IOnet

Privacy Policy

This Privacy Policy explains how IOnet and its related services collect, use, store, and protect your information when you use our mobile applications, web applications, APIs, and connected device ecosystem.

Effective date: 11 August 2026 Last updated: 11 August 2026

1. Who we are

IOnet is operated by Sunshine Powertronics Pvt. Ltd. (“Company”, “we”, “us”, or “our”), based in Pune, India. IOnet provides an Internet of Things (IoT) platform that enables users to register accounts, manage connected devices, share device access, subscribe to information channels, and interact with related services across mobile and web clients.

2. Scope of this policy

This policy applies to:

  • The IOnet mobile application(s)
  • The IOnet web application(s) and admin portals
  • IOnet backend APIs and authentication services
  • Device connectivity, sharing, messaging/channel features, and related ecosystem services linked to IOnet

By creating an account or using IOnet, you agree to the practices described in this Privacy Policy. If you do not agree, please discontinue use of the services.

3. Information we collect

We collect information needed to operate the IOnet ecosystem securely and reliably.

3.1 Account and profile information

  • Email address
  • Name
  • Phone number (when provided)
  • Profile picture (when uploaded)
  • Account status, role, and profile completion details
  • Credit / usage points associated with your account

3.2 Authentication and security information

  • One-time passwords (OTPs) generated for login/verification (stored in hashed form where applicable)
  • Login timestamps and last login IP address
  • Authentication tokens required to keep you signed in securely

3.3 Device and ecosystem information

  • Device identifiers and device names
  • Device ownership and sharing relationships
  • Device images (when uploaded)
  • Device activity indicators such as last-seen status
  • Channel subscriptions and related content preferences within IOnet

3.4 Technical and usage information

  • App/API request logs required for security, debugging, and service reliability
  • Basic diagnostic data related to failed requests or service health
Note: IOnet is designed for IoT account and device management. We do not sell your personal information.

4. How we use your information

We use collected information to:

  • Create and manage your IOnet account
  • Authenticate users through email OTP and protect accounts from unauthorized access
  • Enable device registration, ownership, sharing, and access control
  • Provide channel subscription and related in-app communication features
  • Operate admin tools for legitimate account and device administration
  • Send transactional messages such as verification codes and important service notices
  • Maintain security, prevent abuse, troubleshoot issues, and improve service reliability
  • Comply with legal obligations and enforce our terms

5. Sharing and disclosure

We may share information only in these limited circumstances:

  • With other IOnet users you authorize — for example, when you share a device, selected account details (such as name/email) may be visible to the recipient to identify the shared access.
  • With service providers — infrastructure, email delivery, hosting, or operational vendors who process data on our behalf under confidentiality obligations.
  • For legal and safety reasons — when required by law, regulation, court order, or to protect the rights, security, and integrity of users and the IOnet platform.
  • Business transfers — in connection with a merger, acquisition, reorganization, or sale of assets, subject to appropriate safeguards.

We do not sell personal data to third parties for advertising.

6. Devices, sharing, and connected ecosystem

IOnet allows users to own devices and share access with other users subject to account and device limits. Shared access is controlled by the device owner and may be revoked.

Depending on device type and integration, connected devices in the IOnet ecosystem may transmit operational status or related telemetry required for remote management. Access to device data is restricted to authorized owners, shared users, and administrators as needed to provide the service.

7. Data retention

We retain personal data only for as long as necessary to:

  • Provide the IOnet services
  • Maintain account and device records
  • Meet security, audit, and legal requirements
  • Resolve disputes and enforce agreements

OTP records are temporary and expire after a short period. If you request account deletion or an account is deactivated, we may retain limited information as required for legitimate business, security, or legal purposes.

8. Security measures

We implement reasonable technical and organizational measures to protect your information, including:

  • Encrypted transport (HTTPS) for API communication
  • Hashed OTP verification where applicable
  • Access controls and authenticated API sessions
  • Server-side authorization checks for device ownership and sharing

No method of transmission or storage is completely secure. While we work to protect your data, we cannot guarantee absolute security.

9. Your rights and choices

Subject to applicable law, you may request to:

  • Access the personal information we hold about you
  • Correct inaccurate profile information
  • Delete or deactivate your account
  • Withdraw device-sharing permissions you previously granted or received
  • Ask questions about how your data is processed

You can update certain profile details directly in the app. For account-related privacy requests, contact us using the details below.

10. Children’s privacy

IOnet is intended for use by adults and organizations managing IoT systems. The service is not directed to children under 13 (or the minimum digital consent age in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided personal data, please contact us so we can take appropriate action.

11. International processing

IOnet may process and store information on servers located in India or in other regions where our service providers operate. By using the service, you understand that your information may be processed in these locations in accordance with this policy and applicable law.

12. Changes to this policy

We may update this Privacy Policy from time to time to reflect product, legal, or operational changes. The “Last updated” date at the top of this page will be revised when changes are published. Continued use of IOnet after an update constitutes acceptance of the revised policy where permitted by law.

13. Contact us

If you have questions, requests, or concerns about this Privacy Policy or IOnet data practices, contact:

Sunshine Powertronics Pvt. Ltd.

Product: IOnet

Location: Pune, India

Email: support@sunshineiot.in

For app-store listings, this Privacy Policy is the public notice describing IOnet’s data practices for the application and its connected ecosystem.