Connexio Privacy Policy
Connexio is a secure notification and group-alert system intended for authorized personnel. This Privacy Policy explains what personal data we process, why we process it, who can see it, and what choices you have.
1. Who we are (Controller)
Connexio is operated by Military Technical Academy “Ferdinand I” (“we”, “us”). We determine how Connexio user data is processed for the purposes described in this policy.
Contact (privacy & support): Email: notificari@mta.ro. Support page: https://connexio.fsisc.ro/support
If your organization/unit uses Connexio under its own internal policies, your organization may also have responsibilities regarding your data (for example, administrative decisions about accounts, roles, and group membership).
2. What data we process
Connexio is designed to process only the data required to operate secure accounts, deliver notifications, and provide read confirmation.
A. Account and identity data
- Organization email address (used as the account identifier)
- Account status (active/disabled/removed)
- Role (user / manager / admin)
- Group membership (which groups you belong to)
B. Authentication data
- Password hash (we do not store passwords in plain text)
- Registration verification status (verified/unverified). Email OTP is used for verification at registration only. OTP is not used for login and Connexio does not provide 2FA.
C. Notifications and read status
- Notifications you receive (content and metadata such as sender, group, timestamps)
- Read/open status (“read receipts”) and timestamps
D. Device and technical data
- Push notification token (device token) needed to deliver push notifications
- Basic security and diagnostic logs (e.g., IP address, device/app version, timestamps, error logs), used to maintain security and reliability
3. How we use data (purposes)
- Create and manage Connexio accounts restricted to approved organization email domains
- Verify email ownership at registration via OTP
- Authenticate sign-in using email + password (no 2FA)
- Deliver notifications to individuals and groups
- Provide read/open confirmation for notifications
- Administer roles, groups, and users through the administration console
- Detect, prevent, and investigate security incidents and misuse
- Troubleshoot errors and improve stability and performance
4. Who can see your information inside Connexio
Connexio uses role-based access controls:
- You (the user): can see your own notifications and relevant account information.
- Managers: can manage groups they own/manage, add members, send notifications to those groups, and see read/open status for notifications sent within their groups.
- Admins (web console): can manage users (including role changes), group membership, send notifications, and remove users.
We limit visibility to what is necessary for operational communication and administration.
5. Legal basis (GDPR)
Where the GDPR applies, we process personal data under one or more of the following legal bases:
- Performance of a contract / providing the service (operating your account, delivering notifications)
- Legitimate interests (ensuring security, preventing abuse, and providing operational accountability such as read confirmation)
- Legal obligations (where applicable, e.g., security, compliance, or record-keeping obligations)
6. Sharing and third parties
We do not sell your personal data. We may share limited data with service providers only as needed to operate Connexio:
- Apple Push Notification service (APNs): to deliver push notifications to iOS devices (using your device push token).
- Email delivery systems: to send OTP emails for registration verification (using your email address).
- Hosting / infrastructure providers: to store and operate the service.
7. International transfers
If any service provider processes data outside the European Economic Area (EEA), we take steps intended to ensure an adequate level of protection for your data (for example, using appropriate contractual safeguards where required).
8. Data retention
We keep personal data only for as long as needed for the purposes described above, unless a longer period is required by law or applicable organizational policy. Typical retention principles:
- Account data: retained while your account is active; removed or anonymized after account removal where feasible and appropriate.
- Password hashes: retained while the account is active and removed when the account is removed.
- OTP verification data: retained only as needed to complete verification and for security auditing; OTP codes expire and are not used for login.
- Notifications and read status: retained according to operational needs and administrative settings; administrators may delete users and may remove associated access.
- Security/diagnostic logs: retained for a limited period for security and troubleshooting, then deleted or anonymized.
9. Security
We implement technical and organizational measures designed to protect personal data, including:
- TLS/SSL encryption for data in transit
- Password storage using a one-way cryptographic hash
- Role-based access controls for admin/manager/user functions
- Monitoring and logging to help detect suspicious activity
No system can be guaranteed 100% secure, but we work to protect Connexio and its users.
10. Your rights and choices
Depending on applicable law (including GDPR), you may have rights to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data (where applicable)
- Restrict or object to certain processing
- Data portability (where applicable)
Because Connexio is typically managed by an organization/unit, some requests may need to be handled through your unit’s Connexio administrator (for example, account removal). You can also contact us at notificari@mta.ro.
Account deletion
You can request deletion of your Connexio account and associated personal data at any time by emailing notificari@mta.ro from your registered email address, or by contacting your unit’s Connexio administrator. Because Connexio accounts are provisioned and managed by your organization/unit, account creation and removal are administered by authorized administrators; your request will be processed in accordance with applicable organizational policy and law. Upon deletion, your account and associated personal data are removed or anonymized where feasible and appropriate (see “Data retention” above).
11. Complaints
If you are in Romania, you may contact the supervisory authority for Personal Data Processing (ANSPDCP). Website: https://www.dataprotection.ro/
12. Children’s privacy
Connexio is intended for authorized personnel and is not directed to children. We do not knowingly collect personal data from children.
13. Changes to this policy
We may update this Privacy Policy to reflect changes in Connexio or legal requirements. We will update the “Effective date” and, where appropriate, provide additional notice in the app or on our website.