iShield Protector

Privacy Policy

Last Updated: June 18, 2026

1. Introduction

iShield Protector ("we," "our," or "the Platform") provides enterprise Android Mobile Device Management (MDM) services to organizations ("Customers"). This Privacy Policy explains how the Platform collects, uses, discloses, and protects data in connection with the enterprise management of Android devices.

As an enterprise MDM platform, the primary data subjects are the organizations (Customers) and their managed devices, not individual end users. Individual device users should refer to their employer's or organization's device usage policy for information about how their device data is used.


2. Information We Collect

2.1 Device Information
  • Device identifiers: IMEI, IMSI, serial number, hardware model, manufacturer
  • Operating system version and Android security patch level
  • Network identifiers: IP address, MAC address (where permitted)
  • SIM card information and mobile network details
  • Device name and organization assignment
2.2 Technical Diagnostics
  • Battery level, charging status, and health metrics
  • Storage capacity and usage statistics
  • Memory (RAM) availability
  • Connectivity status (WiFi, mobile data, Bluetooth)
  • Signal strength and network type
  • Application list (managed apps only)
2.3 Security Events
  • Device lock and unlock command execution logs
  • Compliance status and policy violation events
  • Tamper detection and security incident reports
  • Enrollment and unenrollment events
  • Factory reset protection events
2.4 Location Data

Location data is collected only when the managing organization has explicitly enabled location tracking for their managed device fleet. Location tracking is disabled by default and must be intentionally configured by the Customer administrator. When enabled, approximate or precise location data may be collected based on the Customer's configured tracking interval.

2.5 Account Information
  • Customer organization name and contact details
  • Administrator account credentials (passwords stored as bcrypt hashes)
  • Distributor and sub-distributor account details
  • Audit trail of platform administrative actions

3. How We Use Information

  • To provide enterprise device management services to Customers
  • To execute device management commands (lock, unlock, push apps, enforce policies)
  • To generate compliance reports and fleet health dashboards
  • To detect and respond to security incidents
  • To maintain platform availability and performance
  • To support Customer technical support requests
  • To comply with applicable law and legal obligations

4. Data Sharing and Disclosure

We do not sell, rent, or share Customer device data with third parties for advertising, marketing, or analytics purposes.

We may share data only in the following circumstances:

  • With Customer's authorized administrators and distributor hierarchy as configured
  • With subprocessors that assist in platform delivery (hosting, database services) under strict data processing agreements
  • When required by applicable law, court order, or government authority
  • In connection with a merger, acquisition, or sale of assets (Customers will be notified in advance)

5. Data Retention

Device telemetry data is retained for the duration of the device's enrollment in the platform plus a configurable retention period (default: 90 days). Audit logs are retained for a minimum of 12 months. Customer account data is retained for the duration of the service agreement plus 30 days after termination.

Customers may request deletion of device data at any time through the platform dashboard or by contacting our support team.


6. Security Measures

  • All data in transit is encrypted using TLS 1.2 or higher
  • Data at rest is encrypted using AES-256
  • Administrator passwords are hashed using bcrypt with appropriate work factors
  • Access is controlled through role-based permissions with principle of least privilege
  • Security events and administrative actions are logged in immutable audit trails
  • Regular security assessments and penetration testing

7. Google Play Data Safety

In accordance with Google Play Data Safety requirements, the iShield Protector Android agent:

  • Collects device identifiers and device activity for enterprise MDM purposes
  • Does not collect personal messages, photos, or contacts
  • Does not collect financial information
  • Location data collection is optional and requires explicit organizational configuration
  • Data is shared only with the managing organization and authorized sub-organizations
  • Data is not used for advertising or analytics beyond enterprise MDM operations
  • Users can request data deletion by contacting their managing organization

8. Your Rights

Device users who wish to understand what data is collected about their managed device should contact their employer or managing organization. Organizations (Customers) may exercise the following rights:

  • Access: Request a copy of data held about their organization and managed devices
  • Correction: Request correction of inaccurate account data
  • Deletion: Request deletion of device and account data
  • Portability: Export device data in machine-readable formats

9. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated to Customer administrators via email and in-platform notification at least 30 days before taking effect.


10. Contact

For privacy-related inquiries, contact us at: privacy@ishieldprotector.com