Privacy Policy | Pluto Biosciences, Inc

Privacy Policy

Effective Date: June 16, 2021

This Privacy Policy (“Privacy Policy”) explains how Pluto Biosciences, Inc. and its affiliates and subsidiaries (collectively, “Pluto,” “us,” “we,” or “our”) collects, uses, and shares your personal information in connection with our website located at https://pluto.bio, the Pluto platform, and any other websites we operate that link to this Privacy Policy (collectively, the “Site”), our social media pages, email communications, and our other products, services, and applications (collectively, and together with the Site, the “Service”).

Pluto reserves the right, at any time, to modify this Privacy Policy. If we make revisions that change the way we collect, use, or share personal information, we will post those changes in this Privacy Policy. You should review this Privacy Policy periodically so that you keep up to date on our most current policies and practices. We will note the effective date of the latest version of our Privacy Policy at the top of this Privacy Policy. Your continued use of the Service following posting of changes constitutes your acceptance of such changes.

  • 1. COLLECTION OF PERSONAL INFORMATION

    • 1.1 Personal Information You Provide. We may collect the following personal information that you provide through our Service or otherwise:

      • Contact information, such as name, email address, mailing address, phone number, title, company name, and location.
      • Professional information, such as your organization, job role, area of expertise, or business interests.
      • Account information, such as the username and password you create when registering for an account, the information and images you upload to your profile, and information about your use of the Service (such as how many experiments you have created on Pluto).
      • Your connections and collaborators, such as the usernames of colleagues you collaborate with on our platform or who you invite to the Service.
      • Preferences, such as your marketing or communication preferences.
      • Communications, including information associated with your inquiries to us and any feedback you provide when you chat or otherwise communicate with us through the Service.
      • Transaction data if you purchase a Pluto subscription, including financial information and other details required to process your transaction.
      • Transaction history, such as information about subscription plans you use or have previously purchased or used on Pluto.
      • Other information that you choose to provide but is not specifically listed here, which we will use as described in this Privacy Policy or as otherwise disclosed at the time of collection.
    • 1.2 Personal Information Collected Automatically. We, our service providers, and our business partners may automatically log information about you, your computer or mobile device and your activity over time on our Service and other sites and online services, such as:

      • Online activity information, such as the website you visited before browsing to the Service, pages or screens you viewed, how long you spent on a page or screen, navigation paths between pages or screens, information about your activity on a page or screen, access times, and duration of access.
      • Device information, such as your computer or mobile device operating system type and version number, wireless carrier, manufacturer and model, browser type, screen resolution, IP address, unique identifiers, and general location information such as city, state, or geographic area.

      Like many online services, we use cookies and similar technologies to facilitate some of the automatic data collection described above, such as:

      • Cookies, which are text files that websites store on a visitor‘s device to uniquely identify the visitor’s browser or to store information or settings in the browser for the purpose of helping you navigate between pages efficiently, remembering your preferences, enabling functionality, helping us understand user activity and patterns, and facilitating online advertising. For more information, please visit our Cookie Policy.
      • Web beacons, also known as pixel tags or clear GIFs, which are typically used to demonstrate that a webpage or email was accessed or opened, or that certain content was viewed or clicked, typically to compile statistics about usage of websites and the success of marketing campaigns.
    • 1.3 Personal Information Received from Third Parties. We may receive or collect personal information about you from third parties, such as:

      • Your Organization. We may receive personal information about you from your organization
      • Public Sources, Data Providers, and Social Media Platforms. We may also collect personal information about you from public sources, such as organization websites or research repositories, data providers, social media platforms, and other business partners.
      • Third Party Integrations. When you use a third party integration on the Service, such as by using your Google credentials to register for or log-in to the Service, the third party will provide us with certain personal information about you to facilitate the registration and maintenance of your account.
      • Connections. Users of the Service may have the opportunity to invite colleagues or other contacts to the Service and share their contact information with us. Please do not provide us with someone’s contact information unless you have their permission to do so.
    • 1.4 Sensitive Personal Information. Unless we specifically request it, we ask that you not provide us with any sensitive personal information (e.g., information related to racial or ethnic origin, political opinions, religion or other beliefs, health, biometrics or genetic characteristics, criminal background or trade union membership) on or through the Service, or otherwise to us.

    PLEASE BE ADVISED THAT WE DO NOT SCREEN OR MANAGE THE CONTENT (E.G., EXPERIMENTAL DATA) THAT YOU UPLOAD TO OUR SERVICE, THE LEGALITY AND APPROPRIATENESS OF WHICH ARE SOLELY YOUR RESPONSIBILITY. When you upload content to the Service, you should not include any personal information or other highly sensitive or specially-regulated data as this is not relevant to the functionality of our Service and we do not have special controls in place to protect such data. See our Terms of Use for more information about the type of content that may be uploaded to Pluto.

  • 2. USE OF PERSONAL INFORMATION

    We may use your personal information for the following purposes and as otherwise described either in this Privacy Policy or at the time of collection.

    • 2.1 To Provide the Service. We may use your personal information to:

      • provide and operate the Service and our business;
      • monitor and improve your experience on the Service and your connections on the Service;
      • create and maintain your account;
      • review and respond to your requests;
      • communicate with you about the Service and other related communications;
      • respond to your inquiries, chats, or support tickets;
      • provide products and services you request;
      • process your transactions, send you invoices, and monitor your orders; and
      • enable security features of the Service, such as by sending you verification emails and remembering devices from which you have previously logged in.
    • 2.2 Research and Development. We may use your information for research and development purposes, including to improve the Service, understand and analyze the usage trends and preferences of our users, and develop new features, functionality, and services. As part of these activities, we may create aggregated, de-identified, or other anonymous data from personal information we collect. We make personal information into anonymous data by removing information that makes the data personally identifiable to you. We may use this anonymous data and share it with third parties for our lawful business purposes, including to analyze and improve the Service and promote our business.
    • 2.3 Direct Marketing. We may send you Pluto-related or other direct marketing communications as permitted by law. You may opt-out of our marketing communications as described in the “Your Choices” section below.
    • 2.4 Interest-Based Advertising. We may work with third-party advertising companies and social media companies to help us advertise our business and to display ads on our Service and other sites. These companies may use cookies and similar technologies to collect information about you (including the device data and online activity data described above) over time across our Service and other sites and services or your interaction with our emails, and use that information to serve ads that they think will interest you. You can learn more about your choices for limiting interest-based advertising in the “Your Choices” section below.
    • 2.5 To Comply with Laws and Regulations. We will use your personal information as we believe necessary or appropriate to comply with applicable laws, lawful requests, and legal process, such as to respond to subpoenas or requests from government authorities.
    • 2.6 For Compliance, Fraud Prevention, and Safety. We may use your personal data and disclose it to law enforcement, government authorities, and private parties as we believe necessary or appropriate to: (a) maintain the safety, security, and integrity of our Service, products and services, business, databases and other technology assets; (b) protect our, your or others’ rights, privacy, safety or property (including by making and defending legal claims); (c) audit our internal processes for compliance with legal and contractual requirements and internal policies; (d) enforce the terms and conditions that govern the Service; and (e) prevent, identify, investigate and deter fraudulent, harmful, unauthorized, unethical or illegal activity, including cyberattacks and identity theft.
    • 2.7 With Your Consent. In some cases we may specifically ask you for your consent to collect, use, or share your personal information, such as when required by law.
  • 3. SHARING OF PERSONAL INFORMATION

    We may share your personal information with the entities and individuals listed below or as otherwise described in this Privacy Policy or at the point of collection.

    • 3.1 Related Companies. We may share information collected about you with our affiliates, subsidiaries, or other related companies.
    • 3.2 Service Providers. We share personal information with third parties and individuals who perform functions on our behalf and help us run our business. For example, service providers help us perform technical maintenance (including maintenance of network equipment and electronic communications networks), website hosting, maintenance services, database management, web analytics, billing, payment processing, marketing, and other services.
    • 3.3 Other Users. When you share information with other users via Service, such as when you share experiments with a colleague, the personal information you make available will be shared and displayed to the other users. Please note, we are not responsible for the activities of other users, third parties, or the public, and do not control how they may use or share the information you make available through the Service.
    • 3.4 Advertising Partners. We may also share personal information collected about you with third parties who we partner with for advertising campaigns, contests, special offers, or other events or activities in connection with our Service, that collect information about your activity on the Service and other online services to help us advertise our products and service, and/or that use hashed customer lists that we share with them to deliver ads to you and to similar users on their platforms.
    • 3.5 Business Transferees. We may disclose personal information collected about you with third parties in connection with any business transaction (or potential transaction) involving a merger, sale of company shares or assets, financing, acquisition, consolidation, reorganization, divestiture, or dissolution of all or a portion of our business (including in connection with a bankruptcy or similar proceedings).
    • 3.6 Authorities, Law Enforcement, and Others. We may also disclose information collected about you to law enforcement, government authorities, and private parties, if we believe disclosure is necessary to comply with any applicable law or regulation, or in response to a subpoena, court order, governmental inquiry, or other legal process, or as we believe necessary for the compliance and protection purposes described in section titled “Use of Personal Information” above.
    • 3.7 Professional Advisors. We may share your personal information with persons, companies, or professional firms providing Pluto with advice and consulting in accounting, administrative, legal, tax, financial, debt collection, and other matters.
  • 4. INTERNATIONAL TRANSFERS OF PERSONAL INFORMATION

    Pluto is headquartered in the United States, and we have service providers in the United States and other countries. Your personal information may be collected, used, and stored in the United States or other locations outside of your home country. Privacy laws in the locations where we handle your personal information may not be as protective as the privacy laws in your home country. By providing your personal information, where applicable law permits, you hereby specifically and expressly consent to such transfer and processing and the collection, use, and disclosure set forth herein or in any applicable terms of service.

    European users may view the section below titled “Notice to European Users” for additional information.

  • 5. SECURITY

    No method of transmission over the internet, or method of electronic storage, is fully secure. While we use reasonable efforts to protect your personal information from the risks presented by unauthorized access or acquisition, we cannot guarantee the security of your personal information.

    For more information about our password requirements and other rules for Pluto users, please see our Terms of Use.

  • 6. OTHER WEBSITES AND SERVICES

    The Service may contain links to other websites and online services operated by third parties. These links are not an endorsement of, or representation that we are affiliated with, any third party. In addition, our content may be included on web pages or online services that are not associated with us. We do not control third party websites or online services, and we are not responsible for their actions. Other websites and services follow different rules regarding the collection, use and sharing of your personal information. We encourage you to read the privacy policies of the other websites and online services you use.

  • 7. YOUR CHOICES

    In this section, we describe the rights and choices available to all users.

    • 7.1 Accessing and Correcting Your Personal Information. You may access or make changes to the personal information displayed in your profile by logging into your account and updating or correcting your profile information. You may also request to change your personal information by emailing us at privacy@pluto.bio.
    • 7.2 Promotional Emails. You may opt out of marketing-related emails by following the opt-out or unsubscribe instructions at the bottom of the email, or by contacting us as described below. You may continue to receive service-related and other non-marketing emails.
    • 7.3 Cookies. Most browsers let you remove and/or stop accepting cookies from the websites you visit. To do this, follow the instructions in your browser’s settings. Many browsers accept cookies by default until you change your settings. If you do not accept cookies, however, you may not be able to use all functionality of the Service and our Site may not work properly. For more information about cookies, including how to see what cookies have been set on your browser and how to manage and delete them, visit www.allaboutcookies.org. You may also visit our Cookie Policy.
    • 7.4 Advertising Choices. You can limit the use of your information for interest-based advertising by blocking third-party cookies in your browser settings, using browser plug-ins/extensions, and/or using your mobile device settings to limit the use of the advertising ID associated with your mobile device. You can also opt out of interest-based ads from companies participating in the following industry opt-out programs by visiting the linked websites: the Network Advertising Initiative (www.networkadvertising.org/managing/opt_out.asp), the European Interactive Digital Advertising Alliance (www.youronlinechoices.eu), and the Digital Advertising Alliance (optout.aboutads.info). The opt-out preferences described here must be set on each device and/or browser for which you want them to apply. Please note that we also may work with companies that offer their own opt-out mechanisms or do not participate in the opt-out mechanisms described above, so even after opting-out, you may still receive some cookies and interest-based ads from other companies. If you opt-out of interest-based advertisements, you will still see advertisements online but they may be less relevant to you.
    • 7.5 Do Not Track. Some browsers may be configured to send “Do Not Track” signals to the online services that you visit. We currently do not respond to “Do Not Track” or similar signals. To find out more about “Do Not Track,” please visit www.allaboutdnt.com.
    • 7.6 Declining to Provide Information. We need to collect personal information to provide certain services. If you do not provide the information requested, we may not be able to provide those services.
  • 8. NOTICE TO EUROPEAN USERS

    The information provided in this section applies only to individuals in the European Union, the European Economic Area, and the United Kingdom (collectively, “Europe”).

    Except as otherwise specified, references to “personal information” in this Privacy Policy are equivalent to “personal data” governed by European data protection legislation.

    • 8.1 Controller. The controller of your personal information covered by this Privacy Policy for purposes of European data protection legislation is Pluto Biosciences, Inc., P.O. Box 482, Golden, CO 80402, United States of America.
    • 8.2 Legal Bases for Processing. The legal bases of our processing of your personal information as described in this Privacy Policy will depend on the type of personal information and the specific context in which we process it. However, the legal bases we typically rely on are set out in the table below. We rely on our legitimate interests as our legal basis only where those interests are not overridden by the impact on you (unless we have your consent or our processing is otherwise required or permitted by law). If you have questions about the legal basis of how we process your personal information, contact us at privacy@pluto.bio.

      Processing Purpose

      (as described above in the “Use of Personal Information” section)

      Legal Basis
      To Provide the ServiceProcessing is necessary to perform the contract governing our operation of the Service, or to take steps that you request prior to engaging our services. Where we cannot process your personal data as required to operate the Service on the grounds of contractual necessity, we process your personal information for this purpose based on our legitimate interest in providing you with the products or services you access and request.
      Research and DevelopmentProcessing is based on our legitimate interests in performing research and development as described in this Privacy Policy.
      Direct MarketingProcessing is based on your consent where that consent is required by applicable law. Where such consent is not required by applicable law, we process your personal information for these purposes based on our legitimate interests in promoting our business and showing you tailored relevant content.
      Interest-Based AdvertisingProcessing is based on your consent where that consent is required by applicable law. Where we rely on your consent you have the right to withdraw it any time in the manner indicated when you consent or in the Service.
      To Comply with Laws and RegulationsProcessing is necessary to comply with our legal obligations.
      For Compliance, Fraud Prevention, and SafetyProcessing is necessary to comply with our legal obligations or based on our legitimate interests in protecting our or others’ rights, privacy, safety, or property.
      With Your ConsentProcessing is based on your consent. Where we rely on your consent you have the right to withdraw it any time in the manner indicated when you consent or in the Service.
    • 8.3 Use for New Purposes. We may use your personal information for reasons not described in this Privacy Policy where permitted by law and the reason is compatible with the purpose for which we collected it. If we need to use your personal information for an unrelated purpose, we will notify you and explain the applicable legal basis.
    • 8.4 Retention. We will retain your personal data for as long as necessary to fulfill the purpose of collection, including for the purposes of satisfying any legal, accounting, or reporting requirements, to establish and defend legal claims, for fraud prevention purposes, or as long as required to meet our legal obligations.

      To determine the appropriate retention period for personal information, we consider the amount, nature, and sensitivity of the personal information, the potential risk of harm from unauthorized use or disclosure of your personal information, the purposes for which we process your personal information and whether we can achieve those purposes through other means, and the applicable legal requirements.

    • 8.5 Your Rights. European data protection laws give you certain rights regarding your personal information. You may ask us to take the following actions in relation to your personal information that we hold:
      • Access. Provide you with information about our processing of your personal information and give you access to your personal information.
      • Correct. Update or correct inaccuracies in your personal information.
      • Delete. Delete your personal information.
      • Transfer. Transfer a machine-readable copy of your personal information to you or a third party of your choice.
      • Restrict. Restrict the processing of your personal information.
      • Object. Object to our reliance on our legitimate interests as the basis of our processing of your personal information that impacts your rights.

      You may submit these requests by contacting us at privacy@pluto.bio or at the mailing address listed below. We may request specific information from you to help us confirm your identity and process your request. Applicable law may require or permit us to decline your request. If we decline your request, we will tell you why, subject to legal restrictions. If you would like to submit a complaint about our use of your personal information or our response to your requests regarding your personal information, you may contact us or submit a complaint to the data protection regulator in your jurisdiction. Find your data protection regulator

    • 8.6 Cross-Border Data Transfer. If we transfer your personal information to a country outside of Europe such that we are required to apply additional safeguards to your personal information under European data protection laws, we will do so. Please contact us at privacy@pluto.bio for further information about any such transfers or the specific safeguards applied.
  • 9. CONTACTING US

    If you have questions or concerns about our Privacy Policy or any other privacy or security issue, please email us at privacy@pluto.bio or write to us at the address below:

    Pluto Biosciences, Inc.
    Attn: Privacy Agent
    P.O. Box 482
    Golden, CO 80402