xazi privacy policy
This policy explains how Tantrwm Ltd handles personal, account, device and operational data when you use the xazi website, administration service and player applications.
Last updated: 20 July 2026
1. Who controls your data
Tantrwm Ltd, trading as xazi, is the controller of personal data handled for its own business purposes. Where a customer uploads or manages information and media on behalf of other people, that customer may be the controller and Tantrwm Ltd may act as its processor.
Privacy enquiries can be sent to support@xazi.co.uk.
2. Data we collect
- Account and organisation information: names, business names, email addresses, roles, authentication records and account preferences.
- Player and device information: a generated device identifier, hostname, platform and browser details, processor/core information, display dimensions, app version, IP address and device-registration status.
- Service and playback information: schedules, player status, connectivity, playback events, errors, audit records and security events.
- Customer content: media, playlists, logos and schedules uploaded or configured by authorised users.
- Billing information: plan, subscription, invoice and transaction references. Payment-card details are handled by Stripe and are not stored by xazi.
- Communications: support requests, feedback and other correspondence.
3. How and why we use data
We use this information to provide and secure the service, register and authenticate players, deliver scheduled content, administer accounts and subscriptions, provide support, diagnose faults, prevent abuse, keep legally required records and improve service reliability.
Our legal bases under UK data-protection law are performance of our contract, our legitimate interests in operating and securing xazi, compliance with legal obligations and consent where the law requires it.
4. Android player data
The xazi Android player sends its generated device identifier, technical device details, IP address and operational status to xazi over encrypted HTTPS or secure WebSocket connections. This is necessary to pair the display with an organisation, authenticate it, deliver assigned content and provide security and support.
The player stores its device identifier and device API credential in app-private storage. Android backup is disabled. The player does not request access to location, contacts, camera, microphone, call records, SMS or shared device storage.
When visual proof is enabled, the player periodically captures its own rendered signage window and uploads the latest image securely. This may contain customer-provided signage content. Images are available only to authenticated users in the same organisation, and each new image replaces the previous one.
5. Sharing and service providers
We do not sell personal or sensitive data. We disclose data only where necessary to service providers supporting hosting, infrastructure, payment processing, email delivery, security, malware scanning, backup, professional advice or legal compliance. Providers may use the data only to deliver their contracted service or meet legal duties.
Stripe independently handles payment information under its own privacy terms. Customer-provided signage content is shown only on players and previews authorised for that customer, except where disclosure is legally required.
6. International transfers
Some service providers may process data outside the United Kingdom. Where required, we use an adequacy decision, the UK International Data Transfer Agreement or Addendum, or another lawful safeguard.
7. Security
Controls include encrypted transport, tenant separation, role-based access, password hashing, multi-factor authentication support, session controls, device approval, hashed server-side player credentials, audit logging, upload validation, malware scanning and managed backups. No internet service can guarantee absolute security.
8. Retention and deletion
- Account, organisation, player and customer-content data is kept while the service is active and is deleted or anonymised when an authorised deletion completes, except where retention is legally required.
- Account deletion is subject to the stated 30-day safety period and any remaining paid service period. See Delete an account.
- Security, audit and operational records are retained only for the period reasonably needed to protect, support and evidence operation of the service.
- Invoice, transaction and tax records may be retained for up to seven years where required by law.
- Deleted data may remain temporarily in access-restricted backups until those backups expire through the normal rotation cycle. Backups are used only for continuity and disaster recovery.
9. Your rights
Depending on the law that applies, you may request access, correction, deletion, restriction, portability or objection, and may withdraw consent where processing relies on consent. You may also complain to the UK Information Commissioner's Office at ico.org.uk.
10. Children
xazi is a business digital-signage service and is not directed to children. Customers must not use the service to collect children's personal data without an appropriate lawful basis and safeguards.
11. Changes
We may update this policy when the service or legal requirements change. The current version and its revision date will remain available on this page.
12. Contact
Contact Tantrwm Ltd about privacy or data protection at support@xazi.co.uk.