LEGAL

Privacy Policy

Last updated: 7 July 2026

01What this covers

This policy explains what CorroScan (“we”, “us”) collects when you use the CorroScan iOS app and the web console at app.corroscan.ai, why we collect it, where it is stored, and the controls you have. It is written to be read, not skimmed — it is short because we collect little.

02What we collect

  • Account data — your name, email address and a salted hash of your password (never the password itself). If you sign in with Google or Apple we receive your name, email and a provider ID — no contacts, no calendar, nothing else.
  • Scan data — the photos you capture, AI-detected corrosion regions and areas, capture distance and tilt, GPS coordinates and accuracy (when location permission is granted), device model, app version, and any notes or tags you add. Scan data syncs to the cloud only on paid organizations with sync enabled; otherwise it stays on the device.
  • Organization data — sites and their geofence boundaries, client names and logos, member roles, severity settings, and saved reports.
  • Billing data — handled by our payment processor; card numbers never touch our servers. We keep only the subscription state, seat count and invoice history.
  • Operational logs — standard web logs (IP address, user agent, timestamps) kept briefly for security and debugging. We use no advertising trackers and no third-party analytics scripts.

03Why we collect it

To operate the Service: syncing scans between your devices and your team, resolving scans to sites via geofences, generating reports, sending transactional email (invitations, password resets, receipts), preventing abuse, and meeting legal obligations. We do not sell personal data, we do not show ads, and we do not use your scan imagery to train machine-learning models without your explicit opt-in.

04Where it lives

Data is stored on Amazon Web Services in the Asia Pacific (Singapore) region: the database on Amazon RDS and scan imagery in a private Amazon S3 bucket. Data is encrypted in transit (TLS) and at rest. Access to production systems is limited to authorized operators.

05Who can see it

Your scan data is visible only to members of your organization, according to their roles. Beyond that, we share data only with the subprocessors that run the Service — AWS (hosting), Google (only if you choose Google sign-in), Apple (App Store purchases), our payment processor, and our email providers — each bound to process it solely for us. We disclose data to authorities only where the law requires it, and we will tell you when we are permitted to.

06Location data, specifically

Scan GPS coordinates exist so your organization can map corrosion to its sites. Location permission is optional — scans without it are simply marked “No GPS”. Coordinates are never shared outside your organization and are never used for advertising or profiling.

07Retention and deletion

We keep data while your account or organization is active. Deleting a scan removes it from the console and the underlying storage; deleting your account or organization (available in-app and in the console, or by emailing us) permanently deletes the associated data within 30 days, except minimal records we must retain by law (for example invoices). Backups age out on a rolling schedule shortly after.

08Your rights

You can access, correct, export (CSV and PDF export are built in) and delete your data. Depending on where you live — including under Malaysia’s PDPA and the EU/UK GDPR — you may also have rights to restrict or object to processing and to lodge a complaint with a supervisory authority. Write to hello@corroscan.ai and we will respond within 30 days.

09Children

The Service is for professional use and is not directed at children under 16.

10Changes and contact

If we materially change this policy we will notify you by email or in-product before the change takes effect. Questions and requests: hello@corroscan.ai. See also our Terms of Service.