SafePark Lock Privacy Policy
Effective Date: April 30, 2026
Last Updated: April 30, 2026
This Privacy Policy describes how Tashi Solutions, Inc. ("Tashi Solutions," "we," "us," or "our") collects, uses, discloses, and protects information when you use the SafePark Lock mobile application, the SafePark Lock web platform at safepark.io, and related services (collectively, the "Service").
By using the Service, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, do not use the Service.
1. Who This Policy Applies To
SafePark Lock is an enterprise vehicle access control platform used by two types of users:
- Customers: individual drivers and tenants who register vehicles and manage their own vehicle access at participating facilities.
- Operators: parking management staff, airport authorities, and facility administrators who use the Service to manage vehicle access on behalf of their organizations.
This Privacy Policy applies to both types of users. Where practices differ between Customers and Operators, we identify the difference.
2. Information We Collect
2.1 Information You Provide Directly
- Account information: name, email address, phone number, password (stored hashed), and the participating facility or organization that issued your account.
- Vehicle information: license plate number, vehicle make, model, year, and any vehicle identifiers required by your facility.
- Lock and release activity: the time-based holds you create, release requests you submit, and approvals or denials you issue (Operator accounts).
- Communications: messages you send to our support team, beta feedback, and other correspondence with us.
2.2 Information Collected Automatically
- Device information: device model, operating system version, mobile application version, and unique device identifiers as required for authentication and security.
- Usage data: features accessed, screens viewed, actions taken within the Service, session timestamps, and approximate session duration.
- Diagnostic data: crash reports, performance metrics, and error logs used to maintain and improve the Service.
- Approximate location: facility-level location is associated with vehicle events (entries, exits, attempts) at the participating facility where the event occurred. We do not continuously track your device location.
2.3 Information from Facility Operators and Integrated Systems
When you use SafePark Lock at a participating facility, we receive information from that facility's systems, including:
- Vehicle entry and exit events captured by license plate recognition (LPR) cameras and gate systems.
- Reservation and validation records associated with your vehicle.
- Audit log data generated by Operator actions on your account.
This information is provided to us by the facility under our agreement with the facility operator.
3. How We Use Your Information
We use your information to:
- Provide the Service, including authenticating accounts, processing lock and release requests, and triggering gate and LPR integrations.
- Send transactional communications, including push notifications about exit attempts, release approvals, and other account activity.
- Maintain a complete audit trail required for compliance, dispute resolution, and operator accountability.
- Provide customer support and respond to inquiries.
- Maintain the security of the Service, detect and prevent fraud or unauthorized access, and enforce our Terms of Service.
- Improve the Service through diagnostic data and aggregated usage analytics.
- Comply with legal obligations, including law enforcement requests properly issued under applicable law.
We do not use your information for advertising. We do not sell your personal information.
4. How We Share Your Information
We share your information only as described below:
- With your facility operator: Customer account information, vehicle data, and event records are shared with the participating facility operator that issued or authorized your account, because the operator requires this information to manage facility access. This is the core function of the Service.
- With service providers: we use trusted third-party service providers for cloud hosting, authentication, push notifications, crash reporting, and customer support. These providers process information only on our instructions and are bound by contractual confidentiality and security obligations.
- For legal reasons: we may disclose information if required by law, subpoena, court order, or other valid legal process, or if we believe disclosure is necessary to protect the rights, property, or safety of Tashi Solutions, our users, or the public.
- In a business transaction: if Tashi Solutions is involved in a merger, acquisition, financing, or sale of assets, your information may be transferred as part of that transaction, subject to standard confidentiality protections.
We do not sell your personal information to third parties. We do not share your information with advertisers. We do not use your information for cross-app or cross-site tracking.
5. Data Retention
We retain your information for as long as your account is active and as needed to provide the Service. After account closure, we retain certain information for the periods below:
- Audit and event records: retained for at least seven years to support compliance, dispute resolution, and applicable legal obligations.
- Account profile data: retained for ninety days after account closure, then deleted or anonymized, except where longer retention is required by law.
- Diagnostic and crash data: retained for up to twelve months in identifiable form, then aggregated or deleted.
Operators may have additional retention requirements imposed by their facility, regulator, or organization. Where the facility is the data controller, the facility's retention policy applies in addition to ours.
6. Data Security
We implement administrative, technical, and physical safeguards designed to protect your information, including:
- Encryption in transit using industry-standard TLS.
- Encryption at rest for stored credentials, audit logs, and sensitive vehicle data.
- Role-based access controls limiting employee access to information on a need-to-know basis.
- Regular security reviews of our infrastructure and third-party providers.
- Logging and monitoring of administrative access.
No method of transmission or storage is one hundred percent secure. While we strive to protect your information, we cannot guarantee absolute security.
7. Your Rights and Choices
Depending on your jurisdiction, you may have the following rights:
- Access: request a copy of the personal information we hold about you.
- Correction: request correction of inaccurate or incomplete information.
- Deletion: request deletion of your information, subject to legal and contractual retention requirements (notably the audit trail).
- Portability: request a copy of your information in a structured, commonly used format.
- Objection or restriction: object to or request restriction of certain processing.
- Withdrawal of consent: withdraw consent where processing is based on consent.
- Non-discrimination: we will not discriminate against you for exercising your rights.
To exercise these rights, contact us at privacy@safepark.io. We will respond within the timeframes required by applicable law (typically thirty to forty-five days).
For Customers whose accounts are administered by a facility operator, certain rights may need to be exercised through your facility. We will direct your request appropriately and assist where we can.
7.1 California Residents (CCPA / CPRA)
California residents have the rights described above and may also designate an authorized agent to make requests on their behalf. We do not sell or share personal information for cross-context behavioral advertising. We do not have actual knowledge that we collect or sell the personal information of consumers under sixteen years of age.
7.2 European Economic Area, United Kingdom, and Switzerland (GDPR)
If you are located in the EEA, UK, or Switzerland, the legal bases on which we process your information include: performance of a contract with you, compliance with legal obligations, your consent (where applicable and revocable), and our legitimate interests in operating, securing, and improving the Service. You have the right to lodge a complaint with your local supervisory authority.
8. Children's Privacy
The Service is not intended for, marketed to, or designed for use by children under sixteen years of age. We do not knowingly collect personal information from children. If we learn we have collected information from a child, we will delete it promptly. If you believe a child has provided us information, contact us at privacy@safepark.io.
9. International Data Transfers
We are based in the United States, and your information is processed in the United States and may be processed in other countries where our service providers operate. Where required, we use appropriate safeguards for international transfers, such as Standard Contractual Clauses for transfers from the EEA, UK, or Switzerland.
10. Third-Party Links and Services
The Service may contain links to third-party websites or services we do not operate. This Privacy Policy does not apply to those third parties. We encourage you to review their privacy practices.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date and notify users through the Service or by email. Continued use of the Service after the updated policy takes effect constitutes acceptance of the changes.
12. Contact Us
Tashi Solutions, Inc.
Email: privacy@safepark.io
General inquiries: admin@safepark.io
Phone: 1-877-744-3606
Web: safepark.io
If you are an EEA, UK, or Swiss resident and would like to contact our designated representative for data protection matters, email privacy@safepark.io with "Data Protection Representative" in the subject line.