System Protocol
Data Sovereignty Protocol

Privacy
Policy.

Version 2.4.1 — Last Updated December 2025

1. Information We Collect

At myECO, we prioritize the security and sovereignty of your industrial and residential telemetry data. To provide our AIoT orchestration services, we collect the following categories of information:

  • Telemetry Data:Real-time electricity consumption (Wh/kWh), water flow rates (m³), temperature, humidity, and motion sensor triggers from your connected nodes.
  • Device Metadata:Hardware identifiers (MAC addresses, IMEI), firmware versions, signal strength (RSSI), and connectivity heartbeat logs required for node diagnostics.
  • Account Information:Name, business email, organization details, and role-based access permissions defined within your workspace.

2. Data Sovereignty & Storage

In alignment with the Indonesian Personal Data Protection Law (UU No. 27 Tahun 2022 - UU PDP), all primary telemetry and user data collected via the myECO Super Platform is stored exclusively on localized servers within the Republic of Indonesia.

"Our Sovereign Infra V421 ensures that critical industrial data never exits the national boundary, providing absolute legal and operational security for Indonesian state-level and enterprise projects."

3. How We Use Your Data

Your data is processed strictly for the following purposes:

Generating automated ESG and energy efficiency reports.
Executing AI-driven automation based on learned habits.
Predictive maintenance alerts for failing assets.
System performance optimization and anomaly detection.
Verifying energy savings for financial ROI analysis.
Compliance with national regulatory reporting standards.

4. Security Protocols

We implement enterprise-grade security architecture to ensure your infrastructure remains resilient:

  • Encryption: All data is protected with AES-256 at rest and TLS 1.3 during transit.
  • Hybrid Offline Mode: Our proprietary edge firmware processes critical automation logic locally, minimizing vulnerabilities during network outages.
  • Role-Based Access (RBAC): Granular IAM protocols ensure that only authorized personnel can view specific facility telemetry.
  • Regular Audits: Periodic penetration testing and system health checks conducted by our cybersecurity engineering team.

5. Data Disclosure & Third Parties

myECO does not sell, rent, or trade your operational data to third parties. We only disclose information under the following conditions:

  • With your explicit consent for specific integrations (e.g., third-party ERP syncing).
  • To comply with legal obligations or valid government requests within the Indonesian legal framework.
  • In an anonymized, aggregated format for national energy research and development (where personal/corporate identifiers are completely removed).

6. Your Rights & Access

As a data owner on the myECO platform, you have the right to:

Access & Export

Download full historical telemetry audits in CSV/PDF format.

Correction

Update inaccurate metadata or device registration details.

Erasure

Request the permanent deletion of your account and associated node data.

Portability

Request a machine-readable copy of your system orchestration data.

7. Contact for Privacy Inquiries

For any questions regarding this Privacy Policy or your data sovereignty, please contact our Data Protection Officer (DPO):

myECO Data Security Office

Innovation Hub, BSD City, Indonesia

TRUSTED_DATA_CUSTODIAN_VERIFIED_PROTOCOL_v2