// legal / dpa
Fa'agaioia o Fa'amatalaga Fa'aopoopoga
toe fa'afou mulimuli · 2026-05-07
// scope
O lenei Fa'aopoopoga o se vaega o Tu'utu'uga o le Auaunaga i le va o EGO HERO LLC (“FixVibe”, le “Processor”) ma le Tagata Fa'atau (le “Controller”) ma e fa'aoga i taimi uma e fa'agaioia ai e FixVibe Fa'amatalaga Patino mo le Tagata Fa'atau a'o tu'uina atu le Auaunaga. I le fa'aaogaina o le Auaunaga, e talia e le Tagata Fa'atau lenei Fa'aopoopoga.
1. Fa'auigaga
O upu amata i mata'itusi tetele e le'i fa'amatalaina iinei e iai le uiga ua tu'uina atu i le GDPR (Regulation (EU) 2016/679) ma, pe a talafeagai, le UK GDPR / Data Protection Act 2018, le California Consumer Privacy Act e pei ona teuteuina e le CPRA (“CCPA”), ma tulafono tutusa a isi pulega fa'aletulafono.
“Fa'amatalaga Patino” o lona uiga o fa'amatalaga e tu'uina mai e le Tagata Fa'atau po'o fa'atupuina e le Auaunaga e iloa ai pe feso'ota'i ma se tagata moni ua iloa pe mafai ona iloa. “Sub-processor” o lona uiga o se isi vaega e fa'afaigaluegaina e FixVibe e fa'agaioia Fa'amatalaga Patino mo FixVibe — o lo'o lisiina i /legal/privacy.
2. Matafaioi ma fa'atonuga
E tuto'atasi vaega ta'itasi i le tausisia o Data Protection Laws e fa'atatau iai. O le Tagata Fa'atau o le Controller ma FixVibe o le Processor o Fa'amatalaga Patino e fa'agaioia i lalo o lenei Fa'aopoopoga. E fa'agaioia e FixVibe Fa'amatalaga Patino na'o fa'atonuga tusitusia a le Tagata Fa'atau (o le fa'atulagaga o le Auaunaga e avea ma na fa'atonuga), se'i vagana ua mana'omia e le tulafono se isi faiga.
3. Fa'alilolilo ma le avanoa
E fa'amautinoa e FixVibe o tagata faigaluega ua fa'atagaina e fa'agaioia Fa'amatalaga Patino ua noatia i tiute fa'alilolilo. O le avanoa i fa'amatalaga production e fa'atapula'aina i se vaega itiiti least-privilege o le aufaigaluega operations, e logged i audit_logs, ma e iloiloina fa'avaitaimi. E le ulufale tagata faigaluega a FixVibe i fa'amatalaga a le Tagata Fa'atau se'i vagana e su'esu'e support tickets, tali atu i security incidents, po'o tausisia legal process.
4. Puipuiga
E fa'atino e FixVibe faiga fa'atekinolosi ma fa'alapotopotoga talafeagai e ogatasi ma GDPR Art. 32, e aofia ai:
- encryption o Fa'amatalaga Patino a'o feavea'i (TLS 1.2+) ma a'o teu (database disk-level + targeted column-level AES-256-GCM mo authenticated-scan headers ma OAuth tokens);
- fa'amalosia row-level security i database table uma — e le mafai e application code ona faitau pe tusitusi i tua atu o tuaoi fa'alapotopotoga e oo lava i se mea sese;
- multi-factor authentication mo tagata ta'itasi e ala i le upstream OAuth provider (Google po'o GitHub) pe a filifili le Tagata Fa'atau i le social sign-in;
- static analysis fa'aauau + dependency vulnerability scanning o le FixVibe codebase lava ia;
- backups e ala i le database provider fa'atasi ma point-in-time recovery; e tofotofoina i tausaga ta'itasi;
- retention periods ua fa'amatalaina (silasila i le Privacy Policy) e fa'amalosia e se automated daily cron, ae le o se folafolaga i luga o pepa.
5. Sub-processors
E fa'atagaina e le Tagata Fa'atau FixVibe e fa'aoga Sub-processors o lo'o lisiina i le Privacy Policy mo fa'amoemoega o lo'o fa'amatalaina ai. E ulufale FixVibe i se konekarate tusitusia ma Sub-processor ta'itasi e tu'u ai tiute data-protection e le itiiti ifo le puipuiga nai lo mea i lenei Fa'aopoopoga, ma e tumau FixVibe e tali atu i le Tagata Fa'atau mo gaioiga ma le le faia o gaioiga a le Sub-processor e tusa ma lana fa'agaioiaina o Fa'amatalaga Patino.
E logoina e FixVibe le Tagata Fa'atau (e ala i in-app notice po'o email) i se fa'aopoopoga po'o se sui fou ua fuafuaina o Sub-processors a itiiti mai 30 aso muamua, ma tu'u atu ai le avanoa e tetee ai. Afai e tetee le Tagata Fa'atau i mafua'aga talafeagai o data-protection, e mafai e le Tagata Fa'atau ona fa'amuta le Auaunaga e tusa ma le processing ua a'afia.
6. Fa'aliliuga fa'avaomalo
E fa'agaioia e FixVibe Fa'amatalaga Patino tele lava i le United States. Pe a fa'aliliu Fa'amatalaga Patino mai le EEA, UK, po'o Switzerland i se atunuu lona tolu e le'i maua se adequacy decision, e fa'alagolago FixVibe i:
- Standard Contractual Clauses a le European Commission (Decision (EU) 2021/914), Module 2 (controller-to-processor), ua aofia i lenei Fa'aopoopoga e ala i reference;
- International Data Transfer Addendum a le UK i EU SCCs (po'o le IDTA standalone), e pei ona lomia e le ICO;
- faiga fa'aopoopo fa'atekinolosi ma fa'alapotopotoga ua fa'amatalaina i le Vaega 4.
E fa'atagaina e le Tagata Fa'atau FixVibe e ulufale i SCCs / IDTA ma Sub-processor ta'itasi e soso'o ai mo le Tagata Fa'atau.
7. Aia tatau a data subjects
E fesoasoani FixVibe i le Tagata Fa'atau (ma amana'ia le natura o le processing ma fa'amatalaga o lo'o avanoa) e tali atu i talosaga a data subjects i lalo o Articles 15–22 GDPR. O le tele o aia tatau e self-serve mai Account → Privacy; mo talosaga o totoe, e mafai e le Tagata Fa'atau ona email support@fixvibe.app ma le subject “Privacy request”. Matou te tali atu i totonu o le 30 aso.
8. Soliga o Fa'amatalaga Patino
E logoina e FixVibe le Tagata Fa'atau e aunoa ma se tuai le talafeagai (ma i tulaga uma i totonu o le 72 itula talu ona iloa) i se soliga o Fa'amatalaga Patino e a'afia ai Fa'amatalaga Patino a le Tagata Fa'atau, ma tu'uina atu fa'amatalaga e mana'omia talafeagai e le Tagata Fa'atau e tausisia ai ana Article 33 / 34 obligations, e aofia ai le natura o le soliga, vaega ma le aofa'i lata mai o data subjects ma records ua a'afia, taunu'uga ono tutupu, ma faiga ua faia po'o ua fuafuaina e fo'ia ai.
9. Audits
E fa'aavanoaina e FixVibe i le Tagata Fa'atau fa'amatalaga e mana'omia e fa'aalia ai le tausisia o lenei Fa'aopoopoga, e aofia ai lenei pepa, le Privacy Policy, le Acceptable Use Policy, Terms, ma so'o se third-party security reports o lo'o ia i matou (matou te fa'asoa atu ia mea i lalo o NDA pe a talosagaina). E fa'ataga ma fesoasoani FixVibe i audits, e aofia ai inspections, e faia e le Tagata Fa'atau po'o se isi auditor ua tofia e le Tagata Fa'atau, i se reasonable advance notice ma i business hours, e le sili atu i le tasi i le calendar year (se'i vagana ua mana'omia e se regulator se isi mea po'o pe a tupu se soliga o Fa'amatalaga Patino).
10. Tapeina po'o le toe faafo'i
Pe a fa'amuta le Auaunaga, ma i le filifiliga a le Tagata Fa'atau, e tape pe toe faafo'i e FixVibe Fa'amatalaga Patino uma na fa'agaioia mo le Tagata Fa'atau i totonu o le 30 aso, se'i vagana i le tulaga e mana'omia ai e le tulafono talafeagai ona taofia e FixVibe (fa'ata'ita'iga tax / billing records). O le self-serve account deletion flow i Account → Privacy e amataina loa lenei mea.
11. CCPA fa'aopoopoga (California)
Mo fa'amoemoega o le CCPA, o FixVibe o se “Service Provider” ma o le Tagata Fa'atau o se “Business” e tusa ma so'o se Personal Information e fa'agaioia i lalo o lenei Fa'aopoopoga. E le faia e FixVibe:
- sell po'o share (e pei ona fa'auigaina na upu i lalo o le CCPA) Personal Information;
- taofia, fa'aoga, po'o fa'aali Personal Information mo so'o se fa'amoemoe e ese mai le business purpose fa'apitoa o le tu'uina atu o le Auaunaga, e aofia ai fafo atu o le sootaga fa'apisinisi tu'usa'o i le va o FixVibe ma le Tagata Fa'atau;
- tu'ufa'atasia Personal Information na maua mai le Tagata Fa'atau ma Personal Information na maua mai so'o se isi puna, se'i vagana ua manino ona fa'atagaina e le CCPA.
E fa'amaonia e FixVibe e malamalama ma o le a tausisia nei tapula'a.
12. Fa'asologa o le fa'amuamua
Afai e iai se fete'ena'iga i le va o lenei Fa'aopoopoga ma Tu'utu'uga o le Auaunaga, e pule lenei Fa'aopoopoga i le tulaga o le fete'ena'iga. E pule SCCs / IDTA i mea uma e lua pe a fa'aoga.
13. Fa'afeso'ota'i
Mo mataupu uma o data-protection, e aofia ai le fa'atinoina o aia tatau a data subjects ma fesili e uiga i Sub-processors, fa'afeso'ota'i EGO HERO LLC:
- email: support@fixvibe.app (fa'aoga le subject line “DPA” mo routing)
- postal: e maua le tuatusi pe a talosagaina e ala i le email i luga
