Legal

Privacy Policy

Last updated: April 6, 2026

This Privacy Policy explains how Joon Security Ltd and its affiliates ("Joon," "we," "our," or "us") collect, use, disclose, and otherwise process personal information in connection with our website, applications, platform, and related services (collectively, the "Services").

We are committed to protecting your privacy and handling personal information responsibly. Please read this Privacy Policy carefully so you understand our practices. Nothing in this Privacy Policy is intended to limit any rights you may have under applicable law.

We may update this Privacy Policy from time to time. If we make material changes, we will post the updated version on our website and take any additional steps required by applicable law.

1. Personal Information We Collect

We may collect the following categories of personal information:

Information you provide directly

We collect personal information you voluntarily provide to us, such as:

  • Name
  • Work email address
  • Account credentials
  • Company and organization details
  • Billing and payment contact information
  • Support requests and communications
  • Any other information you choose to provide through the Services, demo requests, forms, chat, or communications with us

Information collected through use of the Services

When you use Joon, we may collect information related to your use of the platform, including:

  • Account and user administration data
  • Configuration data
  • Investigation, detection, validation, ticketing, and workflow-related data submitted to or generated within the Services
  • Communications and content submitted through the Services
  • Audit logs, usage logs, and activity history

Information collected automatically

We may automatically collect certain information when you use our website or Services, including:

  • IP address
  • Device identifiers
  • Browser type and settings
  • Operating system
  • Language and approximate location derived from IP
  • Usage data, clickstream data, and interaction data
  • Cookie, pixel, and similar technology data

Information from third parties

We may receive personal information from third parties, such as:

  • Authentication and identity providers
  • Analytics providers
  • CRM, marketing, and event platforms
  • Integration partners
  • Publicly available or commercially available sources
  • Customer-authorized third-party systems connected to Joon, such as SIEM, EDR, ticketing, identity, messaging, or other security and IT systems

Information from events and business interactions

If you meet us at events, webinars, or other business interactions, we may collect your name, business contact information, and details about those interactions.

2. How We Use Personal Information

We use personal information for the following purposes:

To provide and operate the Services

We use personal information to:

  • Create and manage accounts
  • Authenticate users and secure access to the platform
  • Provide security operations, investigation, validation, threat intelligence, ticketing, workflow, reporting, and related functionality
  • Process requests and deliver support
  • Enable customer administration of users, organizations, and permissions
  • Maintain, improve, and personalize the Services

To operate our website and respond to requests

We use personal information to:

  • Respond to demo requests and inquiries
  • Communicate with you through forms, chat, email, or other channels
  • Analyze and improve website performance and user experience

For customer support and business operations

We use personal information to:

  • Provide support and troubleshoot issues
  • Manage our relationship with customers, partners, and vendors
  • Administer contracts, billing, and internal operations
  • Perform quality assurance, recordkeeping, and business planning

For security, fraud prevention, and legal compliance

We use personal information to:

  • Detect, investigate, and prevent fraud, abuse, and unauthorized access
  • Monitor, maintain, and improve the security of our Services
  • Conduct audits and enforce our terms
  • Comply with legal obligations and respond to lawful requests

For research, analytics, and product improvement

We may use data to analyze usage, improve platform performance, develop new features, and support internal research and development. Where appropriate, we may aggregate, anonymize, or de-identify data and use that information for lawful business purposes.

For AI- and automation-related features

Joon may use personal information and customer-provided data to power automated workflows, analytics, or AI-assisted features within the Services. We may also use service providers, including AI model or infrastructure providers, to help deliver these features on our behalf, subject to appropriate contractual and security safeguards.

We do not use customer content to train general-purpose models for third parties without customer consent.

For marketing

Where permitted by law, we may use personal information to send you information about our Services, events, and updates that may be of interest to you. You may opt out of marketing communications at any time.

3. Legal Bases for Processing

Where required by applicable law, we rely on one or more of the following legal bases:

  • Performance of a contract
  • Legitimate interests
  • Compliance with legal obligations
  • Consent, where required

4. Cookies and Similar Technologies

We use cookies and similar technologies on our website and, where applicable, within our Services to:

  • Remember preferences
  • Understand usage and performance
  • Improve functionality
  • Support analytics and marketing activities

You can control cookies through your browser settings and, where available, our cookie management tools. Disabling cookies may affect certain features.

We do not necessarily respond to browser "Do Not Track" signals unless required by applicable law.

5. How We Share Personal Information

We may share personal information with:

  • Cloud hosting and infrastructure providers
  • Authentication providers
  • Analytics providers
  • CRM, communications, support, and marketing vendors
  • AI and automation service providers used to support the Services
  • Security, monitoring, and fraud prevention vendors
  • Integration partners and customer-authorized third-party systems
  • Professional advisors, auditors, and legal counsel
  • Authorities or other third parties where required by law or necessary to protect rights, safety, or security
  • A buyer, investor, or successor entity in connection with a merger, acquisition, financing, reorganization, or sale of assets

We do not sell personal information.

6. Data Retention

We retain personal information for as long as necessary for the purposes described in this Privacy Policy, including to provide the Services, comply with legal obligations, resolve disputes, enforce agreements, and maintain appropriate business records.

Retention periods may vary depending on the type of information, the nature of the relationship, and applicable legal requirements.

7. Security

We implement technical, administrative, and organizational safeguards designed to protect personal information. However, no system is completely secure, and we cannot guarantee absolute security.

You are responsible for maintaining the confidentiality of your credentials and using appropriate security measures to protect your systems and devices.

8. International Data Transfers

Joon may process personal information in countries other than the country where it was collected. Where required, we implement appropriate safeguards for cross-border transfers, such as contractual protections or other lawful transfer mechanisms.

9. Your Privacy Rights

Depending on your location, you may have the right to:

  • Access the personal information we hold about you
  • Request correction of inaccurate information
  • Request deletion of your information
  • Object to or restrict certain processing
  • Request portability of your information
  • Withdraw consent where processing is based on consent
  • Lodge a complaint with a supervisory authority

To exercise your rights, contact us at: legal@joon.co

We may need to verify your identity before fulfilling your request, and some rights may be limited under applicable law.

10. Children

Our Services are intended for business use and are not directed to children under 18. We do not knowingly collect personal information from children under 18. If you believe a child has provided personal information to us, contact us and we will take appropriate steps.

11. Third-Party Services

Our Services may integrate with or link to third-party products, services, and websites. We are not responsible for the privacy practices of those third parties. We encourage you to review their privacy policies before providing information or enabling integrations.

12. Contact Us

If you have questions about this Privacy Policy or want to exercise your privacy rights, contact us at:

legal@joon.co

Joon Security Ltd