Compliance and trust
Compliance
Pin Drop is built with privacy, security and compliance in mind. This page outlines how we handle data, permissions and access, and links to relevant policies and documentation.
We’re happy to help with security or procurement reviews.
Data ownership
Customers retain ownership of their data at all times. Pin Drop does not sell, monetise or share customer data with third parties.
Data usage
Data is only used to provide and improve the Pin Drop service, in line with our Privacy Policy.
Security
Pin Drop uses industry-standard security practices to protect customer data, including encryption in transit and at rest, access controls and regular monitoring.
Permissions
Pin Drop requests only the permissions required for the app to function, such as location access to accurately place pins, order results by distance and show nearby places.
Location data
Location data is used solely to provide core functionality and is never sold or used for advertising.
Account and data control
Users can export or delete their data and close their account at any time. Deletions are permanent and handled in accordance with our data retention policies.
GDPR
Pin Drop complies with GDPR requirements and supports user rights including access, portability and deletion.
Hosting and infrastructure
Pin Drop is hosted on Microsoft Azure, using secure, industry-standard infrastructure designed for reliability, availability and data protection.
Data location and sovereignty
By default, Pin Drop is hosted in the United States. For organisations with specific data residency or sovereignty requirements, alternative hosting regions can be discussed as part of an enterprise or organisation-level agreement.