Privacy policy
Last updated: 01 Oct 2026
1. Introduction
FarEye Technologies Private Limited including all its affiliates (“FarEye”) is committed to maintain your trust by protecting your personal data. This Privacy Policy explains how we collect, use, share and protect your personal data in the course of using the website https://www.fareye.com (“Website”), its mobile application and any other website operated by us from which you are accessing this Privacy Policy and our services will only be used in accordance with this Privacy Policy. It also describes the choices available to you regarding the use of your personal data. For purposes of this Privacy Policy, the terms “FarEye,” “we,” “us” and “our” shall refer to FarEye and its domestic and international offices and associates.
Where FarEye provides identity verification or similar services to its enterprise customers, biometric data may be processed on the relevant customer’s instruction. Please see Section 3A (Biometric Data Processing) for details.
FarEye is committed to ensuring that your privacy is protected, and to the extent possible by FarEye, that your personal data is secure. FarEye shall process your personal data in a transparent and lawful way. Any personal data you provide when using our Website and any other website operated or managed by us from which you are accessing this Privacy Policy (each a “Site”) and our Services will only be used in accordance with this Privacy Policy. Please read this Privacy Policy carefully to understand our policies regarding your personal data. If you do not agree with this Privacy Policy, your choice is not to use our Site and Services as by continued to use the service of FarEye it is deemed that you have read the complete terms and hereby expressly provide acceptance of the use.
Click here to refer to Privacy Policy applicable for persons covered under California Consumer Privacy Act (CCPA). Where an enterprise customer operates in jurisdictions with specific biometric privacy laws (for example, Illinois, Texas, Washington and Colorado), those laws apply to that customer’s data, and the retention and destruction schedule in Section 3A.5 is designed to meet them.
2. What is Personal Data?
For individuals covered by the General Data Protection Regulation (GDPR), personal data is any information relating to an identified or identifiable natural person.
For individuals covered under California Consumer Privacy Act (CCPA), the personal information means information defined under the Act as amended.
For individuals not covered under above, FarEye defines personal data as data that allows someone to identify or contact you, including, for example, your name, address, telephone number, e-mail address, government issued identification information, education information, payroll information, as well as any other non-public information about you that is associated with or linked to any of the foregoing data.
3. Information That We Collect
In the course of using this Website, FarEye collects the following data:
When you subscribe to our e-mail alerts, we collect your name and e-mail address.
When you download an e-book, checklist or other content from either our Site or another social media platform, we will collect your name, contact number and e-mail address as well as any other content included in form, in order to send you materials relating to such content.
If you provide us feedback or contact us via e-mail, we will collect your name and e-mail address, as well as any other content included in the e-mail, in order to send you a reply.
When you participate in one of our surveys, we may collect additional profile information being asked for in the survey form.
If you apply for a demo, in the demo form we will collect information mentioned in the demo form.
If you apply for a job, we collect personal information as well as your resume which includes the information related to you as well as other contacts/references mentioned by you.
For existing customers of FarEye SaaS service, using web and mobile application, while using our services, we collect your geolocation data (which is stored in encrypted form) to improve your overall mapping experience. This data is specifically used in order to perform our business functions and provide you with services such as-
- Tracking of shipment location
- Real-time predictive visibility on the estimated time of arrival
- Optimize routes in real-time to shrink delivery turnaround time
- To enforce and validate the location of the parcel
- Image Geo-Tagging
When FarEye provides identity verification services on behalf of an enterprise customer, we collect a live selfie, a badge photograph and derived biometric identifiers. Please see Section 3A (Biometric Data Processing) for full details.
We may also collect personal data at other points in our Site that state that personal data is being collected.
However, except as set out in Section 3A (Biometric Data Processing), we do not collect/ process the following types of data:
Sensitive data like data revealing racial or ethnic origin, political opinions, religious or political beliefs, genetic data, , data concerning health and persons’ sexual life and/or sexual orientation, Legal data, Data on or about children. Biometric data is processed only where a specific FarEye service (such as identity verification) is engaged by an enterprise customer, and only as described in Section 3A.
3A. Biometric Data Processing
This Section 3A describes how FarEye processes biometric data when it provides identity verification or similar services to its enterprise customers and sets out FarEye’s publicly available written policy on biometric data, including its retention schedule and guidelines for permanent destruction. In providing these services, FarEye acts as a processor (or service provider) to, and on the documented instructions of, the relevant enterprise customer. To the extent of any inconsistency concerning biometric data, this Section 3A prevails over the rest of this Privacy Policy.
3A.1 What we process
When identity verification services are enabled by an enterprise customer, FarEye processes the following (together, “Biometric Data”):
- live selfie images captured through the mobile application;
- badge photographs;
- facial biometric identifiers derived from selfie images;
- confidence and match scores generated during verification; and
- related metadata, including timestamp, location and capture context.
3A.2 When and why
FarEye processes Biometric Data solely on behalf of the enterprise customer, to verify the identity of an enrolled user before that user commences operational activity in the application, for the purpose of confirming that the person using the application is the enrolled user. Biometric Data is not processed for any other purpose.
3A.3 Controller- processor relationship
The enterprise customer that enrols a user is the controller (or “business”, as applicable) of that user’s Biometric Data and determines the purposes and means of its processing. FarEye processes Biometric Data as processor (or “service provider”) only on the customer’s documented instructions under a Data Processing Addendum. Requests concerning Biometric Data should be raised with the relevant enterprise customer in the first instance (see Section 3A.10).
3A.4 Consent and withdrawal
Every user is presented with an in-app consent screen before any biometric capture. Each consent is time-stamped and linked to the version of the consent notice presented. An individual may withhold or withdraw consent by contacting the organisation that enrolled them. Where consent is withheld or withdrawn, FarEye performs no biometric capture for that individual. Whether an alternative method of verifying identity is available, and how it operates, is determined by that organisation and not by FarEye.
3A.5 Retention and destruction schedule
FarEye permanently destroys biometric identifiers at the earliest of:
- when the initial purpose for collecting them has been satisfied;
- three (3) years after the user’s last interaction with FarEye’s services;
- two (2) years after collection; or
- on the instruction of the enterprise customer.
3A.6 No sale, trade, profit or training
FarEye does not sell, lease, trade or otherwise profit from Biometric Data, and does not use Biometric Data to train any FarEye or third-party artificial intelligence or machine learning model.
3A.7 Storage and security
Biometric Data is stored in encrypted, per-tenant storage and transmitted over TLS with certificate pinning. It is handled under FarEye’s ISO/IEC 27001 information security management system and ISO/IEC 27701 privacy information management system, using a standard of care no less protective than that which FarEye applies to its other confidential and sensitive information.
3A.8 Access
Within FarEye, access to Biometric Data is role-based on a least-privilege basis, limited to what the identity verification service requires, and audit-logged by approver. At the enterprise customer, users holding Admin or Manager roles may view verification review queues for their own workforce only.
3A.9 Cross-border transfer
Biometric Data is processed in the enterprise customer’s contracted hosting region. Where cross-border transfers occur at platform level, they are covered by the Data Processing Addendum with that customer.
3A.10 Your rights in relation to Biometric Data
Requests for access to, correction or deletion of Biometric Data, or to withdraw consent, should be raised with the enterprise customer that enrolled you, as controller. FarEye supports the customer’s response. If you are unable to resolve a request through the enterprise customer, you may contact FarEye as set out in Section 3A.11.
3A.11 Contact
Queries concerning Biometric Data may be sent to privacy@fareye.com. You may also contact our Data Protection Officer at dpo@fareye.com.
4. Use of Data
We collect and use personal data to ensure we provide you with informative and timely sales and marketing material. During our engagements, we collect personal data so that we fulfil our obligations of the Services.
- When you subscribe to our e-mail alerts, you automatically become a part of our mailing list through which we familiarize you with the latest addition to our products lines, offers, promotions to your e-mail id.
- When you download an e-book, checklist or other content from either our Site or another social media platform, the download is part of a series of information and it is in our legitimate interest to provide you with additional emails and marketing materials pertaining to the downloaded materials so that you have the most accurate and up to date information. If you choose not to continue to receive such information, we make it very easy for you to opt-out of these emails, please refer data subject rights below.
- If you register for one of our webinars, we may share your personal data with the co-presenter(s) of the webinar as stated in the registration form of the webinar.
- When you request for a demo, we may to personalize your experience we do collect certain information written in the form which we may use to contact you over phone, email or other appropriate mediums and to send you regular updates and also to send feedback forms to you to understand your experience on your e-mail ID.
- When you submit your application for a job on our website, we may collect certain information written in the form which we may use to contact you over phone, email or other appropriate mediums and to contact references/past employers mentioned in the resume.
5. Third Party Sharing
General Sharing
We may share information internally within our family of companies or with third parties for purposes described in this policy. Information collected within the European Economic Area (“EEA”) may, for example, be transferred to countries outside of the EEA for the purposes as described in this policy. We utilize standard contract clauses approved by the European Commission, adopt other means under European Union law, and ensure there is a legal basis to process the personal data to legitimize data transfers from the EEA to the other countries.
Sub Processors
We transfer information to vendors, service providers, and other partners who globally support our business, such as providing technical infrastructure services, analyzing how our Services are used, measuring the effectiveness of ads and services, providing customer service, facilitating payments, or conducting academic research and surveys. These partners must adhere to strict confidentiality obligations in a way that is consistent with this Privacy Policy and the agreements we enter into with them. Here are examples of some of the ways we use sub processors to process your personal data.
- We use third party Software-as-a-Service (SaaS) and other vendors to help us process personal data.
- We use third party email hosting services to send email.
- We use third party customer relationship management tools to help with management of business related data.
- We use third party billing and credit card merchant systems to process payments.
- We use third party ticketing and help systems to support our customers.
- We may use google analytics tool for a better and enhanced experience to our customers and thus along with this privacy policy the applicable privacy policy of google analytics’ privacy policy shall be applicable. Please refer for more details and consent towards your acceptance of the same - https://policies.google.com/te... and https://policies.google.com/pr...
- Though our third party service providers are bound by the privacy regulations and control through our contractual terms, we make no promises regarding the policies or business practices of other third-party websites.
- We may disclose your personal data to our agents or sub processes for the purposes identified above. In such cases, the agent or sub processors will be obligated to use that personal data in accordance with the terms of this Privacy Policy.
- We will not sell, distribute or lease your personal data to third parties unless we have your permission or are required by law to do so.
- We may disclose your personal data without your permission to the extent that it is required to do so by European Union or National law, in connection with any legal proceedings or prospective legal proceedings, and in order to establish, exercise or defend its legal rights.
Biometric Data
Biometric Data processed by our identity verification services is handled within FarEye’s own environment; no third-party sub-processor is engaged for image processing (including face-match and OCR).
Biometric Data collected in the course of identity verification services is not combined with any other data source. FarEye does not de-identify or aggregate Biometric Data processed on behalf of enterprise customers.
All the above categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.
6. MOBILE MESSAGING (SMS)
Where a retailer or logistics provider uses FarEye to manage deliveries, collections and returns, FarEye Technologies Inc. may send text messages about the progress of an order - its delivery, collection or return - to the mobile number the recipient provided to that retailer. This programme is called FarEye Order Updates and is governed by our SMS Terms at https://fareye.com/privacy/sms-terms
What we collect. The mobile number provided at the point of order, the record of consent to receive messages, the messages sent and their delivery status, and whether a tracking link in a message was opened.
Why we collect it. Solely to send order-progress notifications for the order concerned, to respond to HELP and STOP requests, and to honour opt-outs.
Who it is shared with. The retailer the order was placed with, and the mobile carriers required to deliver the message. Mobile opt-in data and consent are not shared with any third party for that third party's own marketing purposes, and are not sold or rented.
How long we keep it. For as long as needed to deliver the order and to meet the retention obligations described in the Data Retention section. Opt-out records are kept for as long as necessary to ensure no further messages are sent.
How to opt out. Reply STOP to any message, or contact support@fareye.com or +1 773 796 6795.
7. Third Party Links
On our website we may host some third party links also, before providing any information to the webpage hosted on that third party link, refer to the Privacy Policy of service provider. In any case, we shall not be liable for misuse of data shared on that webpage.
8. Data Subject Rights – Your Choice
Right to be informed
You have the right to be informed about the collection and use of your personal data. If we receive such a request, we will provide you with information like- our purpose for processing your personal data, retention periods for that personal data, and with who it will be shared with.
Right to rectification
You have the right to have inaccurate personal data be rectified, or completed if it is incomplete. Such request can either be made verbally or in writing. However, this right is not absolute and we can refuse a request in certain circumstances.
Right to erasure
You have the right to get your personal data erased and we understand when such right applies.
Right to restricted processing
You have the right to request the restriction or suppression of processing of your personal data. Though, this is not an absolute right and is applicable only in certain circumstances. Whenever we receive such a request, we may restrict processing depending upon the circumstance however, we can store your personal data.
Right to data portability
You have the right to get your personal data to move, copy or transfer from one IT environment to another in a safe and secure way, without affecting its usability. It is our responsibility to transfer your personal data structured, commonly used and machine-readable formats.
Right to object
You have the right to object to the processing of your personal data in certain circumstances. It depends upon our purpose of processing as well as the lawful basis of processing. Such right can also be evoked in case where your personal data is processed for the purpose of direct marketing or for carrying out a task in public interest or in the exercise of lawful authority vested in you. Such right is limited where personal data is being processed for scientific or historical research, or statistical purposes.
Right to access
If we receive a Data Subject Request from an individual whose data we have by using our website/other means or whose data we process on behalf of another party, we will inform them of such a request and work with both the third party (as the case maybe) and the individual to complete the request.
You can exercise these rights by emailing at privacy@fareye.com. After we have confirmed your relationship with us and have the proper authorizations, we will provide you with information and process the request. We ensure to respond to your requests without undue delay and within one month of the receipt of request. We may require additional information from you to allow us to confirm your identity or find your personal data.
For Biometric Data processed on behalf of an enterprise customer, please raise requests with that customer in the first instance. FarEye supports the customer’s response and may verify your identity before acting.
If you believe that any personal data we are holding on you is incorrect, incomplete or shouldn’t be processed, please contact us as soon as possible, at the contact information below and we will promptly take the appropriate action.
You have the right to withdraw your consent for any marketing or sales material. To do this, please send an email to marketing@fareye.com.
9. Profiling
We will not use your personal data for decisions based solely on automated processing if the decision produces legal effects concerning you or significantly affects you, unless you gave your explicit consent for this processing.
Our identity verification services use automated face-match and OCR to unlock a user session. Every failure or low-confidence outcome is routed to a human reviewer at the enterprise customer, so that no user is blocked without human review.
10. Security
We are committed to ensuring that your personal data is secure. In order to prevent unauthorized access or disclosure, adopted reasonable security practices and procedures comprising of managerial, technical, operational and physical security control measures with a view to ensure confidentiality and prevent unauthorized disclosure of personal information.
In order to review the robustness of the above security practices and procedures, we also get ourselves annually certified under ISO/IEC 27001 Standards through an agency of international repute.
However, no system is 100% secure and your personal data cannot be guaranteed. You must ensure you protect your username and password and do not share it with others. If, despite all our efforts, a data breach does occur, we shall do everything in our power to limit the damage. In case of a data breach which is likely to result in a high risk, and depending on the circumstances, we will inform you about remedial actions to prevent any further damage. We always inform the relevant data controller, supervisory authority or authorities without undue delay.
FarEye shall not be responsible in any manner whatsoever for any violation or misuse of your personal information by unauthorized persons' consequent to misuse of the internet environment or things beyond control of FarEye.
11. Data Retention
We will not store your personal data longer than necessary for the purpose for which we have processed your personal data including our legal requirements to retain data after completion of the Services. How long we retain your personal data depends on the laws governing such data or till the time customer requests for deletion of data.
For Biometric Data specifically, the retention and destruction schedule is set out in Section 3A.5 above.
12. Changes to Our Privacy Policy
It is our policy to post any changes we make to our Privacy Notice on this page. In some cases, we provide additional notice of changes. If we make material changes to how we treat your personal data, we will notify you by email to the email address specified in your account and/or through a notice in the application or on the Site. The date the Privacy Notice was last revised is listed at the top of this page. You are responsible for ensuring we have an up-to-date, active and deliverable email address for you and for periodically visiting our Site for changes and updates.
13. Complaints
If you have a complaint with how we have handled a Subject Access Request, please let us know and we will try to fix it. You can email the Data Protection Officer (DPO) at dpo@fareye.com or by calling +91-120-6205800. If you are dissatisfied with handling of any privacy complaints, if you do not receive timely acknowledgement of your complaint, or your complaint is not satisfactorily addressed please contact the CTO and cto@fareye.com
Further Information
If you have any questions about this privacy notice or questions or complaints about the processing of your personal data by FarEye, please contact:
Controller:
Data Protection Officer
Lotus Business Park,
Plot No.8, Tower B, 5th Floor, Sector-127,
Noida-201301
Email: privacy@getfareye.com