IAM · legal information
Personal Data Policy
IAM.Identity
This Policy explains how personal data is processed when using IAM.Identity. The data controller is Individual entrepreneur Andrey Nikolaevich Morozov, TIN 773272773292, OGRNIP 317774600281613.
1. Purposes and legal bases
Data is processed to register and authenticate users, supply Service functionality, perform the contract, provide support, protect the Service, account for usage, bill customers, and comply with law. Legal bases include consent, performance of a contract, and legal obligations.
2. Data categories
The Service may process a name, email address, supplied telephone number, account and organisation identifiers, plan and payment information excluding card details, IP address, cookies, device and browser data, security and usage events, settings, and content submitted through selected features.
3. Processing operations
The controller may collect, record, organise, store, update, retrieve, use, disclose where permitted by law, restrict, delete, and destroy data by automated and non-automated means.
4. Recipients and processors
Where required to operate the selected feature, data may be handled by infrastructure, communications, analytics, payment, notification, and AI-model providers, or disclosed to authorised public bodies in response to a lawful request. Recipients depend on the selected route and deployment model.
5. Cookies and analytics
Technical cookies support sessions, security, language, and settings. If web analytics is enabled, pseudonymous visit events, referral source, IP address, and device parameters may be processed. Browser controls can restrict cookies, although some functionality may stop working.
6. Storage and deletion
Data is retained only as long as required for the stated purposes, the contract, and applicable law, and is then deleted or anonymised. Data collected from Russian citizens is localised as required by Part 5 of Article 18 of Russian Federal Law No. 152-FZ.
7. Your rights
You may request information about processing, correction, restriction or deletion, withdraw consent, and lodge a complaint. Send requests to info@iamgroup.ru. Identity verification may be requested to protect your data.
8. Security and incidents
The controller applies organisational and technical safeguards appropriate to the Service, including access controls, logging, and backups. Material incidents are reported where and when required by law.
9. Effective date and contact
This version is effective from 6 August 2026. Questions, consent withdrawals, and data-subject requests are accepted at info@iamgroup.ru.