Privacy Policy

Last update february 2026

I. Identity and Address of the Data Controller

The personal data you provide, collected lawfully, is processed by ID ONE (hereinafter «IDONE»), with address in Mexico City, Mexico, email: hola@idone.mx, website: https://idone.mx.

IDONE provides technology services in compliance with the Mexican Federal Law on Protection of Personal Data Held by Private Parties (LFPDPPP) regarding the processing and transfer of personal data, and in particular, in accordance with Articles 10, Section IV and 37, Section VII of said law.

II. Purpose of Personal Data Processing

IDONE will process the Data Subject’s personal data to fulfill obligations arising from a legal relationship and those considered analogous for legal purposes, based on Article 10, Section IV of the LFPDPPP and Article 15, Section II of its Regulations.

Personal data will be processed in accordance with the LFPDPPP and its Regulations, always observing the principles of lawfulness, consent, information, quality, purpose, loyalty, proportionality, and accountability.

The data we may collect includes, but is not limited to:

       Full name

       Company name you represent

       Email address

       Mobile phone number

       Address

       IP address and device data

       Usage and interaction information with our services and applications

       User identifiers and access tokens generated through third-party platforms (such as Meta/Facebook, Instagram, or WhatsApp)

Primary Purposes

       Provision of services contracted by the Data Subject

       Creation and management of user accounts

       Communication with the Data Subject regarding services

       Handling requests, complaints, and comments

       Compliance with legal and contractual obligations

Secondary Purposes

       Sending promotional and advertising information about our services

       Conducting statistical studies and analyses

       Improvement of our services, applications, and platforms

If you do not wish your personal data to be processed for secondary purposes, you may communicate this through the email address: hola@idone.mx.

III. Use of Data in Connection with Meta Platforms (Facebook, Instagram, WhatsApp)

IDONE may integrate its services with platforms and APIs from Meta Platforms, Inc. (hereinafter «Meta»), including Facebook, Instagram, and WhatsApp Business. Regarding these integrations, we inform you of the following:

3.1 Data We Obtain Through Meta

When you interact with our services through Meta platforms, we may collect the following data:

       Public profile information (name, profile picture, email address associated with the account)

       Meta platform user identifier

       Access and authorization tokens

       Content and interactions you generate through our integrations (messages, posts, comments)

       Analytical data and usage information provided by Meta APIs

       Any other data you expressly authorize when connecting your Meta account to our services

3.2 Use of Data Obtained from Meta

Data obtained through Meta platforms will be used exclusively for:

       Providing and improving the services contracted by the Data Subject

       User authentication and login

       Managing communications through Meta platforms

       Analysis and optimization of our service performance

       Fulfillment of contractual obligations with the Data Subject

3.3 Storage and Protection of Meta Data

Data obtained through Meta APIs is stored on secure servers with encryption in transit and at rest. We implement technical, administrative, and physical security measures to protect such information against unauthorized access, loss, alteration, or destruction.

Data will be retained only for the time necessary to fulfill the purposes described in this policy, or for the period established by applicable laws.

3.4 No Sale of Data

IDONE does not sell, lease, commercialize, or share for commercial purposes personal data obtained through Meta or any other source with unauthorized third parties. Data obtained from Meta platforms will not be used for purposes other than those expressly authorized by the Data Subject and permitted by Meta policies.

3.5 Compliance with Meta Policies

IDONE commits to complying at all times with the Meta Platform Terms, Meta Data Policy, and all applicable developer guidelines. In case of conflict between this policy and Meta policies, the more restrictive provisions in favor of data protection shall prevail.

IV. Use of Cookies, SDKs, and Tracking Technologies

Our website and applications may use cookies, tracking pixels, SDKs, and similar technologies to collect information about your activity. These technologies allow us to:

       Improve the functionality and browsing experience

       Analyze the use of our services

       Personalize content and advertising

       Measure the effectiveness of advertising campaigns

In particular, we may use the Meta Pixel, Facebook SDK, and other Meta business tools that collect data about your interaction with our services. This data may be shared with Meta in accordance with their privacy policies.

You may configure your browser to reject cookies or to be notified when they are sent. However, some features of our services may not be available without cookies.

V. Transfer of Personal Data

Personal data may be transferred to:

       Tax and/or administrative authorities, in compliance with legal obligations

       Technology service providers acting as data processors, with whom confidentiality agreements are maintained

       Third-party platforms (such as Meta Platforms, Inc.) to the extent necessary for the provision of integrated services, and always with your prior consent

Transfers are carried out in strict compliance with confidentiality and based on Article 37, Section VII of the LFPDPPP and Article 15, Section II of its Regulations.

VI. Sensitive Personal Data

IDONE does not request or collect sensitive personal data. We do not share your personal data with third parties other than tax and/or administrative authorities, service providers necessary for operations, and our collaborators, with whom we maintain confidentiality agreements.

VII. Confidentiality and Security of Personal Data

The confidentiality of personal data is guaranteed and protected by administrative, technical, and physical security measures, including:

       Data encryption in transit (TLS/SSL) and at rest

       Role-based access control

       Continuous security monitoring

       Periodic security audits

       Security incident response protocols

VIII. ARCO Rights (Access, Rectification, Cancellation, and Opposition)

Any Data Subject, or their legal representative, may exercise the rights of access, rectification, cancellation, and opposition (ARCO rights) provided in the LFPDPPP. The exercise of any of these rights is not a prerequisite for nor does it prevent the exercise of another.

The request must contain:

       Name of the Data Subject and address or other means to communicate the response

       Documents proving the identity or legal representation of the Data Subject

       Clear and precise description of the personal data for which any of the aforementioned rights are sought

       Any other element or document that facilitates the location of the personal data

The data controller will communicate to the Data Subject, within a maximum period of twenty (20) business days from the date of receipt of the request, the determination adopted, so that, if applicable, it becomes effective within the following fifteen (15) days.

IX. Data Deletion and Revocation of Consent

The Data Subject has the right at any time to request the deletion of their personal data. To request the deletion of your data, including data obtained through Meta platforms, you may:

       Send an email to hola@idone.mx with the subject line «Data Deletion Request»

       Include in your request: full name, email address associated with your account, and a description of the data you wish to delete

Upon receiving your request, we will:

       Confirm receipt of your request within five (5) business days

       Delete your personal data from our systems within a maximum of thirty (30) business days

       Revoke any access token or authorization associated with third-party platforms

       Notify you in writing confirming the deletion of your data

The cancellation of personal data will result in a blocking period after which the data will be permanently deleted. IDONE may retain data exclusively for purposes of liabilities arising from the processing.

You may also revoke your consent for the processing of your data at any time, without retroactive effects, by sending your request to the email: hola@idone.mx.

X. Protection of Minors’ Data

Our services are not directed at minors. We do not intentionally collect personal data from individuals under 18 years of age. If we become aware that we have collected data from a minor without the consent of their parent or legal guardian, we will proceed to delete such information from our records.

If you are a parent or legal guardian and believe that your minor child has provided us with personal data, you may contact us at hola@idone.mx to request the deletion of such data.

XI. International Users and Applicable Legislation

If you access our services from outside Mexico, please be aware that your data may be transferred to and processed in Mexico, where our servers are located.

IDONE commits to complying with applicable data protection laws in your jurisdiction, including but not limited to:

       Federal Law on Protection of Personal Data Held by Private Parties (LFPDPPP) – Mexico

       General Data Protection Regulation (GDPR) – European Union, when applicable

       California Consumer Privacy Act (CCPA/CPRA) – California, USA, when applicable

       Any other applicable data protection legislation according to the Data Subject’s jurisdiction

If you are located in the European Union or the European Economic Area, you have additional rights under the GDPR, including the right to data portability, the right to restriction of processing, and the right to lodge a complaint with the data protection authority in your country.

XII. Personal Data Department

To exercise your ARCO rights, request data deletion, revoke your consent, or for any inquiry related to this privacy policy, you may contact us through:

       Email: hola@idone.mx

       Website: https://idone.mx

       Address: Mexico City, Mexico

XIII. Amendments to the Privacy Policy

This Privacy Policy may be modified in the future. Any modifications will be published at the following web page: https://idone.mx/aviso-de-privacidad/. We recommend that you review this policy periodically to stay informed about how we protect your personal data.

In the event of substantial modifications, we will notify you through the contact information we have on record or through a visible notice on our website.

 

 

By using our services, you acknowledge that you have read, understood, and accept the terms contained in this Privacy Policy, including the processing of data through Meta platforms and third parties described herein.