Effective Date: September 15, 2020
WalkMe Ltd. and its affiliates (“WalkMe“, “we” or “us“) is committed to protecting the privacy of the users of its website at the address www.WalkMe.com or any other website managed and controlled by WalkMe (the “Site“) and its online products, including the WalkMe System™ and WalkMe Mobile™ (each a “Service” and collectively the “Services“).
A User may be either an entity which executed an agreement with WalkMe or with WalkMe’s resellers or distributors who provide WalkMe’s Services (“Customer“) or Customer’s users of the Services (“End User(s)“) or visitors of the Site (collectively “Users” or “you“).
This Policy explains the types of information we may collect from you or that you may provide when you visit the Site or use the Services and our practices for collecting, using, maintaining, protecting, and disclosing that information, as well as your rights in determining what we do with the information that we collect and hold about you.
- WALKME SYSTEM™
For information about the privacy and data retention practices in connection with the WalkMe System™ please click here.
- WALKME WEBSITE
For information about the privacy and data retention practices in connection with the Site please click here.
- WALKME MOBILE™
For information about the privacy and data retention practices in connection with the WalkMe Mobile™ please click here.
GENERAL (THIS SECTION APPLIES FOR ALL SERVICES)
Please refer to the specific Section(s) about the Site or Services you use or plan to use for a complete review of the relevant practices.
A. CONSENT AND PRINCIPALS OF PROCESSING DATA
WalkMe processes data fairly, lawfully, in a transparent manner and in accordance with individuals’ rights (as applicable). The use of information collected through our Services shall be limited to the purpose of providing the service for which our Client has engaged WalkMe or, if collected through the website or other marketing means, to WalkMe’s legitimate interests, where we have considered these are not overridden by your rights.
Personal Information or Personal Data is information by which an individual may be personally identified, including name, address, e-mail address, telephone number or any other information that is defined as Personal Information, Personal Data, or Personally Identifiable Information under an applicable law (hereinafter referred to as “Personal Information”)
Users are not obligated to provide us with any information by law. However, we require certain information in order to operate properly. Under some jurisdictions (such as under certain applicable E.U. legal frameworks or California Laws), a User has a right to withdraw its consent at any time and in some cases (subject to applicable laws) to request cessation of any collection of Personal Information. In such a case, the withdrawal will not affect the lawfulness of processing based on consent before its withdrawal but certain services may not function without certain information provided.
Please note that consent for the gathering and processing of data for one Service does not automatically mean that a User consents to the processing of data in connection with other Services. Controller should always make sure that the User’s consent is relevant, clear, valid, and to the extent reasonably possible, not “bundled” with any other written agreement (especially if required under applicable laws), unambiguous and if required under applicable law, affirmative and active (meaning not by virtue of any inaction).
We do not knowingly collect or solicit information or data from children under the age of 13 or knowingly allow children under the age of 13 to register for the WalkMe Service. If you are under 13, do not register or attempt to register for any of the WalkMe Service or send any information about yourself to us. If we learn that we have collected or have been sent Personal Information or Personal Data from a child under the age of 13, we reserve the right to delete that Personal Information or Personal Data as soon as reasonably practicable. If you believe that we might have collected or been sent information from a child under the age of 13, please contact our email@example.com as soon as possible.
C. INFORMATION SECURITY
We take great care in implementing, enforcing and maintaining the security of our Services, Site and Users’ information. WalkMe implements, enforces and maintains security policies to prevent the unauthorized or accidental access to or destruction, loss, modification, use or disclosure of Personal Information or Personal Data and to monitor compliance of such policies on an ongoing basis. The information is hosted on the Amazon Cloud in the United States which provides advanced security features and is compliant with the ISO 27001 standard. All information is stored with logical separation from information of other Customers. However, we do not guarantee that unauthorized access will never occur.
We use a combination of processes, technology and physical security controls to help protect Personal Information and Personal Data from unauthorized access, use, or disclosure. When Personal Information or Personal Data is transferred over the Internet, we encrypt it using Transfer Layer Security (TLS) encryption technology or similar technology. Each server is protected by a firewall, exposing it only to the minimum ports necessary. However, no security controls are 100% effective, and we cannot completely ensure or warrant the security of your Personal Information.
Unless otherwise agreed with the Customer and subject to applicable law, WalkMe shall act in accordance with its policies to promptly notify Customer in the event that any Personal Information or Personal Data processed by WalkMe on behalf of a Customer is lost, stolen, or where there has been any unauthorized access to it.
E. EU-US PRIVACY SHIELD AND SWISS-U.S. PRIVACY SHIELD
WalkMe, Inc. and its parent company WalkMe, Ltd. participate in and have certified their compliance with the E.U.-U.S. Privacy Shield Framework and the Swiss-U.S. Privacy Shield Framework. WalkMe, Inc. remains committed to subjecting all personal data received from European Union (E.U.) member countries and Switzerland, respectively, in reliance on each Privacy Shield Framework, to the Framework’s applicable Principles. To learn more about the Privacy Shield Framework, and to view our certification, visit the U.S. Department of Commerce’s Privacy Shield List. https://www.privacyshield.gov/list.
WalkMe Inc. is responsible for the processing of personal data it receives, under each Privacy Shield Framework, and subsequently transfers to a third party acting as an agent on its behalf. WalkMe, Inc. remains compliant with the Privacy Shield Principles for all onward transfers of personal data from the E.U. and Switzerland, including the onward transfer liability provisions.
With respect to personal data received or transferred pursuant to the Privacy Shield Frameworks, WalkMe may be subject to the regulatory enforcement powers of the U.S. Federal Trade Commission. In certain situations, WalkMe may be required to disclose personal data in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.
You can direct any questions or complaints about the use or disclosure of your E.U. Personal Data to firstname.lastname@example.org. We will investigate and attempt to resolve any complaints or disputes regarding the use or disclosure of your E.U. Personal Data within 45 days of receiving your complaint.
If you have an unresolved privacy or data use concern that we have not addressed satisfactorily, please contact our U.S.-based third-party dispute resolution provider (free of charge) at https://feedback-form.truste.com/watchdog/request.
Under certain conditions, more fully described on the Privacy Shield website https://www.privacyshield.gov/article?id=How-to-Submit-a-Complaint, you may be entitled to invoke binding arbitration when other dispute resolution procedures have been exhausted.
F. QUESTIONS, CONTACT INFORMATION AND COMPLAINTS
E.U. citizens have the right to lodge a complaint with a supervisory authority (Data Protection Authority in your jurisdiction) in case of a breach of any E.U. data protection and privacy regulations. If the supervisory authority fails to deal with a complaint or inform you within the time frame set under applicable law, you have the right to an effective judicial remedy.
Please do not hesitate to contact us:
email@example.com or 1-855-4WALKME (925563 – Toll Free Number).
71 Stevenson Street, Floor 20
San Francisco, California, 94105
Or contact WalkMe’s Data Protection Officer at:
71 Stevenson Street, Floor 20
San Francisco, California, 94105