Ajo privacy policy
Effective: 27 July 2026
This policy explains how S2 TIKSHUV LTD (“Ajo”, “we”, “us”) handles information through the Ajo mobile application, its web pages, and the related Ajo service.
Summary Ajo uses information to provide accounts, collaborative inventory features, support, security, and reliable operation. We do not sell personal data, use it for advertising, or use an independent analytics provider.
Information we handle
Depending on the features you use, Ajo may handle:
- Account and profile information: login or user identifier, name, email address, optional phone number, profile image, role or position, company details, authentication tokens, and account-recovery information.
- Organization and app content: companies, teams, groups, inventory items, names, descriptions, serial numbers, counts, comments, notes, history, reminders, searches, invitations, and other content you enter or receive through Ajo.
- Media and files: photos, videos, audio recordings, and documents you choose to capture, attach, upload, or download.
- Location: approximate or precise location when you grant Android location permission and use a location-related feature, including geotagged item or scan data.
- Device and application information: device and operating-system details, app version, device identifiers such as Android ID, network address, language, request metadata, feature events, crash or error details, and performance information.
- Support communications: information in messages you send to us, including account-deletion requests.
Camera, microphone, media, file, and location access is used when you select a feature that needs it and, where Android requires it, after you grant permission. You can change permissions in Android settings, although the related feature may then stop working.
Operational server logs
Ajo operates its own application-performance and real-user monitoring through server logs. A log record may include an IP address, device identifier, requested page or action, search or location fields, timestamp, response status, error details, and latency. We use these records only for security, reliability, troubleshooting, capacity planning, and understanding service performance.
These operational records are not keyed to or mapped to an Ajo account, and we cannot use them to identify which Ajo account made a request. We do not describe them as anonymous: IP addresses, device identifiers, and location-bearing events can still be personal or pseudonymous data. We do not use an independent analytics provider.
How and why we use information
We use information to:
- create, authenticate, recover, maintain, and delete accounts;
- provide Ajo inventory, collaboration, search, scan, media, and location features;
- store and synchronize user-selected content across authorized devices and users;
- send invitations or share content when a user requests it;
- provide support and communicate about the service;
- secure the service, prevent abuse, and diagnose errors;
- measure reliability, latency, capacity, and feature operation; and
- meet applicable legal and regulatory obligations.
Where applicable law requires a legal basis, these activities are performed to provide the service you request, based on your consent for optional permission-controlled features, for our legitimate interests in securing and operating Ajo, or to comply with law.
Authorized users and service providers
Ajo does not sell personal data and does not share it for advertising or marketing. Information may be handled in these limited situations:
- People you choose or your organization authorizes. Company, team, invitation, and sharing features make selected information available to the intended Ajo users. This is sharing directed by the user or organization.
- Amazon Web Services. AWS hosts Ajo infrastructure and processes information on Ajo's instructions to provide that infrastructure.
- Google services in the Android app. Google Sign-In is used only when you select it; Ajo then receives the Google account identifier, name, email address, and profile-photo URL needed to sign you in. The Google Maps SDK may receive IP address, request and device metadata, a Maps-specific pseudonymous identifier, crash diagnostics, and map interaction events. The on-device ML Kit text-recognition feature may send Google installation, device, configuration, event, performance, and error metadata; the image text is processed on the device. Google's handling is governed by the Google Privacy Policy.
- Legal and safety requirements. We may disclose limited information when required by law or when reasonably necessary to protect users, Ajo, or others from fraud, abuse, or serious security threats.
Payments
Payment processing is not currently active. The Android app does not collect or access payment-card numbers. Ajo may display subscription-related usage counts or costs. We will update this policy before enabling a payment provider or collecting additional payment information.
Retention and deletion
- Account, profile, organization, inventory, comment, attachment, and other primary service data is kept while the account or service relationship remains active, without a fixed expiration, unless deletion is requested or law requires a different period.
- After we verify an account-deletion request, we delete the account and primary personal data associated with it from active systems.
- Encrypted rolling backups may retain deleted primary data until they expire, no more than 30 days after deletion from active systems.
- The account-unlinked operational server logs described above are retained for up to one year. Because they contain no Ajo account key or account mapping, they cannot be selected by account and are not removed as part of an account-deletion request.
- We may retain a limited record longer when required for security, fraud prevention, or a legal or regulatory obligation. Where appropriate, we will explain what is retained and why.
To delete an Ajo account and its associated primary data, use Settings → Delete account in the Android app or follow the instructions on the Ajo account-deletion page. Never send us your password.
Your choices and rights
You can update available profile fields in Ajo, control Android permissions through device settings, and request account deletion. Depending on applicable law, you may also have rights to request access, correction, restriction, objection, portability, or deletion of personal data. Contact us to make a request. We may need limited information to verify your identity and protect the account.
Security and international processing
Ajo uses HTTPS for the application connections visible in the Android app, limits access according to operational need, and encrypts rolling backups. No method of storage or transmission can be guaranteed completely secure.
Ajo and its infrastructure providers may process information in countries other than your own. Where required, we use protections appropriate to the applicable law.
Children
Ajo is a business service and is not directed to children under 18. If you believe a child has provided personal data to Ajo, contact us so that we can investigate and take appropriate action.
Changes to this policy
We may update this policy when the service, providers, or legal requirements change. We will publish the updated policy at this URL and change the effective date. Material changes may also be announced in the app or through the service when appropriate.
Contact
Questions, privacy requests, and account-deletion requests can be sent to:
S2 TIKSHUV LTD
Email: info@ajo.im