Privacy Policy
Last Updated: September 4, 2026
Overview
This Privacy Policy describes how OpenMV Cloud ("we", "our", or "us"), a service of
OpenMV LLC, collects, uses, and protects your information when you use our fleet
management and over-the-air update service.
Information We Collect
Account Information
You sign in through an identity provider (such as Google, Apple, GitHub, Microsoft, or
your organization's single sign-on). We do not store passwords. From your identity
provider we receive and store:
- Email address
- Display name
- A stable account identifier from the provider
Organization and Billing Information
- Organization profile you provide (name, company, address, logo)
- A billing customer reference and subscription status. Payments are processed by
Stripe; your card details never touch our servers
Fleet and Device Data
Operating the service means storing the data your fleet produces and the software you
distribute to it:
- Device identifiers, board types, and check-in metadata (running version, update
status, timestamps)
- Releases you publish: firmware images, update manifests, and software bills of
materials (SBOMs)
- Rollout, cohort, and device-management actions, kept in an append-only audit log
with the acting credential and timestamp
- Telemetry, log lines, and camera streams your devices send only if your
application uses the data or live-video features
Security Advisory Data
We scan the SBOMs of your published releases against public vulnerability databases
and store the findings so we can alert you.
Cookies and Browser Storage
We do not use tracking or analytics cookies.
- An essential session cookie keeps you signed in
- Your theme and language preferences are kept in your own browser's storage and are
never sent to us
Emails
We send security advisory notifications when new vulnerabilities are detected in
releases your devices are running. These are a safety feature of the service and are
always on for active accounts. We do not send marketing email from this service.
How We Use Your Information
- Provide the fleet management and update service
- Authenticate your account and maintain security
- Deliver the updates you publish to your devices
- Alert you to security vulnerabilities in software your fleet runs
- Process billing for paid plans
- Prevent abuse and maintain system integrity
- Comply with legal obligations
Service Providers
We use a small number of processors to operate the service, each receiving only what
their function requires:
- WorkOS — sign-in and identity
- Stripe — payment processing
- Resend — transactional email delivery
- Our hosting and storage infrastructure providers
We do not sell or trade your personal information, and we do not share it with third
parties beyond these processors.
Data Security
- Encrypted connections for all data transmission
- Delegated authentication — no passwords stored on our servers
- Cryptographically signed updates, verified on the device itself
- Scoped, revocable API credentials and an append-only audit log
- Rate limiting and abuse prevention
Data Retention
We retain your data for as long as your account is active. Published release
artifacts and their audit history are retained for the life of the account — they are
the integrity and compliance record of the software your devices run. After account
termination, data is deleted in accordance with our closure process, subject to legal
retention obligations.
Your Rights
- Access your account and organization information at any time
- Export your fleet data (releases, SBOMs, and manifests are downloadable in the
dashboard)
- Request account deletion by contacting us
Contact Information
For privacy-related questions or to request account deletion, please contact:
OpenMV LLC
Email: openmv@openmv.io
Changes to This Policy
We may update this Privacy Policy from time to time. The "Last Updated" date at the
top indicates when the policy was last modified.