpose for Collecting

See Section 2 (“How We Use Your Information”).

Categories of Third Parties with Whom We Share Personal Information

See Section 3 (“How We Share Your Information”).

Sale or Sharing of Personal Information

We have not sold or shared Personal Information for cross-context behavioral advertising in the preceding 12 months.

Retention of Personal Information

See Section 4 (“Data Retention”).

Exercising Your Rights as a California Resident

California residents may exercise the rights described in Section 5 by contacting us at geecheetech@gmail.com. Authorized agents may submit requests on your behalf with written proof of authorization.

Shine the Light (California Civil Code Section 1798.83)

California residents may request information about our disclosure of Personal Information to third parties for their direct marketing purposes. We do not disclose Personal Information to third parties for their own direct marketing purposes.

13. NEVADA RESIDENTS

We do not sell your covered information as defined under Nevada law. If our practices change, Nevada residents may submit opt-out requests to geecheetech@gmail.com.

14. CONTACT US

If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us at:

Email: geecheetech@gmail.com

Address: 20380 Town Center Lane, Ste 290 Cupertino, CA 95014

APPENDIX: SUMMARY OF USER ROLES AND DATA ACCESS

To help you understand how your information is used based on your interaction with the App, here is a summary of our three user roles:


RoleDefinitionData Collected
GuestUnauthenticated user (default App state)No account-specific Personal Information stored; operation logs recorded anonymously
UserRegistered user without any claimed deviceEmail, name (optional), usage data, operation logs
OwnerRegistered user who has claimed at least one CloudSeal deviceAll User data, plus: claimed devices, Access records, PIN codes (encrypted), full operation logs

Role Transition Rules:

    Guest registers → becomes User

    User claims ownership of a device → becomes Owner

   Owner releases all claimed devices → automatically downgrades to User

These transitions affect the scope of data you can access and manage within the App, but do not alter our underlying data collection and retention practices described in this Privacy Policy.

Last Updated: June 10, 2026