Last published 12.01.25

Privacy Policy

Gunning Industries (“Gunning,” “we,” “us,” “our”) respects your privacy and is committed to handling personal information responsibly and in accordance with applicable law. This Privacy Policy explains how we collect, use, disclose, and protect information when you use our websites that link to this policy (the “Site”), our products (including nano/micro drones and accessories, the “Hardware”), and our software and services (including Overwatch OS, apps, and cloud services, the “Services”).

If you do not agree with this Policy, please do not use the Site or Services.

1) SCOPE AND IMPORTANT ROLE CLARIFICATION (PUBLIC SAFETY / AGENCY USERS)

Website visitors and leads: When you browse our Site or contact us, we generally act as the “business/controller” for that information.

Customers using Overwatch OS / Services: In many cases, our customers (including agencies and organizations) determine what data is collected, how it’s used, and how long it’s retained. In those cases:

  • The customer is the controller/business of that data, and
  • Gunning is a processor/service provider that processes information on the customer’s behalf and under their instructions.

If you are an employee, contractor, or authorized user of a customer, your use may also be governed by your organization’s policies and privacy notices.

2) DEFINITIONS (PLAIN ENGLISH)

  • Personal Information: Information that identifies, relates to, describes, or could reasonably be linked to a person (as defined by applicable law).
  • Customer Data: Data submitted to or generated in the Services by or on behalf of a customer, including Operational Content and telemetry.
  • Operational Content: Video, images, thermal imagery, audio, and related metadata (timestamps, location/position, mission notes) captured or uploaded via Hardware/Services.
  • Telemetry: Flight logs, device status, diagnostics, sensor readings, network performance, and similar technical data.

3) INFORMATION WE COLLECT

We collect information in three broad ways: (A) information you provide, (B) information collected automatically, and (C) information collected through Hardware/Services.

A. Information you provide to us

Depending on how you interact with us, we may collect:

  • Contact information: name, email, phone number, organization, role/title
  • Business/procurement information: shipping address, billing address, purchase orders, invoices, payment status (payment card details are typically handled by our payment processors, not stored by us, if applicable)
  • Account information: username, authentication details, access roles (if you create an account)
  • Support and communications: messages you send us, support tickets, call notes, and related attachments
  • Event and marketing information: webinar registrations, RSVP details, and preferences (e.g., newsletters)
B. Information collected automatically (Site and Services)

When you visit our Site or use Services, we may automatically collect:

  • Device and usage data: IP address, browser type, device type, operating system, approximate location (derived from IP), language settings
  • Log data: pages viewed, referral URLs, time/date stamps, clickstream data, errors/crash logs
  • Cookie and tracking data: identifiers and usage patterns (see Section 8)
C. Information collected through Hardware and Services

Depending on configuration and use, Hardware and Services may collect:

  • Telemetry and diagnostics: system health, battery status, motor and sensor performance, connectivity, error logs, firmware versions
  • Operational Content (as configured): video/thermal imagery/audio captured during missions
  • Metadata: timestamps, device identifiers, mission identifiers, operator IDs/usernames, and related annotations
  • Audit and security logs: login events, access history, permission changes, exports, and administrative actions

Note: Some Operational Content may include personal information about individuals captured in the environment. Customers are responsible for ensuring they have the legal authority to collect and use such data (warrants, notices, consent, policy compliance, etc.).

D. Information from third parties

We may receive information from:

  • Resellers, integrators, and channel partners (e.g., basic contact/procurement details)
  • Identity providers (if SSO is used)
  • Service providers (analytics, security, hosting)
  • Public sources (e.g., professional social profiles) when relevant for B2B outreach

4) HOW WE USE INFORMATION

We use information for the following purposes:

  • Provide and operate the Site, Hardware support, and Services
  • Account management: authentication, authorization, access controls, and administration
  • Support and troubleshooting: diagnose issues, respond to requests, repair and warranty workflows
  • Safety and security: protect the Offerings, prevent abuse, detect fraud, enforce policies, and investigate incidents
  • Product improvement: improve usability, performance, reliability, and features (including via aggregated/de-identified insights)
  • Communications: send operational emails (e.g., security notices, service updates) and respond to inquiries
  • Marketing and sales: send newsletters or product updates where permitted by law (you can opt out)
  • Legal compliance: comply with applicable laws, enforce agreements, and protect rights and safety
  • Business operations: corporate governance, audits, reporting, and planning

5) LEGAL BASES (EEA/UK ONLY, IF APPLICABLE)

Where the GDPR applies, we rely on:

  • Contract (to provide the Services you request)
  • Legitimate interests (security, fraud prevention, improving products, B2B communications)
  • Consent (where required, e.g., certain cookies or marketing)
  • Legal obligation (compliance and lawful requests)

6) HOW WE DISCLOSE / SHARE INFORMATION

We may disclose information to:

A. Service providers / vendors

We use vendors to help us operate (e.g., hosting, analytics, customer support tools, email delivery, security monitoring). They are permitted to process information only to provide services to us and under contractual confidentiality and security obligations.

B. Customers and authorized users

Information in the Services may be shared within the customer’s environment based on roles/permissions set by the customer.

C. Channel partners (if applicable)

If you engage with us through a reseller or integrator, we may share procurement and support-related information with them as needed to fulfill your request.

D. Legal, safety, and compliance

We may disclose information if we believe it’s necessary to:

  • comply with law, regulation, subpoena, or court order
  • respond to lawful requests from public authorities
  • protect the rights, safety, and security of Gunning, our customers, users, or the public
  • investigate suspected fraud, abuse, or security threats
E. Business transfers

If we’re involved in a merger, acquisition, financing, reorganization, or sale of assets, information may be disclosed as part of that transaction, subject to standard confidentiality protections.

F. Aggregated / de-identified information

We may share aggregated or de-identified information that cannot reasonably identify an individual.

We do not sell your personal information in the traditional sense.
If we ever engage in practices that are legally defined as “selling” or “sharing” (e.g., certain cross-context behavioral advertising cookies), we will provide appropriate notice and opt-out mechanisms as required by law.

7) PUBLIC SAFETY / RECORDS REQUESTS (IMPORTANT)

If you are a government or public safety customer:

  • Customer Data and Operational Content are controlled by the customer, including retention schedules and disclosures.
  • Requests under public records laws (e.g., FOIA/state equivalents) generally must be directed to the agency/customer as the records custodian, unless otherwise required by law or contract.
  • We are not your agency’s records custodian unless explicitly agreed in writing.

8) COOKIES AND TRACKING TECHNOLOGIES

We use cookies and similar technologies to:

  • keep the Site working properly (essential cookies)
  • understand usage and improve performance (analytics)
  • remember preferences
  • (optional) measure marketing performance

Your choices:
You can manage cookies through your browser settings. If we use a cookie banner or preference center, you can adjust those settings there as well. Blocking some cookies may affect Site functionality.

9) DATA RETENTION

We retain personal information only as long as reasonably necessary for the purposes described above, unless a longer retention period is required or permitted by law. Retention can vary based on:

  • account lifecycle
  • support and warranty needs
  • security and audit requirements
  • customer-configured retention policies in Services
  • legal obligations (e.g., disputes, compliance)

For Services, customers often control retention settings for Customer Data. If you need a specific retention commitment, that should live in your customer contract / DPA.

10) SECURITY

We use commercially reasonable administrative, technical, and physical safeguards designed to protect information. However, no system is 100% secure, and we cannot guarantee absolute security. You are responsible for:

  • maintaining strong passwords and access controls
  • limiting account access to authorized users
  • using appropriate network security practices where Hardware/Services are deployed

11) INTERNATIONAL DATA TRANSFERS

We may process and store information in the United States and other locations where we or our service providers operate. If you access the Site or Services from outside the U.S., you understand your information may be transferred to and processed in jurisdictions with different data protection laws.

Where required, we use appropriate safeguards (e.g., contractual clauses) for international transfers.

12) YOUR RIGHTS AND CHOICES

A. Marketing communications

You can opt out of marketing emails at any time via the “unsubscribe” link or by contacting us. Operational/service messages (e.g., security alerts, billing notices) may still be sent.

B. Access, correction, deletion

Depending on your location and applicable law, you may have rights to request access to, correction of, or deletion of your personal information.

C. If you are an end user of a customer

If your information is processed in the Services on behalf of a customer (e.g., agency account logs, Operational Content), you should direct requests to that customer. We may assist the customer as required by contract and law.

13) CALIFORNIA PRIVACY NOTICE (CCPA/CPRA)

This section applies to California residents to the extent the CCPA/CPRA applies.

A. Categories of personal information collected

In the past 12 months, we may have collected:

  • Identifiers (name, email, IP address, account IDs)
  • Commercial information (purchase/order details)
  • Internet/network activity (Site interactions, logs)
  • Geolocation (approximate, derived from IP; and potentially precise location only if enabled/configured in Services)
  • Audio/visual information (Operational Content, if captured/processed through Services)
  • Professional/employment information (company, role)
  • Inferences (e.g., product interest based on interactions)
B. Purposes for collection

We collect and use these categories for the purposes in Section 4.

C. “Sale” and “Sharing”

We do not sell personal information for money. We do not knowingly share personal information for cross-context behavioral advertising unless explicitly disclosed (e.g., via a cookie banner/settings) and you are provided an opt-out where required.

D. Your California rights

Subject to verification and certain exceptions, you may have the right to:

  • Know/access the personal information we collected, used, or disclosed
  • Delete personal information
  • Correct inaccurate personal information
  • Opt out of sale/sharing (if applicable)
  • Limit use/disclosure of sensitive personal information (if applicable)
  • Not be discriminated against for exercising rights
E. How to submit a request

Email: [privacy@yourdomain.com]
Or use: [privacy request form URL]
We may need to verify your identity. Authorized agents may submit requests as permitted by law.

14) CHILDREN’S PRIVACY

Our Site and Services are not directed to children under 13 (or under 16 where applicable), and we do not knowingly collect personal information from children. If you believe a child has provided us personal information, contact us and we will take appropriate steps.

15) THIRD-PARTY LINKS AND SERVICES

The Site or Services may link to third-party websites or services. We are not responsible for their privacy practices. Review their policies before providing information.

16) CHANGES TO THIS POLICY

We may update this Policy from time to time. We will post the updated version with a new “Last Updated” date. If changes are materially significant, we will provide reasonable notice (e.g., via the Site or Services).

17) CONTACT US

Questions or requests:
Gunning Industries
Email:
Support: hi@gunning.industries

Starting or scaling a drone program?