Privacy Policy
This Privacy Policy describes our policies and procedures on the collection, use, and disclosure of your information when you use the Service and tells you about your privacy rights and how the law protects you.
Interpretation and Definitions
Interpretation
The words of which the initial letter is capitalized have meanings defined under the following conditions. The following definitions shall have the same meaning regardless of whether they appear in singular or in plural.
Definitions
For the purposes of this Privacy Policy:
- Account
- A unique account created for you to access our Service or parts of our Service.
- Affiliate
- An entity that controls, is controlled by, or is under common control with a party, where "control" means ownership of 50% or more of the shares, equity interest, or other securities.
- Application
- Refers to GRIP SRO, the software program provided by the Company.
- Company
- Referred to as either "the Company", "We", "Us" or "Our" in this Agreement, refers to Érre Technology, Lda, R. da Demanda 50 Piso 1, 4740-023 Esposende, Portugal
- Country
- Refers to: Portugal
- Device
- Any device that can access the Service such as a computer, a cellphone, or a digital tablet.
- End-to-End Encryption (E2EE)
- A security method where data is encrypted on your device before transmission and can only be decrypted by the intended recipient. Even we cannot access the unencrypted content.
- Personal Data
- Any information that relates to an identified or identifiable individual.
- Service
- Refers to the Application.
- Usage Data
- Minimal data collected automatically, limited to unique device identifiers used exclusively for app functionality.
- You/Your
- The individual accessing or using the Service, or the company, or other legal entity on behalf of which such individual is accessing or using the Service.
- SRO Motorsports Group
- The organization whose branding, logos, images, and event-related content are used in this Application under official authorization.
Licensed Content and Intellectual Property
SRO Motorsports Group Authorization
GRIP SRO is officially authorized by SRO Motorsports Group to use their logos, images, trademarks, event information, and other intellectual property within this Application.
Official Letter of Authorisation
GRIP SRO has received an official Letter of Authorisation from SRO Motorsports Group granting permission to use their logos, images, and branding materials within this Application. This document confirms our legitimate right to display SRO content.
The Company (Érre Technology, Lda) has obtained explicit written permission from SRO Motorsports Group to use their branding and content within this Application for the purpose of providing event information, news, and related services to users.
All SRO Motorsports Group trademarks, logos, and related intellectual property remain the exclusive property of SRO Motorsports Group. The use of such content in this Application does not constitute a transfer of ownership or any rights beyond those explicitly granted in the authorization agreement.
Users are not permitted to reproduce, distribute, or use any SRO Motorsports Group content from this Application without prior written consent from SRO Motorsports Group.
Collecting and Using your personal data
Types of Data Collected
Personal Data
While using our Service, we may ask you to provide us with certain personally identifiable information that can be used to contact or identify you:
- Email address
- First name and last name
- Profile picture
- Usage Data
Usage Data
We collect minimal usage data, limited to unique device identifiers only. This data is used exclusively for app functionality purposes, such as ensuring proper operation of the Service on your device.
We do NOT collect: IP addresses, browser type, browser version, pages visited, time and date of visits, or any other diagnostic or tracking data.
Information Collected while Using the Application
Photos
Used to set your profile picture and share images in chat conversations. All images are encrypted end-to-end before being stored on our servers.
Approximate Location
Used solely to display weather information for your area. Data is processed ephemerally and not stored.
Calendar Access
Used to add race event reminders to your device's calendar. We only write events; we do not read your existing entries.
Voice Messages
If you use the chat feature, you may record and send voice messages. All voice messages are encrypted end-to-end.
You can enable or disable access to this information at any time through your device settings.
Data Storage and Encryption
All your data is stored exclusively on our own servers. We do not use any third-party services for data storage or processing.
End-to-End Encryption
The following data is protected with end-to-end encryption (E2EE), meaning that even we (the development team) cannot access or read this content:
- ✓Chat messages between users
- ✓Images shared in conversations
- ✓Voice messages
- ✓Authentication credentials
Use of your personal data
We do NOT sell, trade, or transfer your personal data to third parties. Your data is used exclusively by us to provide and improve our Service.
The Company may use Personal Data for the following purposes:
To provide and maintain our Service
Including to monitor the usage of our Service.
To manage your account
To manage your registration as a user of the Service, giving you access to different functionalities available to registered users.
For the performance of a contract
The development, compliance, and undertaking of the purchase contract for the products, items, or services you have purchased.
To contact you
By email or push notifications regarding updates or informative communications related to the functionalities, products, or contracted services.
To manage your requests
To attend and manage your requests to us.
For other purposes
Such as data analysis, identifying usage trends, and improving our Service.
Sharing Your Personal Information
No Third-Party Services
We do not use any third-party services for data processing, analytics, cloud infrastructure, or any other purpose. All data is processed and stored exclusively on our own servers.
Your personal information may only be shared in the following limited situations:
- •With Affiliates: In which case we will require those affiliates to honor this Privacy Policy.
- •With other users: When you share personal information or interact with other users through chat features, such information may be viewed by those users (protected by end-to-end encryption).
- •With your consent: We may disclose your personal information for any other purpose with your explicit consent.
Retention of your personal data
The Company will retain your personal data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use your personal data to the extent necessary to comply with our legal obligations, resolve disputes, and enforce our legal agreements and policies.
The Company will also retain Usage Data for internal analysis purposes. Usage Data is generally retained for a shorter period of time, except when this data is used to strengthen the security or to improve the functionality of our Service, or We are legally obligated to retain this data for longer time periods.
Transfer of your personal data
All your data is stored and processed exclusively on Our own servers. We do not use any third-party cloud providers or external services for data storage.
Your information, including Personal Data, is processed at the Company's operating offices and on Our own server infrastructure. Your consent to this Privacy Policy followed by Your submission of such information represents Your agreement to that processing.
Data Location
our servers are located in the European Union. All data processing occurs within the EU, ensuring compliance with GDPR and other European data protection regulations.
Since we operate our own infrastructure and do not transfer data to third parties, your data remains under our direct control at all times. Additionally, sensitive content (messages, images, voice) is protected by end-to-end encryption, making it unreadable even to us.
Your Rights Under Data Protection Laws
European Union
General Data Protection Regulation (GDPR)
- ✓Right of Access: You have the right to request copies of your personal data.
- ✓Right to Rectification: You have the right to request that We correct any information You believe is inaccurate.
- ✓Right to Erasure: You have the right to request that We erase your personal data, under certain conditions.
- ✓Right to Restrict Processing: You have the right to request that We restrict the processing of your personal data.
- ✓Right to Data Portability: You have the right to request that We transfer the data to another organization, or directly to You.
- ✓Right to Object: You have the right to object to Our processing of your personal data.
- ✓Right to Withdraw Consent: Where We rely on Your consent, You have the right to withdraw that consent at any time.
Portugal
Lei de Proteção de Dados Pessoais (Lei n.º 58/2019)
For users in Portugal, your personal data is also protected under Lei n.º 58/2019, which ensures the execution of the GDPR in Portuguese territory.
Comissão Nacional de Proteção de Dados (CNPD)
Av. D. Carlos I, 134 - 1.º, 1200-651 Lisboa, Portugal
https://www.cnpd.ptgeral@cnpd.pt
United Kingdom
UK GDPR and Data Protection Act 2018
If You are a resident of the United Kingdom, Your rights are substantially similar to those under the EU GDPR.
Information Commissioner's Office (ICO)
https://ico.org.ukBrazil
Lei Geral de Proteção de Dados (LGPD - Lei nº 13.709/2018)
- ✓Confirmation of processing: Confirmation of the existence of processing.
- ✓Access to Your data: Access to Your personal data.
- ✓Correction of data: Correction of incomplete, inaccurate, or outdated data.
- ✓Anonymization or deletion: Anonymization, blocking, or deletion of unnecessary data.
- ✓Data portability: Transfer of data to another service provider.
- ✓Information about sharing: Information about sharing with third parties.
- ✓Revocation of consent: Revocation of consent at any time.
United States
State Privacy Laws
If You are a resident of California, Virginia, Colorado, Connecticut, Utah, or other US states with comprehensive privacy laws, You may have additional rights including:
- ✓California (CCPA/CPRA): Right to know, right to delete, right to opt-out of sale/sharing, right to non-discrimination.
- ✓Virginia (VCDPA): Right to access, correct, delete, obtain a copy, and opt-out of targeted advertising.
Delete your personal data
You have the right to delete or request that We assist in deleting the Personal Data that We have collected about You.
our Service may give You the ability to delete certain information about You from within the Service. You may update, amend, or delete Your information at any time by signing in to Your Account and visiting the account settings section.
You may also contact Us to request access to, correct, or delete any personal information that You have provided to Us.
Please note that We may need to retain certain information when we have a legal obligation or lawful basis to do so.
Disclosure of your personal data
Business Transactions
If the Company is involved in a merger, acquisition, or asset sale, your personal data may be transferred. We will provide notice before your personal data is transferred and becomes subject to a different Privacy Policy.
Law Enforcement
Under certain circumstances, the Company may be required to disclose your personal data if required to do so by law or in response to valid requests by public authorities (e.g., a court or a government agency).
Other Legal Requirements
The Company may disclose your personal data in the good faith belief that such action is necessary to:
- Comply with a legal obligation
- Protect and defend the rights or property of the Company
- Prevent or investigate possible wrongdoing in connection with the Service
- Protect the personal safety of Users of the Service or the public
- Protect against legal liability
Security of your personal data
The security of your personal data is our highest priority. We implement state-of-the-art technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction.
End-to-End Encryption - Zero Knowledge Architecture
Your chat messages, images, voice messages, and authentication data are protected with end-to-end encryption. This means that even our development team cannot access or read your private content. Your data is encrypted on your device before being sent to our servers and can only be decrypted by the intended recipients.
End-to-End Encryption
Messages, images, and voice data encrypted on your device
Encrypted Authentication
All authentication credentials fully encrypted
Own Infrastructure
All data stored on our own servers, no third parties
Zero Knowledge
We cannot read your encrypted content
Our end-to-end encryption ensures that Your private communications remain private. Even in the unlikely event of a server breach, your encrypted data would remain unreadable without the encryption keys that only You and Your intended recipients possess.
Children's Privacy
our Service does not address anyone under the age of 16. We do not knowingly collect personally identifiable information from anyone under the age of 16.
If You are a parent or guardian and You are aware that Your child has provided Us with Personal Data, please contact Us. If We become aware that We have collected Personal Data from anyone under the age of 16 without verification of parental consent, We take steps to remove that information from Our servers.
If We need to rely on consent as a legal basis for processing Your information and Your country requires consent from a parent, We may require Your parent's consent before We collect and use that information.
Changes to this Privacy Policy
We may update Our Privacy Policy from time to time. We will notify You of any changes by posting the new Privacy Policy on this page.
We will let You know via email and/or a prominent notice on our Service, prior to the change becoming effective and update the "Last updated" date at the top of this Privacy Policy.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
Contact Us
If you have any questions about this Privacy Policy, You can contact us:
info@erre-technology.com
Website
erre-technology.com
Address
R. da Demanda 50 Piso 1, 4740-023 Esposende, Portugal
Data Protection Officer
For any questions or concerns regarding the processing of your personal data, You may contact our data protection representative at: info@erre-technology.com
Supervisory Authorities
If You believe that Your data protection rights have been violated, You have the right to lodge a complaint with a supervisory authority:
Portugal: Comissão Nacional de Proteção de Dados (CNPD)
Av. D. Carlos I, 134 - 1.º, 1200-651 Lisboa, Portugal
https://www.cnpd.ptThis Privacy Policy is compliant with the General Data Protection Regulation (GDPR) (EU) 2016/679, the Portuguese Data Protection Law (Lei n.º 58/2019), the UK GDPR and Data Protection Act 2018, the Brazilian LGPD (Lei nº 13.709/2018), and applicable US state privacy laws including the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA).