Privacy Policy for VNEXT PxM
Provided by VNEXT Technologies DWC-LLC. Effective date:
1. Introduction & Scope
VNEXT PxM is a Microsoft Power Platform application that operates entirely within your organization’s Microsoft tenant. This policy explains how personal data is handled when you use the app across multiple regions (including EU/EEA, UK, GCC, and North America).
Key point: All customer data is stored in Microsoft Dataverse. We do not host or store personal data outside Microsoft’s cloud.
2. Roles: Data Controller & Data Processor
Controller: VNEXT Technologies DWC-LLC (or your organization if deployed in your own tenant) determines the purposes and means of processing within the app.
Processor: Microsoft provides the underlying cloud infrastructure and processes data through Microsoft Power Platform and Dataverse under Microsoft’s Data Protection Addendum.
3. Categories of Data We Process
- Account/Identity: name, email, role, business unit (as configured by your tenant)
- Business Records: data you enter or generate within the app (e.g., forms, transactions, approvals)
- Usage/Telemetry: timestamps, record owners, activity logs, audit entries
- Integration Data: where you connect permitted services inside Power Platform
We do not collect data outside Microsoft Dataverse. No off‑platform data lakes or exports are maintained by us.
4. Purposes & Legal Bases
| Purpose | Categories | Legal Basis |
|---|---|---|
| Provide and operate the app | Account, Business Records | Contractual necessity |
| Support, troubleshooting, and security | Usage/Telemetry | Legitimate interests |
| Compliance and audits | Relevant records | Legal obligation |
| Analytics to improve service (where applicable) | Usage/Telemetry | Consent or legitimate interests (jurisdiction dependent) |
We do not sell personal data or use it for third‑party marketing.
5. Storage & Security
All data is stored within Microsoft Dataverse, part of Microsoft Power Platform. Security controls include:
- Azure Active Directory authentication and role‑based access control
- Encryption in transit (TLS) and at rest
- Auditing and logging features configured within the tenant
- Microsoft’s certified compliance (e.g., ISO/IEC 27001, SOC 1/2)
6. Sharing & Disclosures
We do not share personal data with unrelated third parties. Data remains within your Microsoft tenant and is processed by Microsoft as a subprocessor. Disclosures may occur where required by law or to protect the security of users and systems.
7. International Transfers
Data residency follows your Dataverse region. Where Microsoft transfers data internationally for operations or redundancy, such transfers rely on lawful safeguards (e.g., Standard Contractual Clauses) under applicable data protection laws.
8. Retention
Data is retained in Dataverse for as long as needed to fulfill the purposes above or as required by law. Upon decommissioning or upon verified request, data may be deleted or irreversibly anonymized according to tenant policies and capabilities.
9. Your Rights
Depending on your jurisdiction, you may have rights to access, correct, delete, restrict, or object to processing of your personal data, and to data portability. You may also withdraw consent where consent is the legal basis. You can exercise these rights through your organization’s administrator or by contacting us.
10. Cookies & Tracking
The app itself does not set third‑party marketing cookies. If a web component is used, it may rely on essential cookies or local storage for authentication and performance. Where required by law, consent prompts will be provided.
11. Children
The Service is not directed to children under the age of 16. We do not knowingly process children’s personal data.
12. Changes to This Policy
We may update this policy to reflect changes in law, technology, or our services. We will update the effective date and, where legally required, provide notice.
13. Contact
VNEXT Technologies DWC-LLC
Address:
Dubai South Business Park
Office OSD55-011
P.O. Box 390667
Dubai, United Arab Emirates
Email: privacy@vn3xt.com
If applicable, contact our Data Protection Officer at the same email.
14. Compliance & Certifications
Azure UAE (CSP) compliance: This Offer is engineered for deployment within Microsoft Azure UAE regions under Cloud Solution Provider (CSP) arrangements. Hosting, data residency and security controls adhere to Microsoft’s compliance posture for Azure UAE regions and the customer’s tenant configuration. View Microsoft Azure UAE compliance details →
Microsoft tests & security assessments: The Offer has passed Microsoft marketplace validation, including functional, performance and security assessments required for publication, as well as solution quality checks applicable to Microsoft Power Platform apps. View Microsoft Penetration Testing and Security Assessment information →
Note: The above refers to platform and marketplace compliance/validation. It does not represent an independent certification issued by VNEXT; rather, it reflects alignment with Microsoft’s compliance framework and successful completion of Microsoft’s marketplace vetting processes.