NOTICE

Privacy
and Cookie Notice

We respect and care about the privacy and protection of the personal data of its users, so we treat the personal data of our users with due care, following the current legislation, in particular, the General Law for the Protection of Personal Data (LGPD).

This Privacy Notice explains in a clear and accessible way what personal data we collect and process when you use and access our services or browse our websites, what purposes we use your data, how it is used, your rights over that data and how you can exercise them.

1. Definitions
1.1. Anonymization: Use of reasonable technical means available at the time of Processing, through which data loses the possibility of direct or indirect association with an individual.

1.2. Cloud Computing: Or cloud computing, is a service virtualization technology built from the interconnection of more than one server through a common information network (e.g. the Internet), with the objective of reducing costs and increasing the availability of sustained services.

1.3. Cookies: Small files sent by the Platform, saved on your devices, which store preferences and little other information, in order to customize your browsing according to your profile.

1.4. Data: Any information entered, processed or transmitted for the execution of services related to the use of our Platform.

1.5. Anonymized Data: Data relating to a data subject who cannot be identified, considering the use of reasonable technical means available at the time of its processing.

1.6. Personal Data: Data related to an identified or identifiable natural person.

1.7. Sensitive Personal Data: Personal data about racial or ethnic origin, religious belief, political opinion, membership in a union or organization of a religious, philosophical or political nature, data referring to health or sex life, genetic or biometric data, when linked to a natural person.

1.8. Solely automated decisions: These are decisions that affect a user that have been programmed to work automatically, without the need for human operation, based on automated processing of personal data.

1.9. Data Protection Officer (“DP O”): Person appointed by us to act as a communication channel between him/herself, you, the other personal data subjects and the National Data Protection Authority (“ANPD”).

1.10. Session ID: Identification of the session of users when access to the Platform is made.

1.11. IP: Abbreviation for Internet Protocol. It is an alphanumeric set that identifies your devices on the Internet.

1.12. Link: Terminology for internet address.

1.13. Logs: Activity records of any users who use the Platform.

1.14. Plataforma: site https://www.checklistfacil.com/;

1.15. Holder: Natural person to whom the personal data that is the object of processing refers.

1.16. Processing: Any operation carried out with Personal Data, such as those referring to the collection, production, reception, classification, use, access, reproduction, transmission, distribution, processing, filing, storage, elimination, evaluation or control of informatio n, modification, communication, transfer, dissemination or extraction.

1.17. International Data Transfer: Transfer of personal data to a foreign country or international
2.1. When processing your data as set out in this notice, we act as a Controller:

2.1.1. Softplan S/A, headquartered in the city of Florianópolis, State of Santa Catarina, at Avenida Luiz Boiteux Piazza, 1302, Lote 87/89, Cachoeira do Bom Jesus, CEP: 88.056-000, registered with the CNPJ under No. 15.087.394/0001-34 (Softplan).
3.1. Por favor, não acesse ou se registre em Nossos Ambientes caso tenha menos de 16 anos.
4.1. Although we prohibit children and teens under the age of 16 from registering and accessing, parents should supervise their underage children’s online activities.

4.2. The activities of adolescents over 16 years of age and under 18 years of age must be assisted by parents or legal representatives.
5.1. By browsing and using the features of our platform and environments, you confirm and declare that you have carefully read this Privacy and Cookie Notice and agree to the terms stipulated herein. Your agreement is free and express, and you also agree to the processing of your data under the conditions described below.
6.1. During your navigation on our platform and environments, we may collect personal data in the following ways:

6.1.1. Through your browsing and interactions

6.1.1.1. We collect the Data that you voluntarily provide to us when you use our services, fill out registration forms, register user profiles, promotional entries, sweepstakes, contests, customer service requests, software and mobile application downloads, make comments, the pages and content you access, and other interactions on our website and environments;

6.1.2. Data collected automatically

6.1.2.1. We may collect some Data automatically, as described in the “Passive Data Collection” topic in this notice;

6.1.3. Data obtained from third parties

6.1.3.1. We collect Personal Data available in Public databases, social networks and also platforms that contain data voluntarily provided by you. In addition, we may receive your personal data from partners who have the legitimacy to share the data, always in accordance with this notice and applicable laws
7.1. Consent: When you actively consent to the processing of the data for a specific purpose. This consent can be revoked at any time.

7.2. Legitimate interest: When we or partners have a legitimate interest in using your data, as provided for by law, respecting your fundamental rights and expectations.

7.3. Contract performance: When necessary to fulfill a contract or pre-contractual diligences, such as when subscribing to a service and we need to use your data to process your request and deliver the contracted product.

7.4. Compliance with legal or regulatory obligation: When necessary to comply with legal and regulatory obligations, such as responding to letters from competent authorities.

7.5. Regular exercise of rights: When necessary for us to exercise our rights in administrative, judicial and arbitration proceedings.

7.6. Credit protection: When necessary to prevent fraud and validate your identity, such as when subscribing to paid services.
8.1. The Personal Data collected includes the following categories and is used for the purposes highlighted below:

What is collected?

Why is it collected?

Registration Data (online environment)

Full name

City, State, and Country

E-mail

Company Name

I. Identify and authenticate you;
II. Fulfill the obligations arising from making the Platform available to you;
III. Enhance your experience and promote activities related to the use of the Platform;
IV. Allow the submission of resumes in the Work With Us section;
V. Allow contact through the Contact Us channel;
VI. Enhance our relationship, inform you about news, features, content, news, and other events that we consider relevant to you;
VII. Enable your access and use of the resources and functionalities of the Platform;
VIII. Ensure the portability of registration Data to another Controller in the same field of activity, if requested by you, complying with the obligation of Art. 18 of the Brazilian General Data Protection Law;
X. Provide technical and operational support and ensure the security and functionality of the services.
XI. Prevent and curb illegal, improper, fraudulent, or suspicious activities that may cause harm to you, us, or third parties. XII. Comply with legal, judicial, and administrative determinations and requests from competent authorities.
XIII. Take legal, judicial, and administrative measures to defend our rights and those of third parties, including in judicial and/or administrative proceedings.

Digital Identification Data

Source IP Address and Logical Port

I. Enable access to restricted areas of the Platform;

Date and time records of each action you perform

Which screens you accessed

Session ID

Cookies

Username

I. Comply with legal obligations for action you perform record keeping established by the Brazilian Civil Rights Framework for the Internet - Law 12.965/2014.
II. Security monitoring of the Platform for you and our security.
III. Provide technical and operational support and ensure the security and functionality of the services.
IV. Prevent and curb illegal, improper, fraudulent, or suspicious activities that may cause harm to you, us, or third parties.
V. Develop, evaluate performance, test, and enhance the Services, as well as new content and services.
VI. Conduct research, analysis, and innovation activities related to the performance and improvement of our Services, or those of our Partners.
VII. Measure interactions and audience of the Services.

Prazo de armazenamento

Fundamento legal

Enquanto durar a relação e não houver pedido de apagamento ou revogação de consentimento

Art. 9º, inciso II, da Lei Geral de Proteção de Dados Pessoais

6 meses para os Dados de Identificação Digital

Art. 15 do Marco Civil da Internet

9.1. You are solely responsible for the accuracy, truthfulness or lack thereof in relation to the Data you provide or for its outdatedness. Please be aware that it is your responsibility to ensure accuracy or keep them up to date.
10.1. Location-Based Services

10.1.1. We may collect, use, and share (with our partners, service providers, and licensees) precise location data, including the real-time location of your device from a fixed or mobile location.

10.2. Analysis tools

10.2.1. We use analytics tools, such as Microsoft Clarity software and other third -party technologies, to collect non-personal information in the form of various usage and behavior metrics when using our website or services (referred to as “Websites and/or Services” in this Notice). These tools and technologies collect and analyze certain types of information, including cookies, IP addresses, device and system identifiers of the device that is accessing the website and software, referring and exit URLs, usage and behavior information on the website, feature usage statistics, usage and purchase history, device identifiers, and other similar information.

10.2.2. Third-party analytics companies that collect information on our Websites and/or Services and other online products and/or services may combine the information collected with other independent information from other websites and/or related online or mobile products and services, covering their activities across the entire network of websites, as well as online and/or mobile products and services. Many of these companies collect and use information in accordance with their own privacy policies.

10.2.3. In addition to the use of technologies as described herein, we may allow certain third -party companies to help us personalize advertisements that we believe may be of interest to you, based on your use of our Sites and/or Services, and to collect and use d ata about that use. For more information about this practice, please see the “Third-Party Advertising Technologies” section below.

10.2.4. You can opt out of the DoubleClick cookie by visiting Google’s advertising opt-out page or opt out of Google Analytics by visiting the Google Analytics and/or other collection tools opt-out page.

10.2.4.1. Google provides additional information about its Marketing Privacy Guidelines and restrictions.

10.2.5. In some cases, our use of your personal information may result in automated decisions being made (including profiling). Automated decisions mean that a decision about you is made automatically based on a computational determination (using software algorithms), without our human review. For example, we use automated decisions to deliver targeted advertising on our Services that may be of interest to you. You can opt out of receiving targeted advertising by clicking “Unsubscribe” at the bottom of the advertising email you receive.
11.1. We may share your data with third parties and partners as necessary to achieve the purposes described in this Privacy Notice. Such sharing will follow the best information security practices in the market and will comply with applicable laws, including, but not limited to:
12.1. Cookies are small text files placed on your devices, which once used on our website and environments, allow the collection of some information, including your data to meet the purposes of this Notice, recognize, track and store your interactions and preferences while browsing the internet.

12.2. The use of Cookies is common on any digital platform, so cookies are collected by us to improve your experience, both in terms of performance and usability, since the content available will be directed to your needs.
13.1. Cookies allow the Platform to memorize information when you access them, the preferred language, the location and recurrence of sessions, and other variables that we consider relevant to make this experience much more efficient

13.2. Cookies may also be used to compile anonymous and aggregated statistics that allow us to understand how you use the Platform, as well as to improve its structures and content. We cannot identify you personally through this data.

13.3. Cookies perform a number of different jobs, such as allowing you to navigate between pages efficiently, remembering your preferences, and generally enhancing the user experience. They can also help ensure that the advertisements you see online are more relevant to you and your interests.
14.1. There are the following categories of Cookies that may be used on the Platform:

14.1.1. Strictly necessary Cookies: These are Cookies that are necessary for the correct functioning of the Services, since they allow you to browse our environments and use the services subject to this Privacy Notice.

14.1.2. Session Cookies: These are temporary cookies that will remain on your device until you finish browsing;   14.1.3. Persistent Cookies: These are Cookies that remain on your device until it is deleted (the time that the Cookie will remain on your device depends on the duration of the “lifetime” of the specific Cookie and the settings of the browser used).
15.1. Performance Cookies: We collect cookies on our websites and/or Services to capture information about page visits (e.g., “performance cookies”). This information is anonymous and we only use it internally to provide the most effective content to our visitors. Cookie information is used to gauge page popularity, analyze traffic patterns on our Sites and/or Services, and guide the development of other improvements to our Sites and/or Services;

15.2. Targeting , performance and functionality cookies: In our email programs, we employ a number of tracking methods (e.g., “targeting, performance and functionality cookies”). We track access through a tracking pixel in the email – which means we track who opens our email messages and when you open our email messages; and we track “clicks” through encoded URLs – which means we track whether you click on the links contained in our email messages. This information is used internally only to help us deliver relevant messages and is not shared with third parties;

15.3. We use the following cookies during your browsing:

Cookie

Validade

Finalidade

__hssc

__hssrc

__hstc

hubspotutk

messagesUtk

30 minutos

1 ano

6 meses

6 meses

6 meses

HubSpot

Rastrear e armazenar informações sobre a in-teração de um usuário com o site da Checklist Fácil. Ele tem a finalidade de fornecer uma ex-periência personalizada aos visitantes do site

_clck

_clsk

_fbp

1 ano

1 ano

3 meses

Microsoft Clarity

Rastrear e armazenar informações sobre a in-teração de um usuário com o site da Checklist Fácil. Ele tem a finalidade de fornecer uma ex-periência personalizada aos visitantes do site

_ga

_ga_68FP3MXMJL

_gat_UA-60146407-2

_gid

_ga_CBTMK6NJSF

_ga_LSZR85T3J2

pbid

1 ano e 1 mês

1 ano e 1 mês

1 minuto

1 dia

1 ano e 1 mês

1 ano e 1 mês

6 meses

Google Analytics

coletar informações sobre a forma como os vi-sitantes interagem com nosso site. Ele é usado para rastrear e relatar dados sobre o tráfego do site, como o número de visitantes, as pági-nas visitadas e a origem do tráfego

_gcl_au

3 meses

Google Adsense

Melhorar a publicidade.

_uetsid

_uetvid

1 dia

1 ano e 1 mês

Bing Ads

coletar informações sobre a forma como os visitantes interagem com nosso site. Ele é usado para rastrear e relatar dados sobre o tráfego do site, como o número de visitantes, as páginas visitadas e a origem do tráfego

pys_first_visit

pys_landing_page

pys_session_limit

pys_start_session

last_pys_landing_page

last_pysTrafficSource

7 dias

7 dias

1 hora

1 ano

7 dias

7 dias

PixelYourSite

__utmzz

__utmzzses

6 meses

1 ano

WP Engine

PHPSESSID

1 ano

PHP

_hjAbsoluteSessionInProgress

_hjFirstSeen

_hjIncludedInSessionSam-ple_2242825

_hjSession_2242825

_hjSessionUser_2242825

30 minutos

30 minutos

1 minuto

30 minutos

1 ano

PixelYourSite

AdoptVisitorId

2 meses

Adopt

informa os usuários do site, de maneira transparente, quais dados são coletados e gerencia todos os consentimentos atualizados como é exigido na LGPD

AMP_TOKEN

30 segundos

Google AMP

Otimiza navegação online em dispositivos móveis.

Path

1 ano

WordPress

Auxilia um plugin interno do site na definição do idioma a ser apresentado.

16.1. You can change the settings to block the use of Cookies or to alert you when a Cookie is being sent to your device. Please refer to your browser’s instructions. If you use different devices to access the Platform (e.g., computer, smartphone, tablet, etc.) you must ensure that each browser on each device is adjusted to meet your preferences regarding Cookies.

16.2. Disabling the Cookies used may impact the experience on the Platform, for example, you may not be able to visit certain areas of a page from us or you may not receive personalized information when you visit a page.

16.3. In order for you to be able to manage your preferences regarding Cookies in a simple and intuitive way from your browser, you can use one of the links below:
17.1. Password care

17.1.1. You are also responsible for the confidentiality of your Personal Data and should always be aware that sharing passwords and access data violates this notice and may compromise the security of your Data.

17.2. Precautions you should take

17.2.1. It is very important that you protect your Data from unauthorized access to your computer, account, or password, and make sure that you always click “sign out” when you end your browsing on a shared computer. It is also very important for you to know that we will never send you electronic messages requesting confirmation of data or attachments that may be executed (extensions: .exe, .com, among others) or even links to eventual downloads.
18.1. We adopt strict security controls to protect your data, following the best market practices and technical and regulatory standards. Our measures include physical and logical protection of assets, encrypted communications, access management, secure software development, and internal compliance policies and programs that ensure security throughout the lifecycle of our services. These controls are constantly reviewed to address new threats on the Internet. Although it is not possible to guarantee thetotal inviolability of our services, we have teams prepared to detect and respond promptly to any event or incident that compromises the security of your data or our services.

18.2. Internally, the Personal Data collected is accessed only by duly authorized professionals, respecting the principles of proportionality, necessity and relevance to the business objectives, in addition to the commitment to confidentiality and preservation of your privacy under the terms of this Notice.

19.1. When you use the Platform, you may be led, via link to other portals or environments, which may collect your information and have their own Data Processing Policy.

19.2. It will be up to you to read the Privacy and Data Processing Policies of such portals or environments outside our Platform, and it is your responsibility to accept or reject it. We are not responsible for the Privacy and Data Processing Policies of third p arties or for the content of any websites, content or services linked to environments other than those of the Platform.

20.1. We have business partners who may occasionally offer services through features or websites that can be accessed from Our Environments. The Data provided by you to these partners will be the responsibility of these partners and is therefore subject to their own data collection and use practices.
21.1. If third-party companies carry out the Processing of any Personal Data under our guidelines, they will comply with the conditions stipulated herein and the information security standards, mandatorily.

21.2. To optimize and improve communication, when we send you an email, it may receive a notification when they are opened, as long as this possibility is available. It is important for you to be aware that emails are only sent by the domains: @checklist.com.br, @checklistfacil.com.
22.1. The Personal Data collected and activity logs are stored in a secure and controlled environment for a minimum period of time as follows the table below:

Prazo de armazenamento

Fundamento legal

For the duration of the relationship and until there is a request for deletion or revocation of consent.

Art. 9, item II, of the Brazilian General Data Protection Law.

6 months for Digital Identification Data

Art. 15 of the Brazilian Civil Rights Framework for the Internet

22.2. Prazos de armazenamento superiores: Para fins de auditoria, segurança, controle de fraudes, cumprimento de obrigações legais, judiciais ou administrativas e preservação de direitos, poderemos permanecer com o histórico de registro de seus Dados por prazo maior nas hipóteses que a lei ou norma regulatória assim estabelecer ou para preservação de direitos.

22.3. Transferência de Dados: Os Dados coletados poderão ser armazenados em servidores localizados no Brasil ou em outro País em que utilizemos serviços de armazenamento, nos comprometendo em adotar as medidas necessárias para assegurar a proteção destes dados.

22.4. Os Dados podem ser armazenados em ambiente de uso de recursos ou servidores na nuvem (cloud computing), o que poderá exigir uma transferência e/ou processamento destes Dados fora do Brasil
23.1. We follow the guidelines established by the LGPD, and are committed to ensuring that you can exercise your rights in relation to your data through the Privacy Portal, which are:
23.2. If you withdraw your consent for purposes that are fundamental to the regular functioning of the Platform, the Platform’s functionalities may be unavailable to you.

23.3. At the end of the maintenance period and the legal need, the Personal Data will be deleted using secure disposal methods, or used in an anonymized form for statistical purposes.

23.4. For security purposes, additional identity validations may be carried out to comply with your rights, such as confirming information and presenting documents required for this purpose.
24.1. This Notice is subject to constant improvement and improvement, reserving the right to modify it at any time, according to the purpose or need, such as for adequacy and legal compliance with a provision of law or rule that has equivalent legal force, and it is up to you to verify it whenever you access the Platform. If updates occur to this document and that eventually require a new collection of consent, you will be notified through the contact channels you inform.
25.1. In addition to following the guidelines in this Privacy Notice, we also collect and process your data in an anonymized form, which means that there is no personal identification associated. It is important to note that, according to the LGPD, anonymized data, as it cannot identify the holder, is outside the scope of application of this law.
26.1. If you have any questions about this Notice, please contact us by e-mail: protecaodedados@softplan.com.br, to make requests about the processing of your personal data, please contact us through the Privacy Portal.
27.1. Softplan’s Personal Data Protection Officer is: Luiz Augusto Guimarães Espinola.
Privacy Notice Last Modified Date: 01/07/2024