1. Introduction
SESMine ("we," "our," or "us") operates the SESMine platform, providing comprehensive mining management solutions, analytics, and consulting services. This Privacy Policy applies to all users of our platform, website, and services.
We are committed to transparency in our data practices and compliance with:
- GDPR (General Data Protection Regulation) - EU Regulation 2016/679
- CCPA (California Consumer Privacy Act)
- ISO 27001 Information Security Management
- Other applicable international data protection laws
2. Information We Collect
2.1 Personal Information
We collect the following types of personal information:
- Account Information: Name, email address, phone number, job title, company name
- Professional Information: Industry, role, certifications, work experience
- Billing Information: Payment details, billing address, tax information
- Communication Data: Support tickets, chat messages, email correspondence
2.2 Technical Information
- Device Information: IP address, browser type, operating system, device identifiers
- Usage Data: Pages visited, features used, time spent, click patterns
- Log Data: Access times, error logs, performance metrics
2.3 Mining Operations Data
- Operational Data: Production metrics, equipment data, safety records
- Financial Data: Cost data, revenue information, budget allocations
- Project Data: Mine plans, engineering documents, reports
3. How We Use Your Data
We use your personal data for the following purposes:
Service Delivery
Providing and maintaining our platform, processing transactions, delivering analytics and reports
Account Management
Creating and managing your account, authentication, access control
Communication
Sending service updates, responding to inquiries, providing customer support
Analytics & Improvement
Analyzing usage patterns, improving features, developing new services
Security & Compliance
Detecting fraud, preventing abuse, ensuring regulatory compliance
Legal Basis for Processing (GDPR)
We process your data based on: (1) Contractual necessity, (2) Legitimate interests, (3) Legal obligations, (4) Your explicit consent where required.
4. Data Sharing & Disclosure
We may share your information with:
Service Providers
Cloud hosting (AWS, Azure), payment processors, analytics providers, customer support tools
Business Partners
Consulting partners, technology integrators (with your consent)
Legal Requirements
Law enforcement, regulatory authorities, legal proceedings when required by law
Business Transfers
In case of merger, acquisition, or sale of assets (with notice to you)
Data Protection Agreements
All third parties are bound by strict data protection agreements and are required to maintain GDPR-compliant security standards.
5. Data Security
We implement industry-leading security measures:
Encryption
- • TLS 1.3 for data in transit
- • AES-256 for data at rest
- • End-to-end encryption options
Access Control
- • Multi-factor authentication
- • Role-based access control
- • Regular access audits
Infrastructure
- • SOC 2 Type II certified
- • ISO 27001 compliant
- • Regular penetration testing
Monitoring
- • 24/7 security monitoring
- • Intrusion detection systems
- • Incident response team
6. Your Privacy Rights
Under GDPR and other privacy laws, you have the following rights:
Right to Access
Request a copy of your personal data we hold
Right to Rectification
Correct inaccurate or incomplete data
Right to Erasure
Request deletion of your personal data ("right to be forgotten")
Right to Restriction
Limit how we use your data
Right to Data Portability
Receive your data in a structured, machine-readable format
Right to Object
Object to processing based on legitimate interests
Exercise Your Rights
To exercise any of these rights, contact us at privacy@sesmine.com. We will respond within 30 days.
8. International Data Transfers
SESMine operates globally. Your data may be transferred to and processed in countries outside your residence. We ensure adequate protection through:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Adequacy Decisions for transfers to countries with adequate protection
- Binding Corporate Rules for intra-group transfers
9. Children's Privacy
SESMine is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately at privacy@sesmine.com.
10. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes by:
- Email notification to your registered address
- Prominent notice on our platform
- Updating the "Last Updated" date at the top of this policy
Continued use of our services after changes constitutes acceptance of the updated policy.
11. Contact Us
For privacy-related questions, requests, or concerns:
Company Address
SESMine Corporation
123 Mining Plaza, Suite 400
San Francisco, CA 94102
United States
Supervisory Authority
If you are in the EU, you have the right to lodge a complaint with your local data protection authority.