Privacy Policy
Last Updated: January 15, 2025
BridgeMesh respects your privacy and takes protecting your personal information seriously. This policy explains what data we collect, why we need it, and how we keep it safe when you use our network management services.
Information We Collect
Running a network management platform means we need certain information to make things work properly. We're straightforward about what we collect and why.
Account Information
When you sign up for BridgeMesh, we ask for basic details like your name, email address, company name, and phone number. This helps us set up your account and stay in touch about your service.
Network Data
To monitor and optimize your network, we collect technical data including IP addresses, device identifiers, connection logs, bandwidth usage patterns, and network performance metrics. This information is what makes our service valuable to you.
Usage Information
We track how you interact with our platform through cookies and similar technologies. This includes pages you visit, features you use, and preferences you set. It helps us improve the user experience and fix bugs faster.
How We Use Your Information
Everything we collect serves a purpose. Here's what we actually do with your data:
- Provide and maintain network management services you've signed up for
- Monitor network performance and send alerts when issues arise
- Generate reports and analytics about your network infrastructure
- Respond to support requests and technical questions
- Send service updates, security patches, and important notifications
- Improve our platform based on how people actually use it
- Prevent fraud, abuse, and security threats
- Comply with legal obligations under Taiwan law and international standards
We don't sell your data to third parties. Period. Our business model is providing network management services, not trading in personal information.
Legal Basis for Processing
Under Taiwan's Personal Data Protection Act, we process your information based on:
- Contractual necessity—we need your data to deliver the services you've purchased
- Legitimate interests—improving our platform and preventing security issues
- Legal compliance—meeting requirements under Taiwan regulations
- Your consent—when you've explicitly agreed to specific uses
Data Sharing and Disclosure
We keep your information pretty close to the chest, but there are situations where sharing becomes necessary.
Service Providers
We work with trusted third-party companies that help us run our platform—cloud hosting providers, payment processors, and email services. These partners only access data needed for their specific tasks and are contractually required to protect it.
Legal Requirements
Sometimes we're legally obligated to share information with government authorities, courts, or law enforcement. This only happens when we receive valid legal requests that comply with Taiwan law.
Business Transfers
If BridgeMesh is acquired or merged with another company, your information would be transferred as part of that transaction. We'd notify you beforehand and explain any changes to how your data is handled.
Data Security Measures
Protecting your data isn't just good practice—it's essential for a network management company. Here's what we do:
- Industry-standard encryption for data in transit and at rest
- Regular security audits and vulnerability assessments
- Access controls limiting who can see sensitive information
- Multi-factor authentication for administrative access
- Continuous monitoring for suspicious activity
- Regular backups stored in secure, geographically distributed locations
That said, no system is completely bulletproof. We do everything reasonable to protect your data, but we can't guarantee absolute security. If we detect a breach that affects your information, we'll notify you within 72 hours as required by Taiwan law.
Data Retention Periods
We don't keep your information forever. Different types of data have different retention schedules:
| Data Type | Retention Period | Reason |
|---|---|---|
| Account Information | Duration of service + 3 years | Legal compliance, dispute resolution |
| Network Performance Data | 90 days | Operational needs, troubleshooting |
| Connection Logs | 180 days | Security monitoring, audit requirements |
| Payment Records | 7 years | Tax and accounting requirements |
| Support Tickets | 2 years after resolution | Service improvement, quality assurance |
After these periods expire, we securely delete or anonymize the data so it can't be traced back to you.
Your Rights and Choices
Taiwan's Personal Data Protection Act gives you specific rights over your information. You can exercise these anytime by contacting us.
Access and Portability
You can request a copy of all personal data we hold about you. We'll provide it in a commonly used, machine-readable format within 30 days. There's no charge for your first request in a 12-month period.
Correction
Found something inaccurate? Let us know and we'll fix it. You can update most account information directly through your dashboard.
Deletion
You can request deletion of your personal data, though we might need to keep certain records for legal compliance or legitimate business purposes. We'll explain if we can't delete everything you've requested.
Objection and Restriction
You can object to certain types of processing or ask us to restrict how we use your data. This might limit some service features, and we'll let you know about any impacts.
Withdraw Consent
For processing based on consent, you can withdraw it anytime. This won't affect the lawfulness of processing before you withdrew consent.
International Data Transfers
Our primary servers are located in Taiwan, but we use some cloud services that might process data in other regions including the United States and European Union.
When we transfer data internationally, we use appropriate safeguards like standard contractual clauses and ensure our partners meet adequate data protection standards. Your information receives the same level of protection regardless of where it's processed.
Cookies and Tracking Technologies
We use cookies and similar technologies to make our platform work better. Some are essential for basic functionality, while others help us understand usage patterns and improve the service.
Types of Cookies We Use
- Essential cookies—required for login and core platform functions
- Performance cookies—help us understand how people use the platform
- Functional cookies—remember your preferences and settings
- Analytics cookies—provide insights into usage patterns and popular features
You can control cookie preferences through your browser settings, though disabling certain cookies might affect platform functionality.
Children's Privacy
BridgeMesh is designed for business use and isn't intended for individuals under 18. We don't knowingly collect information from minors. If we discover we've accidentally collected data from someone under 18, we'll delete it promptly.
Changes to This Policy
We update this privacy policy occasionally to reflect changes in our practices or legal requirements. When we make significant changes, we'll notify you via email and through a prominent notice on our platform at least 30 days before the changes take effect.
Continued use of BridgeMesh after changes become effective means you accept the updated policy. If you don't agree with changes, you can close your account before they take effect.
Regulatory Compliance
We comply with Taiwan's Personal Data Protection Act and maintain registration with relevant authorities. Our data protection practices are regularly audited to ensure ongoing compliance with local regulations.
If you have concerns about how we handle your data, you have the right to file a complaint with Taiwan's National Development Council or other relevant supervisory authorities.
Questions or Concerns?
If something in this policy isn't clear or you want to exercise your privacy rights, reach out to us:
Email: info@bridgemesh.com
Phone: +886 976 556 022
Address: 7F-1, No. 177, Section 4, Zhongxiao E Rd, Da'an District, Taipei City 106, Taiwan
We typically respond to privacy requests within 5 business days.