Privacy Policy
This Privacy Policy describes how Solyara (operating at mkayara.biz) collects, uses, discloses and stores personal data in connection with our AI smart devices and companion services. The policy applies to visitors, device users and customers. The following sections explain the types of information we process, the purposes for processing, retention practices, third-party sharing and the choices available to users. Contact details for Solyara are provided for questions and requests.
Definitions
This section sets out the main terms used throughout the Privacy Policy to describe data types, roles and technical concepts relevant to Solyara devices and services.
- Personal data refers to any information that identifies or can reasonably identify an individual. Examples include name, email address, postal address, phone number, device identifiers, network addresses, billing details, voice recordings, images captured by devices and usage records.
- Processing means any operation performed on personal data, whether automated or manual, such as collection, storage, retrieval, transfer, anonymization, analysis and deletion necessary to provide and improve our services.
- User refers to any individual who registers an account with Solyara, operates a Solyara device, uses the companion app or interacts with our services, whether as an owner, household member or guest.
- Service refers to the Solyara product ecosystem, including AI-enabled devices marketed under the Solyara brand, cloud services hosted at mkayara.biz, companion mobile and web applications, firmware updates and customer support channels.
- Cookies and similar technologies are small data files or identifiers stored on a device to enable website functionality, remember preferences, and collect analytics. They may be set by Solyara or by third parties on our behalf.
We collect data that users provide directly and data collected automatically from devices and apps. Scope and retention depend on the purpose of collection and applicable legal requirements.
Data you provide
When you set up a Solyara account or use our support services, you may provide the following types of information which help us operate your device and respond to requests.
- Account and contact information: name, email address, postal address and telephone number for billing and notifications.
- Device setup and configuration: Wi‑Fi network information, device name, room assignments and user preferences.
- Voice commands and textual inputs submitted during interaction with voice-enabled features, when enabled by the user.
- Media you upload: photos or videos captured or submitted for device features, subject to explicit consent where required.
- Payment and billing details submitted for purchases or subscriptions, processed by third‑party payment providers.
- Communications with support: email, chat transcripts and diagnostic information shared to resolve issues.
Data collected automatically
Some data is collected automatically while devices and companion services operate. This data supports device performance, security and service improvement.
- Device identifiers and model information, serial numbers and firmware versions.
- Usage logs and telemetry such as feature usage, command success/failure rates and interaction timestamps.
- Network and connectivity data including IP address, signal strength and local network diagnostics.
- Sensor data necessary for device functions, such as motion, ambient light or temperature readings, processed according to the device’s configuration.
- Location data when enabled: approximate location required for certain features, collected only if the user activates location services.
- Cookies, pixel tags and similar identifiers used on our websites and applications for functionality and analytics.
Data from third parties
We may receive information about you from partners and service providers to support service delivery, payment processing and integrations with third-party platforms.
- Cloud hosting and infrastructure providers that store or transmit data on our behalf.
- Payment processors and billing partners providing transaction services.
- Authorized integration partners such as smart home platforms where users link accounts or enable interoperability.
Purposes of processing
We process personal data for a limited set of purposes necessary to operate devices, deliver services, maintain security and comply with legal obligations. Each processing activity is mapped to a specific purpose.
- To operate and maintain Solyara devices and related cloud services, including authentication, firmware updates and remote diagnostics.
- To provide customer support and respond to inquiries, troubleshooting requests and warranty claims.
- To analyze usage patterns and performance metrics to improve device reliability and user experience, using aggregated or de‑identified data where practical.
- To enable personalization features, such as routines and recommendations based on device settings and explicit user preferences.
- To detect, prevent and contribute security incidents, fraud or misuse of our services.
- To process orders, payments and manage billing and delivery logistics in connection with purchases and subscriptions.
- To comply with applicable laws and regulatory requests and to defend legal claims when required.
- For marketing communications only where users have provided consent or where permitted by law, and offering clear opt-out mechanisms.
Legal basis for processing
Where required by law, we identify the legal bases for processing personal data. These bases may vary depending on the user’s jurisdiction and the specific processing activity.
- Performance of a contract: processing necessary to provide the products and services requested by the user, such as device operation and customer support.
- Consent: where users explicitly agree to processing for optional features, marketing communications or the processing of sensitive categories of data.
- Legitimate interests: limited internal uses such as fraud detection, security, and service improvement, balanced against user rights and expectations.
- Legal obligation: processing required to comply with laws, court orders or government requests.
Rights under GDPR and similar laws
If you are located in the European Economic Area, United Kingdom or other jurisdictions with comparable rules, you may have additional rights regarding your personal data. We describe common rights below and how to exercise them.
- Right of access: you can request a copy of personal data we hold about you and information about processing.
- Right to rectification: you may request correction of inaccurate or incomplete personal data.
- Right to erasure: subject to legal and contractual limits, you can request deletion of personal data we process about you.
- Right to restriction: you may ask to limit processing in certain circumstances, for example while a dispute is resolved.
- Right to data portability: where applicable, you can request a machine-readable copy of data you provided to us.
- Right to object: you can object to processing based on legitimate interests or direct marketing; we will respect choices in accordance with applicable law.
Cookies and similar technologies
We use cookies and related tools on our websites and apps to support core functionality, remember preferences and gather analytics to improve our services.
Types of technologies used include session cookies, persistent cookies, local storage and web beacons. Some cookies are essential for site operation, while others support analytics and optional features.
We classify cookies as strictly necessary, performance and analytics, functional and marketing. Advertising cookies are used only with consent where required by law.
You can manage cookie preferences through your browser or device settings and via consent controls presented on our website. Disabling certain cookies may affect functionality.
View our Cookie Policy for details
Data sharing
Solyara shares data only in ways that support the purposes described in this policy, and with safeguards to protect personal data. Below are typical categories of recipients.
- Internal teams and affiliates that require access to carry out services such as device operations, billing and support.
- Service providers and vendors, including cloud hosts, analytics providers and payment processors acting under contract and confidentiality obligations.
- Integration partners when you enable account linkages with third-party platforms or smart home ecosystems.
- Legal and regulatory authorities when disclosure is necessary to comply with legal obligations, court orders or to protect safety.
- Potential buyers or partners in the event of a business transfer, merger or acquisition, with confidentiality protections applied.
- Aggregated or anonymized data that no longer identifies individuals and may be shared publicly for research and product improvement.
International transfers
Data may be stored and processed in jurisdictions outside Singapore where our service providers operate. Such transfers are necessary to provide the service and may involve countries with different data protection laws.
When transferring data internationally, we apply safeguards such as contractual data protection terms, encryption and vendor due diligence to maintain an adequate level of protection.
Data retention
We retain personal data only as long as necessary for the purposes described, consistent with legal, regulatory and contractual obligations. Retention periods vary by category of data and purpose.
Account information is retained for the duration of the account and for a reasonable period afterward to comply with record‑keeping obligations and to address disputes; retention periods may extend up to seven years where required by law.
Support communications, chat logs and user-submitted diagnostic data are typically retained for a defined period to enable effective support and quality assurance, commonly up to 12 months unless longer retention is justified.
Security and access logs are retained for operational and security purposes. Typical retention ranges between 6 and 24 months depending on the log type and legal requirements.
When data is no longer required, we delete or anonymize it in accordance with our data retention schedules. Deletion requests are subject to verification and legal constraints.
Security
Solyara implements technical and organizational measures to protect personal data against unauthorized access, alteration, disclosure and destruction. Measures are regularly reviewed and updated to reflect changes in technology and risk.
- Encryption in transit using industry-standard TLS and encryption at rest for sensitive data where practical.
- Access controls and role-based permissions to limit data access to authorized personnel on a need-to-know basis.
- Regular security assessments, patch management and monitoring to detect and respond to incidents promptly.
Your rights and choices
You may exercise rights such as access, correction, deletion and objection where applicable. We verify requests to protect privacy and may need to retain certain information to comply with legal obligations or to operate devices.
- To exercise your rights or for privacy inquiries, contact [email protected] or write to Solyara, 1 Jalan Dusun, Singapore, 329363. We aim to respond to verified requests within the timeframes required by applicable law.
- Access: You may request a copy of personal data that Solyara holds about you, subject to applicable exceptions and verification of identity.
- Correction: If your personal data is inaccurate or incomplete, you may request correction so that records reflect current information.
- Deletion: Where retention is no longer necessary or permitted by law, you may request deletion of personal data, subject to legal or contractual retention obligations.
- Restriction: You may ask us to restrict processing of your personal data in certain circumstances, for example while we verify a dispute about accuracy.
- Data portability: To the extent applicable law allows, you may request a machine-readable copy of personal data you provided to Solyara for transfer to another provider.
- Objection: You may object to certain processing activities, such as processing for direct marketing purposes, where applicable under law.
- Withdraw consent: If processing is based on consent, you may withdraw that consent at any time; withdrawal will not affect processing that occurred prior to withdrawal.
How to exercise your rights
To exercise any of the rights listed above, submit a request to our privacy contact with sufficient detail to locate the relevant records. We may need to verify your identity before fulfilling requests. Include your full name, email, mailing address, and a clear description of the data or action requested.
We aim to respond to valid requests within a reasonable period consistent with applicable law. Typical response time is 30 days from receipt of a complete request; where more time is permitted by law, we will notify you and explain the reason for the extension.
Marketing communications
Solyara may use contact data to send service-related updates and information about products and services relevant to AI smart devices. Marketing communications are based on consent or legitimate interest as permitted by law. Content will be relevant and limited to topics such as device updates, safety notices, and technical support information.
You can opt out of promotional emails using the unsubscribe link included in each marketing message or by contacting our privacy team. Unsubscribing from marketing will not prevent service-related notices or messages necessary for device operation and safety.
Children's data
Solyara does not knowingly collect personal data from children under 13 without parental consent. If we become aware that we have collected personal data from a child without required consent, we will take steps to delete that data. Parents or guardians who believe we have collected their child's information may contact us to request deletion.
Links to third-party sites
Our website and product interfaces may include links to third-party websites, services, or content. Solyara is not responsible for the privacy practices or content of third parties. Review third-party privacy policies before providing personal data to those services.
Changes to this privacy notice
We may update this privacy notice to reflect changes in our practices, legal requirements, or product functionality. Material changes will be posted on our website with an updated effective date. Users are encouraged to review this notice periodically to stay informed about how we handle personal data.
Contact information
For privacy inquiries, data access requests, or concerns, contact Solyara at: 1 Jalan Dusun, Singapore, 329363; email: [email protected]; phone: +6582354101. Business ID: S9863902A. We process inquiries in accordance with applicable Singapore data protection laws.
- +6582354101
- [email protected]
- 1 Jalan Dusun, Singapore, 329363