Custom Athlete Protection

Privacy policy

XO Armor Technologies Inc. Privacy Policy

Effective Date: January 19, 2022
Last Updated: November 11, 2025

 

1. Introduction

XO Armor Technologies Inc. (“XO Armor,” “we,” “us,” or “our”) respects your privacy and is committed to protecting it through our compliance with this Privacy Policy (“Policy”).

This Policy describes how we collect, use, disclose, store, and protect your personal information when you visit www.xoarmortech.com (our “Website”), download, install, or use the XO Armor mobile application (our “App”), or communicate with us electronically through these Services.

Together, the Website and App are referred to as the “Services.”

This Policy applies to information collected directly from you, automatically through your device or browser, and indirectly through service providers. It does not apply to information collected offline or from third-party platforms not operated by XO Armor.

The Services and this Policy are intended only for users within the United States. If you reside outside the United States, please do not use the Services.

By accessing or using our Services, you acknowledge and agree to the practices described in this Policy.

 

2. Information We Collect

We collect information that identifies, relates to, or could reasonably be linked with you (“personal information”).

Personal information does not include publicly available information from government records or de-identified/aggregated data.

The categories of personal information we may collect include:

Category

Examples

Collected

Identifiers

Real name, alias, postal address, phone number, unique identifier, IP address, email address

Yes

Commercial information

Bank account or credit card information, billing address, products or services purchased or considered

Yes

Biometric information

3D body scans, geometric measurements, facial depth maps captured via TrueDepth API for custom protective gear

Yes

Internet activity

Browser type, device ID, interactions with the Services, cookies, referring URL, marketing email engagement

Yes

Geolocation data

City-level location (approximate) via IP; precise geolocation data only if user enables location permissions

Limited

Audio/visual or sensory data

Photographs or video uploads (if you choose to send them to us)

Limited

Professional or employment information

None

No

Education records

None

No

Inferences

None

No

Sensitive Personal Information

Biometric 3D scan data, precise geometric measurements, limited device sensor data

Yes

 

3. How We Collect Information

We collect information:

  • Directly from you – when you create an account, submit a form, make a purchase, communicate with us, or upload a 3D scan.
  • Automatically – via cookies, beacons, and similar technologies that record device, usage, and browsing data.
  • From your device – when you permit the App to access Bluetooth, camera, microphone, contacts, sensors, reminders, or storage.
  • From analytics and payment partners – such as Google Analytics, Stripe, QuickBooks Online (QBO), and Amazon Web Services (AWS).

Device Permissions

When using our App, we may request access to your:

  • Camera – to capture images or 3D scans;
  • Bluetooth – to connect to compatible hardware or accessories;
  • Microphone or Sensors – for enhanced modeling accuracy;
  • Storage – to save scanned files or preferences.

You can change or revoke these permissions in your device’s settings at any time.

 

4. Collection and Use of TrueDepth Data

XO Armor uses Apple’s TrueDepth API and other 3D capture technologies to produce precise custom-fit protective gear.

The TrueDepth API captures 3D depth maps, per-vertex color information, and texture maps of the scanned body region.

Collected 3D data are:

  • Securely stored on Amazon Web Services (AWS) servers in the United States;
  • Used only to design and manufacture the ordered gear;
  • Accessible only to authorized XO Armor engineers;
  • De-identified and anonymized before being processed by our AI-assisted modeling tools;
  • Never sold or shared for marketing, behavioral advertising, or unrelated purposes.

We treat 3D scans as Sensitive Personal Information under applicable law and use them solely to fulfill the services you request.

5. How We Use Your Information

We may use or disclose personal information for the following purposes:

  • To fulfill or meet the reason you provided it (e.g., fulfill orders, provide support).
  • To personalize, support, and improve our Services.
  • To develop and refine AI-based product-fit algorithms (using anonymized data only).
  • To process payments and refunds.
  • To send notifications, updates, or promotional offers (you may opt out at any time).
  • To comply with applicable laws and regulations.
  • To protect the safety, integrity, and security of our systems.
  • To evaluate or conduct a merger, acquisition, or other business transfer.

We will not use your personal information for materially different purposes without providing you notice.

6. Sharing Your Information

We do not sell personal information for monetary value.

We may share information for legitimate business purposes with:

Recipient Category

Purpose of Disclosure

Cloud service providers (AWS)

Secure storage and processing of 3D scan data

Payment processors (Stripe, QBO)

Process payments and invoices

Analytics tools (Google Analytics)

Website traffic analysis and performance optimization

Engineering and AI/ML partners

De-identified model refinement and product design

Professional advisors or auditors

Legal and regulatory compliance purposes

All service providers are bound by contractual obligations to keep information confidential, use it only for specified purposes, and implement appropriate security safeguards.

We may also disclose information to comply with law enforcement, court orders, or applicable regulations.

7. Retention of Your Information

We retain personal information only for as long as necessary to provide our Services, fulfill your orders, or meet legal requirements.

Retention criteria include:

  • Identifiers / Account information: retained for duration of active account + up to 5 years for audit purposes.
  • Financial information: retained only until transaction completion then securely deleted.
  • 3D scan data: retained until product delivery + up to 12 months for re-orders, then anonymized or deleted.
  • Marketing preferences / email subscriptions: retained until you unsubscribe.
  • Device and usage data: retained up to 24 months for security and analytics.

When information is no longer needed, we delete or de-identify it.

8. California Privacy Rights (CCPA / CPRA)

If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):

Your Rights

  1. Right to Know – Request disclosure of the categories and specific pieces of personal information collected about you.
  2. Right to Delete – Request deletion of your personal information, subject to legal exceptions.
  3. Right to Correct – Request correction of inaccurate information.
  4. Right to Opt-Out of Sale or Sharing – Opt out of the sale or sharing of your personal information (we do not sell personal data).
  5. Right to Limit Use of Sensitive Personal Information – Restrict use of biometric or other sensitive data beyond providing requested services.
  6. Right to Non-Discrimination – We will not discriminate against you for exercising your privacy rights.

How to Exercise Your Rights

You may exercise your rights by:

  • Email: support@xoarmortech.com
  • Web Form: www.xoarmortech.com/privacy-request

We will verify your identity using reasonable methods (e.g., confirming account details or email ownership). We will respond within 45 days of receiving a verifiable request and may extend once by 45 days if necessary (with notice to you).

You may also authorize an agent to submit a request on your behalf.

Do Not Sell or Share Personal Information

XO Armor does not sell personal information for monetary value. We do not share your information for cross-context behavioral advertising.

We honor Global Privacy Control (GPC) signals from browsers that communicate your preference to opt out of data sharing.

Sensitive Personal Information Use Limitation

We collect sensitive information (such as 3D scans) solely to provide custom protective gear.
We do not use or disclose sensitive personal information for any other purpose without your explicit consent.

9. Children’s Privacy (COPPA and CIPA)

Our Services are not intended for children under the age of 13.
We do not knowingly collect personal information from children under 13, nor do we sell or share data of minors under 16 for targeted advertising.

If we learn that we have inadvertently collected personal information from a child under 13 without verifiable parental consent, we will delete that information promptly.

If you believe we might have information about a child, please contact us at support@xoarmortech.com.

California Invasion of Privacy Act (CIPA)

XO Armor does not record telephone calls, chat sessions, or other communications without the knowledge and consent of all parties to the communication.
If we offer call recording or video support in the future, we will obtain consent before recording and comply with CIPA and other applicable laws.

10. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Improve Website performance;
  • Analyze traffic and usage patterns;
  • Personalize content and remember preferences;
  • Enhance security and fraud prevention.

You can disable cookies through your browser or mobile settings. Some features may not function properly if cookies are disabled.

We respect browser “Do Not Track” and Global Privacy Control signals where technically feasible.

11. Security of Your Information

We implement reasonable administrative, technical, and physical safeguards to protect your information against unauthorized access, loss, or disclosure, including:

  • Encrypted data storage and transmission;
  • Access controls restricted to authorized personnel;
  • Regular security audits and testing;
  • Secure cloud environments (AWS with industry-standard certifications).

No method of transmission over the Internet or electronic storage is 100% secure, so we cannot guarantee absolute security. You are responsible for keeping passwords confidential and for avoiding public disclosure of sensitive information.

If a data breach occurs, we will notify affected individuals and authorities as required by law.

12. Data Transfers

All data is stored on servers located in the United States.
If any future cross-border data transfer occurs (for example, to a cloud backup service outside the U.S.), we will use appropriate safeguards and notify you as required by law.

13. Promotional Communications and Opt-Out

We may send you emails about product updates, events, or offers.
You can opt out at any time by:

  • Clicking the “unsubscribe” link in our emails; or
  • Contacting info@xoarmortech.com.

We will honor your preferences within a reasonable period of time.

 

14. Your Choices and Control

  • Access and Correction: You can request a copy of the information we hold about you and correct inaccuracies.
  • Deletion: You can request deletion of your account or personal data.
  • Location Settings: You can disable location tracking in your device settings.
  • Cookies: You can manage cookie preferences through your browser.

 

15. Non-Discrimination

We will not deny you goods or services, charge you different prices, or provide a different level or quality of service because you exercised your privacy rights.

 

16. Changes to This Policy

We may update this Policy from time to time.
When we do, we will post the updated version on our Website and App with the new “Last Updated” date.
We review our Policy at least annually to ensure ongoing compliance with evolving laws.

Your continued use of the Services after we post changes constitutes acceptance of those changes.

 

17. Contact Information

For questions, comments, or requests regarding this Policy or your privacy rights, please contact us:

XO Armor Technologies Inc.
Email: support@xoarmortech.com