Privacy Policy

At Echoflux Solutions Inc., protecting your privacy is fundamental to how we operate. As a provider of cloud-based platforms, ERP systems, managed IT services, and community applications, we understand the importance of securing personal and business information in a digitally connected world.

This Privacy Policy outlines how we collect, use, protect, and manage your data in compliance with global cybersecurity and data privacy best practices, including GDPR (EU), PIPEDA (Canada), and CCPA (California, USA).

1. Information We Collect

We collect only the data necessary to deliver our services effectively and securely. This includes:

A. Personal Information

  • Name, email address, phone number
  • Company name, job title, and other business identifiers
  • Billing details (when applicable)

B. Usage & Technical Data

  • IP address, device type, browser type, access logs
  • Session activity on our website or platforms
  • Cookies and metadata for performance analytics and fraud detection

C. Platform Data

  • User account credentials (encrypted)
  • Project or client-specific files uploaded into our ERP platforms
  • Interactions with Echoflux platforms (e.g., HomiiConnect, ClientistryERP)

We do not knowingly collect data from minors under 16 years of age.

2. How We Use Your Data

Your information is used strictly for:

  • Service delivery: To provide and support the ERP tools, community platforms, and IT solutions you use
  • Security monitoring: To detect unauthorized access or anomalies
  • User experience: To enhance platform features and navigation
  • Compliance: To fulfill legal, financial, and regulatory obligations
  • Communication: To send product updates, notifications, or service-related alerts (you may opt out of marketing emails)

We follow the principle of data minimization — collecting only what we need, for the time we need it.

3. Cybersecurity Measures to Protect Your Data

Echoflux implements robust and layered security controls aligned with ISO/IEC 27001, NIST, and CIS standards. Measures include:

Encryption

  • All data in transit is secured using TLS 1.2 or higher
  • Sensitive data at rest is encrypted using AES-256

Access Controls

  • Role-based access to restrict internal system visibility
  • Multi-Factor Authentication (MFA) for admin or sensitive operations
  • Regular audit trails and system activity logs

Data Backups & Redundancy

  • Automated backups to secure offsite or cloud environments
  • Disaster recovery protocols and high-availability infrastructure

Incident Response

  • Active intrusion detection systems (IDS)
  • Breach response plan with notification procedures within 72 hours (as applicable by jurisdiction)
  • Cyber incident reporting & resolution log maintained for audits

4. Sharing & Disclosure

We do not sell your data. Data is shared only as necessary:

  • With trusted third-party processors (e.g., cloud hosting, analytics, payment processors) under strict confidentiality and security agreements
  • With legal or regulatory authorities only when compelled by valid legal processes
  • In corporate transitions, such as mergers, provided privacy commitments continue

5. Cross-Border Data Transfers

As a Canadian-based company serving global users, your data may be transferred to and stored in jurisdictions with different privacy laws. We ensure:

  • Adequate data protection measures are in place (e.g., Standard Contractual Clauses or equivalent)
  • All service providers are contractually bound to follow comparable data protection practices

6. Your Rights & Controls

Depending on your jurisdiction, you may have rights to:

  • Access your personal data
  • Correct or update inaccurate information
  • Request deletion of your data
  • Restrict or object to certain types of processing
  • Data portability for your information

To make a request, please email: privacy@echoflux.com
We respond within the legally required time frame.

7. Retention Policy

We retain personal data only for as long as:

  • It is needed to fulfill the purpose of collection
  • It is legally required (e.g., tax or regulatory)
  • You maintain an active relationship with us

Upon expiry, data is securely deleted or anonymized using certified procedures.

8. Cookies & Tracking Technologies

We use cookies for:

  • Session management and authentication
  • Analytics and performance optimization
  • Personalization of content

You can manage cookies via browser settings or our Cookie Preference Center.

9. Policy Updates

We may update this Privacy Policy periodically to reflect:

  • Changes in regulation or cybersecurity standards
  • Enhancements in platform security or data handling
  • Expansion of services

We will notify users via email or in-app notifications when material changes occur.

10. Contact Us

For any questions, concerns, or data-related requests: contact us