1. Who controls your data
TSS Travnik, Cabrusa 4F, 72270 Travnik, Bosnia and Herzegovina, registration number 4338159130008, operates Farweo and is the controller of personal data processed through the Farweo website, Windows applications, web console, and remote-support service. Privacy questions and rights requests can be sent to privacy@farweo.com.
2. Data we process
- Account data: email address, password hash, account status, subscription entitlement, account creation date, and security tokens.
- Managed-device data: device identifier, display name, group, notes, machine and operating-system details, application version, IP address, online status, CPU and memory use, disk capacity, uptime, and pending-restart status.
- Support and security records: connection time, duration, outcome, account or client identity, client IP address, device events, enrollment activity, and security logs.
- Session content: screen images, keyboard and mouse input, audio, clipboard content, and files selected for transfer are processed to deliver a live session. They travel through encrypted WebRTC channels, directly when possible or through a relay. Farweo does not intentionally record or retain session content on its application server.
- Purchase data: Freemius processes checkout and payment details. Farweo may receive purchaser email, product, plan, license, subscription, transaction status, and billing-cycle details, but does not receive or store full payment-card details.
- Recovery email data: email address, a hashed single-use recovery token, creation and expiry times, and delivery status required to reset a password.
3. How and why we use data
We process data to create and secure accounts, register and monitor managed devices, establish remote sessions, provide file and clipboard features, operate trials and subscriptions, deliver password recovery, prevent abuse, diagnose failures, respond to support requests, and meet legal and accounting obligations.
Depending on the context, processing is based on performance of our contract with you, our legitimate interests in operating and securing Farweo, compliance with legal obligations, or consent where applicable.
4. Browser storage and tracking
The Farweo admin and web clients store an authentication token and interface preferences in your browser's local storage. Farweo does not currently use advertising cookies, third-party analytics pixels, or cross-site behavioral tracking on farweo.com. A payment provider may use its own necessary storage when you open its checkout.
5. Service providers and recipients
We share only the data needed with infrastructure hosting and network providers, the configured transactional-email provider, Freemius for checkout and subscription processing, and professional advisers or authorities when legally required. These providers process data under their own terms or on our instructions, depending on their role.
6. International transfers
Some providers may process data outside your country or the European Economic Area. Where required, we use an adequacy decision, approved contractual safeguards, or another lawful transfer mechanism.
7. Retention
- Account and managed-device records are kept while the account is active and as reasonably necessary to provide the service.
- Expired recovery-token records are periodically removed; recovery links expire after 30 minutes.
- Application log files are normally rotated after seven days. Security and connection audit records may be kept longer where needed to protect accounts, investigate misuse, or meet legal obligations.
- Billing and transaction records are retained for the periods required by tax, accounting, fraud-prevention, and payment rules.
8. Your rights
Subject to applicable law, you may request access, correction, deletion, restriction, portability, or objection to processing, and may withdraw consent where consent is the basis. You may also complain to your competent data-protection authority. We may need to verify your identity before fulfilling a request.
9. Security
Farweo uses access controls, encrypted transport, password hashing, short-lived recovery links, audit records, and restricted production access. No system is completely secure, so please use a unique password and protect host credentials.
10. Children
Farweo is a business-oriented service and is not directed to children. Users must be at least 18 years old or otherwise legally able to enter a binding agreement.
11. Changes and contact
We may update this policy as Farweo changes. Material changes will be identified by a revised date and, when appropriate, an in-product or email notice. Contact privacy@farweo.com with questions or rights requests.