1. Purpose
This policy describes how Motitus collects, processes, and protects data for projects, collaborations, and platforms (BIO i4™, CUBINQ™, MedratiO™, AtraDeus™, Infermes™, FTC™).
2. Types of Data Processed
Customer data: company information, contacts, emails, employees’ personal data (no patient data).
Partners / contractors: name, email, professional qualifications, project deliverables.
Projects / research: technical, scientific, and commercial data, analysis, reports, datasets.
3. Legal Basis for Processing
Processing is based on:
Consent of data subjects (e.g., contractors, partners)
Execution of contracts (NDA / Engagement Agreement)
Legitimate interest of Motitus for business intelligence & innovation
4. Data Subject Rights
Data subjects have the right to:
Access, rectification, erasure, restriction of processing
Object to processing for marketing / profiling
Data portability
5. Data Retention
Clients / partners: 5 years after cooperation ends
Project / research: 7 years after project completion
Backup / logs: up to 10 years, securely deleted thereafter
6. Storage & Access
EU-based cloud providers
Local servers of Motitus
Third-party providers under signed DPA
7. Security Measures
Encryption in storage & transmission
Access limited to authorized personnel
Secure passwords & 2FA for cloud services
8. Disclosure to Third Parties
Only under NDA or DPA
Only for project execution or legal obligations
9. Policy Amendments
Motitus may review and update this policy periodically. All changes will be communicated to data subjects.