Junify Corporation and its affiliates collects and uses personal data when providing its services to business customers. This Privacy Policy explains how we collect, use, share, and protect personal data and describes the choices available to Customers, administrators, and end users.
Junify provides services only to organizations. Our services are not intended for personal consumer use and are not directed to children.
If you have any questions about this Privacy Policy, please contact us at [email protected].
This Privacy Policy applies to:
This Privacy Policy does not replace or limit any data processing agreement or similar contract between Junify and a Customer. If there is any conflict between this Privacy Policy and a data processing agreement, the terms of the data processing agreement will usually control for the processing that falls within its scope.
This Privacy Policy is written for:
For the purposes of this Privacy Policy:
Customer administrators define the scope of data collection and monitoring through configuration of the services. The Customer is responsible for providing any required notices to end users and for having a valid legal basis for the processing carried out through the services.
Junify may also act as a controller for certain Service Data that we use for our own purposes, such as account management, security monitoring, and service improvement. In those cases we determine the purposes and means of processing and comply with Applicable Data Protection Laws as a controller.
The details of our controller and processor roles in relation to a particular Customer relationship may be further specified in a data processing agreement or similar contract.
For our public websites, marketing activities, and sales operations, Junify generally acts as a controller of personal data collected from website visitors, prospects, and business contacts.
Junify processes personal data in accordance with the following principles:
We process personal data only when we have a lawful basis and in a fair and transparent manner.
We collect and use personal data only for specified and legitimate purposes and do not process it in ways that are incompatible with those purposes.
We collect the minimum amount of personal data needed to achieve the stated purposes and encourage Customers to configure the services in a privacy protective way.
We retain personal data only for as long as necessary for the purposes described in this Privacy Policy or in the Customer agreement, or as required by law.
We apply appropriate technical and organizational measures, including encryption and access controls, to protect personal data against unauthorized or unlawful access, use, or disclosure.
Access to personal data is restricted based on job role and business need. Access is logged and subject to review.
Where possible, we use de identified or aggregated data for analytics, service improvement, and reporting. We do not attempt to re identify de identified data.
We provide administrators with settings that control the scope of data collection and optional features. We support Customers in fulfilling requests from data subjects.
We consider privacy impacts when designing new features, perform internal reviews, and seek to build privacy protection into our products and processes from the outset.
Junify staff do not routinely access Customer Content. Human access is limited to specific situations such as security incidents, legal obligations, or support requests, and is subject to strict controls and logging.
The specific data we process depends on how the services are configured and which features are used. At a high level, we process the following categories of personal data.
Account information includes:
Junify uses account information to create and manage Customer accounts, provide access to the services, communicate with Customers, and perform billing and contract management.
Device and technical information may include:
We use this information to operate and secure the services, adapt the experience to the device, and diagnose technical issues.
Usage information may include:
We use usage information to provide the services, maintain security, understand service performance, and improve our products. We may generate aggregated statistics from usage information that no longer relates to an identified or identifiable individual.
Customer Content includes:
Customer Content is processed by Junify as a processor on behalf of the Customer. We do not use Customer Content to train or fine‑tune our own generative AI models. Generative AI components in the services operate on Customer Content in an inference‑only mode and are not trained on Customer Content. Where features require temporary storage or indexing of Customer Content, such processing is performed only to provide the services to the Customer in accordance with the Customer’s instructions.
Some features involve processing of data that is more sensitive or that comes from additional sources, for example:
Junify collects and processes this type of data only when a Customer administrator has explicitly enabled the relevant feature or integration and has configured the scope of the data to be collected. By default such features are usually turned off.
When a Customer connects third party applications or identity providers to the services, we may receive data from those providers, such as:
We use this data to provide the requested integration, for example to synchronize users or to enable specific security or analytics functions.
If you contact us through email, in product chat, or other channels, we may collect:
We use this data to respond to requests, maintain our relationship with Customers, and improve our services.
Our websites and some parts of the services use cookies and similar technologies such as pixels and software development kits. These technologies may collect information about how you use our websites and services, including pages visited, referral URLs, and other usage details. For more information, see section 8.
Where a Customer enables features that use generative artificial intelligence models, we may process:
We limit the data provided to these models to what is necessary to generate the requested output and operate the feature. For details, see section 9 and the relevant annex.
Junify does not seek to collect special categories of personal data such as information about health, race or ethnic origin, political opinions, religious or philosophical beliefs, or similar data, and our services are not designed to process such data.
We do not direct our services to children and do not knowingly collect personal data from children. If a Customer chooses to store special category data or children’s data in Customer Content, this is done under the Customer’s responsibility as controller, and we process such data only as a processor in accordance with the Customer’s instructions. Even in that case, we do not use such data to train general models or for independent marketing.
We recommend that Customers avoid storing highly sensitive personal data in Junify unless it is strictly necessary and appropriate safeguards are in place.
Provision and operation of the services
To provide, operate, and maintain the services, including user authentication, configuration, data processing requested by the Customer, storage, and display of Customer Content, as well as billing and account management.
Execution of automated processing as configured by administrators
To carry out automated processing, analysis, and reporting configured by Customer administrators, including monitoring, alerting, and protection tasks within the scope defined by the Customer.
Security and misuse prevention
To protect the services, Customers, and Junify from security threats and misuse, including threat monitoring, detection and investigation of suspicious activity, prevention of fraud, and incident response.
Service improvement and research
To analyze usage trends, develop new features, and improve the performance and reliability of the services, primarily using Service Data and de identified or aggregated data.
Customer support and communication
To respond to requests, inquiries, and complaints, to provide technical support, and to send service related communications such as security alerts, updates, and administrative messages.
Optional features such as generative AI and advanced monitoring
To provide optional features that involve additional processing, such as generative AI assistance or shadow IT detection, where these features are enabled by the Customer and configured by administrators.
Legal compliance and dispute resolution
To comply with legal obligations, respond to lawful requests by public authorities, enforce our agreements, and protect our rights, privacy, safety, and property and those of our Customers and others.
Where Applicable Data Protection Laws require a legal basis for processing, we rely on the following:
When processing is necessary to provide the services under the Customer contract, including user authentication, core functionality, and support.
When processing is necessary for our legitimate interests or the legitimate interests of a Customer, such as service improvement, security, and fraud prevention, and these interests are not overridden by the rights and interests of data subjects.
When we request consent for certain activities, such as non essential cookies or optional AI features in specific jurisdictions. Where we rely on consent, you can withdraw it at any time.
When processing is necessary to comply with legal obligations, such as maintaining certain records or responding to lawful requests.
The specific legal basis can depend on the context and on the relationship between Junify and the data subject. Additional information may be provided in a data processing agreement or a region specific notice.
Junify designs its services to allow Customer administrators to control what data is collected and how certain features operate.
Administrators can:
For sensitive features, such as email monitoring, endpoint monitoring, or location related functions, default settings are usually off and must be explicitly enabled by an administrator.
End users may have certain choices, including:
Because Junify usually acts as a processor for Customer Content and related data, end users should first contact their organization’s administrator for questions about the organization’s use of Junify and the configuration of the services.
We use cookies and similar technologies for several purposes:
You can control cookies through:
Essential cookies that are necessary for the operation of the site or service may not be disabled where they are strictly necessary. For more information about the cookies used on our websites, we may provide a separate cookie notice or annex.
Junify may offer features that use generative artificial intelligence models provided by trusted third party model providers.
When these features are enabled:
Generative AI may occasionally produce incorrect or inappropriate outputs. Customers should not rely solely on AI outputs for decisions that have legal, financial, or other significant effects. Human review and judgment remain essential.
Further details about AI related processing, data flows, and subprocessors may be provided in a dedicated annex.
We share personal data only as described in this Privacy Policy or with the consent of the relevant controller or data subject.
We engage sub-processors and service providers to support the services, for example for:
These partners process personal data only under our instructions and are subject to contractual obligations that require appropriate security and privacy protections. We maintain a separate Sub-Processor List identifying our key sub-processors and make it available to Customers, and we update that list as described in the applicable customer agreement or DPA.
Some third parties act as independent controllers when processing personal data they receive from us or directly from you. For example, payment processors and some marketing and analytics providers may use personal data for their own purposes in accordance with their own privacy policies. In such cases, we encourage you to review their privacy policies for more information.
Depending on the configuration of the services, personal data may be shared within the Customer organization. For example, administrators may be able to view certain usage information and reports relating to end users. Features that involve collaboration may allow users to view each other’s names, contact details, or activity.
If Junify is involved in a merger, acquisition, financing, reorganization, or sale of all or part of its business, personal data may be transferred to another entity as part of the transaction. In that case we will require the receiving entity to respect this Privacy Policy or follow equivalent protections.
We may disclose personal data when we believe in good faith that such disclosure is reasonably necessary to:
We carefully assess the scope and legal basis of such requests and seek to limit disclosures to what is legally required.
Junify is based in the United States and may process personal data in the United States and other countries. These countries may have data protection laws that are different from the laws of your country.
When we transfer personal data from regions such as the European Economic Area, the United Kingdom, or Japan to countries that do not provide an adequate level of data protection, we implement appropriate safeguards such as:
We may also conduct transfer impact assessments and implement additional safeguards where required.
We retain personal data for as long as necessary to fulfill the purposes described in this Privacy Policy and in the Customer agreement, or as required by law. Retention periods may vary based on the type of data and the context of processing.
In general:
We may retain de identified or aggregated information that no longer identifies an individual for a longer period for analytics, service improvement, and statistical purposes.
We use technical and organizational measures designed to protect personal data against accidental or unlawful destruction, loss, alteration, and unauthorized disclosure or access.
These measures include:
While we take reasonable steps to protect personal data, no system can be completely secure. Customers are responsible for maintaining the security of their own systems and for configuring the services in a secure way, including management of access credentials and administrator permissions.
Junify aims to align its security program with recognized frameworks such as SOC 2 and similar standards and may pursue external attestations or certifications as the services mature.
Depending on your location and subject to Applicable Data Protection Laws, you may have certain rights regarding your personal data, such as:
When Junify processes personal data as a processor on behalf of a Customer, we usually cannot act directly on requests from end users regarding Customer Content or other data controlled by the Customer. In those cases, you should direct your request to the relevant Customer. We will assist the Customer in responding to such requests when required by our agreement and by law.
For personal data that Junify processes as a controller, you may submit a request by contacting us at [email protected]. We may need to verify your identity and may not be able to fulfill a request where we are legally required or permitted to retain data.
This section provides additional information for individuals in certain jurisdictions. These supplements apply in addition to the rest of this Privacy Policy. If there is any conflict between this section and the other sections of this Privacy Policy, this section will usually control for individuals in the relevant jurisdiction.
If you are located in the European Economic Area or the United Kingdom, Junify will usually act as a processor of Customer Content and related personal data when providing the services to a Customer, and as a controller of certain Service Data such as account, billing, security and website data.
For processing where Junify acts as a controller, the legal bases described in section 6 apply. You have the rights described in section 14, including the right to request access to your personal data, rectification, erasure, restriction, objection to certain processing and data portability, subject to the conditions set out in Applicable Data Protection Laws.
You also have the right to lodge a complaint with a supervisory authority. A list of supervisory authorities in the European Economic Area is available from the European Data Protection Board. In the United Kingdom you can contact the Information Commissioners Office. We would appreciate the opportunity to address your concerns directly before you contact a supervisory authority, so we encourage you to contact us first using the details in section 17.
Where we transfer personal data from the European Economic Area or the United Kingdom to countries that do not provide an adequate level of data protection, we implement appropriate safeguards as described in section 11.
For individuals in Japan, Junify distinguishes between personal data that it controls and Customer Content that it processes on behalf of Customers.
Personal data that Junify collects and uses for its own purposes, such as account management, security monitoring, support communications and operation of the websites, is treated as personal data held by Junify under the Act on the Protection of Personal Information of Japan.
By contrast, Customer Content that Customers upload, connect or otherwise submit for their own business purposes is processed by Junify as a processor on behalf of the Customer. As a general rule, Junify does not treat Customer Content as Junifys retained personal data under the Act on the Protection of Personal Information. The Customer is responsible for defining the purposes of use of Customer Content and for providing any required notices to data subjects.
When Junify transfers personal data from Japan to other countries, Junify implements safeguards required by the Act on the Protection of Personal Information and other Applicable Data Protection Laws. Where required, we can provide additional information about such safeguards upon request.
Certain United States state privacy laws grant specific rights to residents, including rights relating to access, deletion, correction and opt out of certain uses and disclosures of personal information.
Junify does not sell personal information or share it for cross context behavioral advertising, as those terms are defined under California law. We also do not use Customer Content for our own independent advertising or marketing that targets individuals.
If you are a resident of California, subject to Applicable Data Protection Laws you may have the right to:
For residents of other United States states that have comprehensive privacy laws, including for example Colorado, Connecticut, Utah and Virginia, similar rights may be available, such as rights to access, delete, correct and obtain a copy of your personal information and rights to opt out of certain processing such as targeted advertising or sale of personal information, in each case as defined by the laws of your state.
To exercise your rights under United States state privacy laws, you may contact us using the details in section 17 and indicate that your request relates to your state privacy rights. We may need to verify your identity before responding to your request and we may not be able to fulfill your request in all cases, for example where a legal exception applies. Where required by law, you may appoint an authorized agent to submit a request on your behalf, subject to verification steps.
Junify may provide a separate United States state privacy notice, including a California specific notice at collection, that describes our practices and your rights in more detail. Where such a notice is published, it should be read together with this Privacy Policy and, in the event of any inconsistency, that notice will usually control for residents of the relevant state.
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, services, or legal requirements.
When we make material changes, we will:
If you continue to use the services after the effective date of a revised Privacy Policy, your use will be subject to the updated policy, subject to any requirements in your agreement with us.
If you have questions, concerns, or requests regarding this Privacy Policy or our processing of personal data, you can contact us at:
Junify Inc
470 Ramona Street
Palo Alto CA 94301
United States
Email: [email protected]
Junify may provide feature specific annexes that form part of this Privacy Policy. These annexes describe in more detail how particular features process data, including:
Examples of such annexes may cover topics such as email and communication integrations, endpoint and device monitoring, shadow IT detection, generative AI features, and website cookies and analytics.
Information about Junify’s sub-processors is provided in a separate Sub-Processor List and is not itself an annex to this Privacy Policy.
In case of any inconsistency between an annex and this Privacy Policy, the annex will usually control for processing that is specific to that feature.