Privacy Policy

Last updated: June 16, 2026

DotzLink Ltd. (“DotzLink”, “we”, “us”, or “our”) operates the website
https://dotzlink.com
(the “Site”) and the DotzLink mobile application (the “App”) (together, the “Services”).

This Privacy Policy explains how we collect, use, disclose, and protect
personal information when you use our Services.
By accessing or using the Services, you acknowledge that you have read and understood
this Privacy Policy.

1. Scope of This Policy

This Privacy Policy applies to:

  • Visitors to our website
  • Users of the DotzLink mobile application
  • Seniors, caregivers, and authorized users
  • Prospective customers and partners

This Policy does not apply to third-party websites or services linked from our Services.

2. Information We Collect

2.1 Personal Information You Provide

We may collect personal information that you voluntarily provide, including:

  • First and last name
  • Email address
  • Phone number
  • Age range (not exact date of birth)
  • Caregiver linkage details
  • Messages or inquiries sent to us
  • Account credentials (encrypted)

2.2 Communication and Activity Metadata

When you enable fraud protection features, we may process limited communication metadata,
such as:

  • Message metadata (sender, timing, structure – not content unless explicitly authorized)
  • Call metadata and logs (number, time, duration, country code and MMI/activation codes for the purpose of detecting unauthorized call forwarding)
  • Interaction patterns across apps and channels
  • Links detected or clicked (for fraud analysis)

We do not use this data for advertising, profiling unrelated to fraud prevention, or resale.

2.3 Technical and Device Information

We may automatically collect:

  • Device type, OS, and app version
  • IP address (general location only)
  • Log files and crash diagnostics
  • Usage events and performance metrics

2.4 Cookies and Similar Technologies

Our Site and App may use cookies, SDKs, or similar technologies for:

  • Core functionality
  • Security
  • Analytics and performance monitoring

These technologies may include third-party software development kits (SDKs), such as analytics and attribution tools provided by service providers and advertising platforms.

You may control cookies through browser or device settings.

2.5 Sensitive Permissions (Call Logs)

To provide our core financial protection services, the DotzLink App specifically requests access to your device’s Call Logs (android.permission.READ_CALL_LOG).

  • Purpose: This permission is used solely to monitor and detect unauthorized call forwarding activation patterns (such as MMI codes).

  • Fraud Prevention: These patterns are often used by bad actors in “OTP Kidnapping” schemes to intercept voice-based One-Time Passwords from your financial institutions.

  • Data Protection: This metadata is processed to generate real-time security alerts.

  • Restrictions: We do not use call log data for advertising, marketing, or any purpose unrelated to your financial safety, and the data is not shared with third parties for their own use.

2.6 Meta (Facebook) SDK and Analytics

Our Services use technologies provided by Meta Platforms, Inc., including the Facebook SDK, to support analytics, application performance monitoring, and marketing attribution. Through the Facebook SDK, Meta may collect or receive certain information from your device and interactions with the Services, including:

  • Device identifiers and advertising identifiers (such as Google Advertising ID / GAID, where permitted by applicable law)

  • App installation, activation, and launch events

  • Device type, operating system, and application version

  • General location information derived from IP address

  • Usage, engagement, and performance events within the Services

  • Attribution information related to your discovery of our marketing campaigns

We use this information to measure the effectiveness of marketing and user acquisition campaigns, understand how users discover and interact with our Services, improve application performance, and analyze aggregated usage trends.

Data Isolation & Safeguards: We do not use information collected through the Facebook SDK to make decisions regarding fraud risk, financial eligibility, or financial services, and we do not sell personal information to Meta. Information collected through the Facebook SDK is strictly isolated and is never combined with Google email content, call log data, or fraud detection signals for advertising purposes.

Third-Party Processing & Privacy Options: Information transmitted via the Facebook SDK is subject to Meta’s privacy practices, where Meta acts as an independent or joint data controller. For additional information, please review Meta’s Privacy Policy: https://www.facebook.com/privacy/policy/.

Where required by applicable law, we obtain user consent before enabling non-essential analytics or attribution technologies. Users may manage their tracking preferences via their Meta account settings or directly through their mobile device settings (e.g., Settings > Privacy > Ads on Android to reset or opt out of personalized advertising identifiers).

3. Use of Google User Data

If you choose to connect a Google account, DotzLink may access Google user data only with
your explicit authorization, in accordance with Google API Services User Data Policy
(Limited Use).

Data Accessed (Depending on Permissions Granted):

  • Basic Google account information (name, email, profile image)
  • Email metadata or content (solely for scam or fraud detection)
  • Contacts data (to identify trusted senders)

How We Use Google Data:

  • Fraud detection and scam prevention
  • Identifying impersonation or malicious activity
  • Improving protection accuracy

Restrictions:

  • No advertising use
  • No data resale
  • No sharing with third parties except as required for core service delivery or by law

 

Google Workspace APIs are not used to develop, improve, or train generalized artificial intelligence (AI) or machine learning (ML) models.

Security:

  • Encrypted in transit and at rest
  • Access restricted to authorized systems

User Control:

You may revoke Google access at any time via your Google Account permissions.

4. How We Use Your Information

We use collected information to:

  • Provide fraud detection and prevention services
  • Create and manage user accounts
  • Generate alerts and notifications
  • Improve accuracy, reliability, and performance
  • Detect and alert users about unauthorized communication-based threats, including “OTP Kidnapping” and suspicious call forwarding activity
  • Support customer service and technical operations
  • Comply with legal and regulatory obligations

 

We do not serve third-party targeted advertising within our Services, nor do we use your core fraud-prevention data for external marketing.

6. Data Sharing and Disclosure

We may share information:

  • With service providers and technology partners (including cloud hosting, analytics, attribution, messaging providers, and Meta Platforms, Inc.) under contractual confidentiality and data protection obligations
  • With partners or institutions only where contractually required
  • With authorities if required by law or to prevent harm

We do not sell or rent personal data.

7. Data Retention

We retain personal data:

  • Only as long as necessary for fraud prevention and service delivery
  • In accordance with legal, regulatory, and contractual requirements
  • After which data is deleted or anonymized.

8. Security Measures

We apply industry-standard security practices, including:

  • TLS encryption in transit
  • Encryption at rest
  • Role-based access control
  • Audit logging
  • Rate limiting and abuse prevention

No system is 100% secure, but we continuously improve safeguards.

9. Your Rights

Depending on your location, you may have the right to:

  • Access your personal data
  • Request correction or deletion
  • Restrict or object to processing
  • Withdraw consent
  • Request data portability

Requests can be submitted to: info@dotzlink.com

10. International Data Transfers

Your personal information may be processed and stored in Israel, the European Economic Area (EEA), the United States, or other jurisdictions where DotzLink or its service providers operate.

Where required by applicable law, we implement appropriate safeguards for international data transfers, including contractual protections and other legally recognized transfer mechanisms designed to protect personal information.

11. Children and Vulnerable Users

Our Services are not intended for individuals under 18.

We do not knowingly collect data from minors.

If such data is identified, it will be deleted promptly.

13. Changes to This Policy

We may update this Privacy Policy periodically.

Changes will be posted with an updated “Last Updated” date.

Continued use of the Services constitutes acceptance of the revised Policy.

14. Contact Information

For questions or requests regarding this Privacy Policy: