Privacy Policy – BlueBox
Effective date: May 06, 2026
This Privacy Policy explains how BlueBox Labs collects, uses, protects, and manages user information through the BlueBox mobile application.
1. Application and developer
Application name: BlueBox
Developer: BlueBox Labs
Website: https://www.bluebox-labs.com
Contact email: contact@bluebox-labs.com
2. Purpose of the application
BlueBox is a mobile application used to configure, connect, monitor, and control BlueBox devices, including controllers, valves, irrigation programs, and related settings.
The application may be used to:
- connect a BlueBox controller to a local network;
- configure a BlueBox device during onboarding;
- view the status of controllers and valves;
- manage irrigation programs;
- communicate with BlueBox backend services;
- provide remote access to BlueBox system data and features.
3. Data we may collect or process
Depending on the features used, BlueBox may collect or process the following categories of data.
3.1 Account data
BlueBox may process information required to identify users and provide access to their account, including:
- phone number;
- email address, if provided;
- user identifier;
- login information;
- session tokens or authentication data required to keep the user signed in.
3.2 BlueBox device data
BlueBox may process technical data related to devices and installations, including:
- controller identifier;
- controller configuration information;
- valve status;
- irrigation programs;
- installation settings;
- diagnostic information required for the operation of the service.
3.3 Wi-Fi and network data
During the installation or configuration of a BlueBox controller, the application may access certain Wi-Fi and network information, including:
- the current Wi-Fi network name, also known as SSID;
- Wi-Fi connection status;
- network status;
- Internet availability;
- information required to verify that the phone is connected to the correct local network.
This information is used only to enable installation, configuration, and communication with the BlueBox controller and BlueBox backend services.
3.4 Foreground location permission
BlueBox may request foreground location permission during the onboarding or configuration of a controller.
On some Android versions, this permission is required to allow the application to read the name of the current Wi-Fi network. BlueBox uses this permission only to verify that the
phone is connected to the correct local network during controller installation.
BlueBox does not use this permission to track the user in the background.
BlueBox does not collect background location data.
BlueBox does not use location data for advertising purposes.
BlueBox does not sell location data to third parties.
If the user refuses or disables this permission, some features related to onboarding, Wi-Fi configuration, or local communication with the controller may not work correctly.
3.5 Camera
BlueBox uses the camera permission only when the user opens a feature that requires the camera, for example to scan a QR code during the installation or configuration of a
controller.
BlueBox does not use the camera to monitor the user.
BlueBox does not record videos in the background.
BlueBox does not use camera images for advertising purposes.
BlueBox does not sell camera-related data to third parties.
If data is read during QR code scanning, it is used only to complete the action requested by the user, such as pairing or configuring a BlueBox device.
3.6 Technical data
BlueBox may process certain technical data required for the operation, security, and improvement of the application, including:
- application version;
- device type;
- Android operating system version;
- device language;
- diagnostic information;
- technical errors or logs required for support.
4. Android permissions used
BlueBox may request certain Android permissions to provide its features.
Camera
The camera permission is used only to scan a QR code or help configure a BlueBox device.
Foreground location
Foreground location may be requested because some Android versions require it to read the current Wi-Fi network name during controller installation.
BlueBox does not use this permission to track the user.
Wi-Fi and network state
Wi-Fi and network-related permissions are used to:
- verify that the phone is connected to the correct local network;
- allow communication between the mobile application and the BlueBox controller;
- check network availability;
- help configure the device.
Internet
Internet access is used to:
- communicate with BlueBox backend services;
- authenticate users;
- synchronize controller data;
- provide remote access to system information;
- ensure the proper operation of the application.
5. How we use data
Data collected or processed by BlueBox is used only to:
- allow the user to sign in to their account;
- configure a BlueBox controller;
- verify connection to the correct Wi-Fi network;
- communicate with a controller on the local network;
- communicate with BlueBox backend services;
- display the status of controllers, valves, and programs;
- allow the management of irrigation programs;
- improve the reliability, security, and stability of the application;
- provide technical support when requested by the user;
- protect the application, users, and services against unauthorized access.
BlueBox does not sell users’ personal data.
BlueBox does not use personal data for behavioral advertising.
6. Data sharing
BlueBox Labs does not sell users’ personal data to third parties.
Data may be shared only in the following cases:
- with BlueBox backend servers, in order to provide the service;
- with technical service providers required for hosting, security, maintenance, or operation of the application;
- when required by law, legal process, regulation, or official request;
- to protect the rights, security, and integrity of BlueBox Labs, users, or the service.
Technical service providers are allowed to use the data only to provide the services necessary for the operation of BlueBox.
7. Data security
BlueBox Labs uses reasonable technical and organizational measures to protect user data.
Communications between the application and backend services are protected using network security mechanisms, such as HTTPS when available.
However, no method of transmission over the Internet or method of electronic storage is completely secure. Therefore, BlueBox Labs cannot guarantee absolute security, but
commits to applying reasonable measures to protect user data.
8. Data retention
BlueBox Labs retains data only for as long as necessary to:
- provide the BlueBox service;
- maintain access to the user account;
- ensure the operation of controllers;
- provide technical support;
- comply with legal obligations;
- resolve disputes;
- protect the security of the service.
When data is no longer necessary, it may be deleted or anonymized.
9. Account and data deletion
The user may request deletion of their BlueBox account and associated personal data.
To request account deletion, the user may contact BlueBox Labs at:
The request must include the information necessary to identify the account, such as the phone number or email address associated with the BlueBox account.
The user may also visit the following page to request account deletion:
https://www.bluebox-labs.com/account-deletion
After receiving a valid request, BlueBox Labs will delete or anonymize the personal data associated with the account within a reasonable period of time, unless certain data must be
retained for legal, security, fraud prevention, or legitimate business reasons.
10. User choices and permission control
The user can control application permissions from the Android settings of their device.
The user may disable:
- camera permission;
- location permission;
- certain network permissions depending on system settings.
If a required permission is disabled, some features may not work correctly.
For example:
- without camera permission, QR code scanning may not work;
- without foreground location permission, some Wi-Fi network verification features may not work;
- without Internet access, the application may not communicate with BlueBox backend services.
11. Children’s privacy
BlueBox is not intended for children under the age of 13.
BlueBox Labs does not knowingly collect personal data from children under 13.
If BlueBox Labs becomes aware that personal data from a child has been collected without appropriate consent, steps will be taken to delete that information.
12. International data transfers
User data may be processed or stored on servers located outside the user’s country of residence.
By using BlueBox, the user understands that their data may be transferred to and processed in countries where BlueBox Labs or its technical service providers operate.
13. Changes to this Privacy Policy
BlueBox Labs may update this Privacy Policy from time to time.
If changes are made, the effective date at the top of this page will be updated.
Users are encouraged to review this Privacy Policy regularly.
14. Contact
For any questions about this Privacy Policy, personal data, camera permission, location permission, Wi-Fi, network access, or account deletion, please contact:
BlueBox Labs
Website: https://www.bluebox-labs.com
Email: contact@bluebox-labs.com