Last updated on September 6th, 2021

Takeoff Labs, Inc. (“we,” “us” or “our”) provides this privacy policy (“Privacy Policy”) to explain our practice regarding the collection, use, share and protection of information in relation to its mobile application Litstick (“Litstick”). This Privacy Policy applies to all visitors, users, and others who access Litstick (“Users”, “you”). By accessing or using Litstick you signify that you have read, understood and agree to our collection, storage, use and disclosure of your information as described in this Privacy Policy.

1. INFORMATION WE COLLECT

We only collect information as stated below. This information is being used for analytical purposes. To the extent information covered by this Privacy Policy is associated with an identified or identifiable natural person and is protected as personal data under applicable data protection laws, it is referred to in this Privacy Policy as “Personal Data”. We do not collect or store any other data (including Personal Data) unless you provide it voluntarily. When provided voluntarily, we will not distribute or share your information with any third party without your consent.

We collect the following types of information (hereinafter – “Collected Information”): Analytics information. We use analytical tools of our third party providers (hereinafter – “Third Party Providers”) such as Facebook Analytics, Crashlytics, Firebase and AppsFlyer to help us measure traffic and usage trends for Litstick. These tools collect information sent by your device or Litstick including log file information, cookies, device identifiers and the web pages you visit when following the links available to you on Litstick. Third Party Providers aggregate the collected data so that it cannot reasonably be used to identify any particular individual User. This collected data provides us with analytics and measurement reports so that we can improve Litstick.

Cookies and similar technologies. When you use Litstick, we may use cookies and similar technologies like pixels, web beacons, and local storage to collect information about how you use Litstick and provide features to you. We may ask our partners to serve the services to your devices, which may use cookies or similar technologies placed by us or the third party. Log file information. Log file information is automatically reported by Litstick each time you make a request to access (i.e., visit) it. It can also be provided when the content of Litstick is downloaded to your device.

When you use Litstick, our Third Party Providers automatically record certain log file information, including your web request, Internet Protocol (“IP”) address, browser type, referring / exit pages and URLs, number of clicks and how you interact with links on Litstick, domain names, landing pages, pages viewed, and other such information. The information allows for more accurate reporting and improvement of Litstick.

Device identifiers. When you use a mobile device like a tablet or phone to access Litstick, we may access, collect, monitor, store on your device, and/or remotely store one or more “device identifiers.”

Device identifiers are small data files or similar data structures stored on or associated with your mobile device, which uniquely identify your mobile device. A device identifier may be data stored in connection with the device hardware, data stored in connection with the device’s operating system or other software, or data sent to the device by Litstick.

A device identifier may deliver information to us or to Third Party Provider about how you browse and use Litstick and may help us or others provide reports. Some features of Litstick may not function properly if use or availability of device identifiers is impaired or disabled.

Among others we collect the following device identifiers: • User Device ID • Platform (iOS/Android) • Device OS Version • App Version • First request time • Language • Region/Country • Timezone • Model • App Version

2. HOW WE USE COLLECTED INFORMATION AND PERSONAL DATA

Collected Information is used mainly for analytical purposes in order to constantly improve and maintain our services, including among others, for ensuring the technical functioning of our network, to help preventing fraudulent use of Litstick and for developing new services. In addition to some of the specific uses of information we describe in this Privacy Policy, we may use information that we receive (including Personal Data) for the following purposes: • to provide, improve, test, and monitor the effectiveness of Litstick; • to develop and test new products and features; • to monitor metrics such as total number of visitors, traffic, and demographic patterns (including via third party services as specified in Section 5 of this Privacy Policy); • to diagnose or fix technology problems; • to automatically update Litstick application on your device; • to send you technical notices, updates, security alerts and support and administrative messages; • to link or combine with information we get from others or (and) from you to help understand your needs and provide you with better service (to use in training of neural networks, artificial intelligence, as well as for any other automated decision-making processing); • for any other purposes disclosed to you at the time we collect Personal Data or indicated in this Privacy Policy.

We will not process your Personal Data in a way that is incompatible with the purposes for which it has been collected or subsequently authorized by you in accordance with Section 3 of this Privacy Policy or collect any Personal Data that is not required for the mentioned purposes (“purpose limitation principle”). For any new purpose of processing, we will ask your separate consent. To the extent necessary for those purposes, we take all reasonable steps to ensure that Personal Data is reliable for its intended use, accurate, complete, and current. We also undertake to collect only such amount and types of Persona Data that are strictly required for the purposes mentioned in this Section of the Privacy Policy (“data minimization principle”).

3. YOUR RIGHTS

Under certain circumstances, Users who are resident in EEA, have rights under the General Data Protection Regulation (the “GDPR”). If you wish to exercise any of the rights set out below, please contact us at [email protected]. • Access. You have a right to access your Personal Data that you provide when using Litstick and ask us about what kind of Personal Data we have about you. You can do this by writing to us. • Rectification of Personal Data and Restriction of Processing. You are responsible for ensuring the accuracy of the Personal Data that you voluntarily submit to Takeoff Labs, Inc. or Litstick. If you believe that your Personal Data is inaccurate, you have a right to contact us and ask us to correct such Personal Data. You shall also have the right to obtain restriction of processing of your Personal Data, if you contest the accuracy of the Personal Data which inaccuracy is verified by us. • Erasure of your Personal Data. If you believe that your Personal Data is no longer necessary in relation to the purposes for which it was collected or otherwise processed, or in cases where you have withdrawn your consent or object to the processing of your Personal Data, or where the processing of your Personal Data does not otherwise comply with the GDPR, you have the right to contact us and ask us to erase such Personal Data as described above. • Right to object processing of your Personal Data. You can object processing your Personal Data and stop us from processing your Personal Data. Please be aware that erasing Personal Data inserted by you may affect your ability to use Litstick. • Notification requirements. We commit to notify you promptly and the data protection authority applicable to you within the timeframe specified in applicable law (72 hours) about any Personal Data breaches. • Data Protection Authorities. Subject to the GDPR, you also have the right to (i) restrict our use of Personal Data and (ii) lodge a complaint with your local data protection authority about any of our activities that you deem are not compliant with the GDPR.

Please keep in mind that in case of a vague access, erasure, objection request or any other request in exercise of the mentioned rights we may engage you in a dialogue so as to better understand the motivation for the request and to locate responsive information. In case this is impossible, we reserve the right to refuse granting your request.

Following the requirements of the GDPR we might also ask you to prove your identity (for example, by requesting an ID or other proof) in order for you to invoke the mentioned rights. This is made to ensure that no right of third parties are violated by your request, and the mentioned rights are exercised by an actual Personal Data subject or an authorized person.

Please note that we will grant your request within 30 days after receiving it, but it may take up to 90 days in some cases, for example for full erasure of your Personal Data stored in our backup systems- this is due to the size and complexity of the systems we use to store data.