Legal
Privacy Policy
Last updated: May 2026
We will archive prior versions of this Privacy Notice on this page when material changes are made.
About this Privacy Notice
This Privacy Notice is meant to give you information about what personal data we collect about you, how we use it, why we use it, and how you control the data processing.
1. The Basics
1.1. Who We Are
1.1.1. Opera Security Ltd. offers an information website. Our offices are located at 82 Yigal Alon, Tel Aviv, and our registration number is 515814770.
1.1.2. If you have questions about our company or your privacy, or want to exercise your rights, you can contact us at info@operasecurity.io.
1.2. Our Role: Controller and Processor
Certain data protection laws, including the laws in the EU, differentiate between a party that determines why and how personal data is processed (called a "controller") and a party that processes personal data solely on the controller's behalf and according to the controller's instructions (called a "processor"). We are the controller in respect of the processing described in this Privacy Notice.
1.3. Definitions and Recommendations
1.3.1. When we refer to "Site", we mean our website available at https://www.operasecurity.io/.
1.3.2. When we refer to "personal data", we mean information that is defined as personal data under law. This includes information that identifies you directly or indirectly, including unique identifiers like IP addresses or cookie IDs.
1.3.3. When we refer to "you", we mean visitors to our Site.
1.3.4. This Privacy Notice is meant to be read together with our Terms of Service, which you can find at https://www.operasecurity.io/terms. In general, we recommend that you routinely review this privacy notice and your preferences on our Site.
1.4. A Note on Legal Bases
Certain jurisdictions only allow the processing of personal data where a legal basis has been established. Under the EU's General Data Protection Regulation ("GDPR"), the possible legal bases include (but are not limited to): your consent, the processing being necessary to perform a contract with you, the processing being necessary to fulfill our legal obligations, or a company having a legitimate business interest to process your personal data. Where we are a controller, we only collect and process data where we have established a legal basis. Below you can find more details about specific legal bases.
2. Personal Data We Collect, How We Use It, and Why
Below is a description of the types of personal data we collect, how we use it, and the reason why we consider each use lawful. You have no legal obligation to provide us with personal data, but if you don't provide us with certain information, we may not be able to provide you with the associated services.
2.1. Website Visitors
When you visit our Site, we may collect the following types of data about you.
2.1.1. Contact Form Information
When you send us a message through the contact form on our Site, we collect any data you provide, such as your name, company, job title, email, work email, phone number, and the content of your message. When you sign up for our newsletters and/or mailing list, we collect your email address.
How We Use This Data: To respond to your message and to provide you with informational newsletters about our products and services.
Legal Basis: We process this personal data based on the performance of a contract with you. Processing your personal data to share our newsletters and/or promotional materials with you is based on our legitimate interest to promote our products and services and, in some cases (based on the jurisdiction in which you are located), based on your consent, in which case you may withdraw your consent at any time by emailing us at info@operasecurity.io.
2.1.2. Activity and System Data (Cookies)
When you visit our Site, we automatically collect data about your computer or mobile device, including personal data such as your IP address, device ID, browsing history, and your activity on our Site.
How We Use This Data: We mainly use this data to generate aggregated analytics data about the use of our Site so we can maintain and improve it. We also use statistical data to prevent fraud and protect the security of our Site.
Legal Basis: We process this personal data based on our legitimate interests to develop and improve our products and services, and to prevent fraud.
2.2. Visitors to Our Social Media Pages
When you engage with our social media outlets, such as when you post on our LinkedIn page, like or re-share our posts, answer surveys, or similar activities, we collect the personal data you provide, such as the content of your post and the information available to us through your profile or account.
How We Use This Data: We may use this information to engage with you or respond to your posts and comments, to analyze the effectiveness of our social media efforts and improve how we manage them, and for marketing purposes.
Legal Basis: When we process your personal data to engage with you, we do so on the basis of our legitimate interest to engage with and serve our audiences in an effective manner.
3. Our Marketing Activities
As described above, we may use personal data we collect for advertising and marketing purposes. We try to limit the marketing material we send to a reasonable and proportionate level and frequency.
3.1. Email Marketing and Service Communications
3.1.1. We use your contact details to send you informational newsletters and other marketing material about our products and services if you have provided your consent. You may withdraw your consent at any time by emailing us at info@operasecurity.io.
3.1.2. You can stop the delivery of all marketing emails by following the "unsubscribe" link in any messages we send you.
3.2. Web Ads
3.2.1. We serve online ads based on the activity data we collect using cookies. You can change the way your browser manages cookies by adjusting the settings on your browser as explained below in the How to Adjust Your Preferences section.
3.2.2. We may also use social media plugins, such as the LinkedIn or Facebook plugins, which will allow social media platforms to link personal data collected through our Site with personal data in your social media profile.
3.3. Mobile Ads
Each mobile device is given a unique string of letters and numbers called a "Device ID." We use Device IDs to serve you with ads. Device IDs can be used to track which apps were downloaded by the particular device, as well as in-app activity on that device.
4. Sharing the Personal Data We Collect
We share your personal data as follows:
4.1. Affiliates
We share your personal data with our affiliated companies, such as Opera Security Inc., where this is necessary to provide you with our products and services and so that we can manage our business.
4.2. Service Providers
Below is a list of the types of service providers we use, the service each provides, and the types of data shared with each.
All service providers have agreed to confidentiality restrictions and have undertaken to use your personal data solely as we direct.
| Type of Services | Description | Personal Data Shared |
|---|---|---|
| Cloud Computing | We use service providers that offer cloud computing services. They offer us space on their servers for us to store our files and programs, including your personal data. | All personal data that we collect from you is stored on third-party servers. |
| Customer Relationship Management (CRM) | We use an external CRM tool to help us keep track of our customers and information related to them, including their personal data. | Your name, company, position, email address, and phone number. |
| Analytics and SEO Providers | We use a service provider to assist us with analytics services, including search engine optimization. | Data collected automatically through our Site, including IP addresses and cookie information. |
| Online Advertising | External service providers assist us in placement of online advertisements. | Data collected automatically through our Site, including IP addresses and cookie information. |
| Public Relations Providers | External service providers assist us with public relations. | Your name, company, position, email address, and phone number. |
4.3. Ads
When you click on an ad, the relevant advertiser will be alerted that someone has visited the page on which the relevant advertisement was displayed. We share personal data with advertisers who collect data through our Site with your consent.
4.4. Change of Ownership
If we are looking to sell our company, liquidate assets, or merge with another, we may share your personal data with other interested parties as part of negotiations toward that transaction. Your personal data shall continue to be subject to the provisions of this Privacy Notice.
4.5. Law Enforcement Related Disclosure
We may share your personal data with government agencies or other relevant parties: (i) if we believe that such disclosure is appropriate to protect our rights, property, or safety; (ii) if required by law or court order; or (iii) as is necessary to comply with any legal and/or regulatory obligations.
5. International Transfers
Some of our service providers and affiliates are located in countries other than your own. When we transfer your personal data internationally, we will do so safely and securely and in accordance with applicable law.
5.1. Transfers from the EU
5.1.1. When we transfer your personal data to Israel, we rely on the decision by the European Commission that says that this country is considered to provide an adequate level of data protection.
5.1.2. Where we transfer your personal data to other countries, we (i) take additional security measures to protect the data and (ii) use the Standard Contractual Clauses to give your personal data the same protection it has in the EEA.
5.1.3. Please contact us at info@operasecurity.io if you would like further information on the specific mechanism used by us when transferring your personal data out of the EEA.
6. Security
The security of your personal data is our highest priority. We work hard to make sure that your personal data will be held securely and that it will not be shared or lost accidentally. The measures we take include:
6.1. Technical Measures
The electronic safeguards we employ to protect your personal data include secure servers, firewalls, and antivirus protections. We encrypt data in transit using secure HTTPS protocols.
6.2. Access Control
We limit access to your personal data only to authorized personnel who have a need to know, including account managers, customer support staff, and software developers. We review these permissions regularly and revoke an employee's access immediately after their termination.
6.3. Internal Policies
We maintain and regularly review and update our privacy-related and information security policies.
6.4. Personnel
We require employees to sign non-disclosure agreements according to applicable law and industry customary practice.
6.5. Standards and Certifications
We have been certified as compliant with ISO 27001 (Information Security Management).
6.6. Database Backup
Our databases are backed up and verified regularly.
7. Your Rights, How to Control Our Use of Your Personal Data
Depending on which laws apply, you have certain legal rights over your data. To exercise your rights, please contact us at info@operasecurity.io. We may ask for reasonable evidence to verify your identity before we can comply with any request.
7.1. Right of Access
You may have a right to know what personal data we collect about you. We may charge you with a fee to provide you with this information, if permitted by law. See Article 15 of the GDPR for more details, if your personal data is subject to GDPR.
7.2. Right to Correct Personal Data
You may request that we update, complete, correct, or delete inaccurate, incomplete, or outdated personal data. See Article 16 of the GDPR for more details, if your personal data is subject to GDPR.
7.3. Deletion of Personal Data (“Right to Be Forgotten”)
If you are located in the EU, you may have the right to request that we delete your personal data. Note that we cannot restore information once it has been deleted. See Article 17 of the GDPR for more details, if your personal data is subject to GDPR.
7.4. Right to Restrict Processing
If you are located in the EU, you may have the right to ask us to stop processing your personal data. See Article 18 of the GDPR for more details.
7.5. Right to Data Portability
If you are located in the EU, you may have the right to request that we provide you with a copy of the personal data you provided to us in a structured, commonly used, and machine-readable format. See Article 20 of the GDPR for more details.
7.6. Right to Object
If you are located in the EU, you may have the right to object to certain processing activities. See Article 21 of the GDPR for more details.
7.7. Withdrawal of Consent
If we are processing your data based on your consent, you are always free to withdraw your consent; however, this won't affect processing we have done from before you withdrew your consent.
7.8. Right to Lodge a Complaint
If you are located in the EU, you have the right to submit a complaint to the relevant data protection authority if you have any concerns about how we are processing your personal data, though we ask that as a courtesy you please attempt to resolve any issues with us first.
7.9. Automated Decision-Making
We do not use your personal data for automated decision-making or profiling that produces legal effects concerning you or similarly significantly affects you.
8. Data Retention
8.1. We retain your personal data as long as necessary to fulfill each of the purposes we described above. Subject to the provisions in the sections below, once we're done with your data, we delete it.
8.2. When deciding how long to store personal data, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorized access, the purposes for which the personal data was collected, as well as applicable legal requirements.
8.3. In some circumstances, we may store your personal data even after we're finished using it if required to do so by law (e.g., to fulfill tax or audit requirements), or to keep accurate records of our interactions in case there is a prospect of litigation relating to your personal data.
8.4. Please contact us at info@operasecurity.io if you would like details about the retention periods for each type of personal data we process.
9. Cookies and Similar Technologies
9.1. What are Cookies?
A cookie is a small piece of text that is sent to your browser by a website you visit. There are other technologies that act similarly, like web beacons, pixel tags, and Device IDs for apps, but for simplicity's sake we'll refer to them all as "cookies".
9.2. First-Party and Third-Party Cookies
Websites can place their own cookies (called "first-party cookies") but can also place cookies from other sites (called "third-party cookies"). We may place both first- and third-party cookies on our Site.
9.3. How We Use Cookies
While the specific names and types of cookies we use may change from time to time, they generally fall into one of the categories listed below.
| Cookie Type | Function |
|---|---|
| Necessary | These cookies allow the Site to work correctly. They enable your access to the Site, allow you to move around, and access different services, features, and tools. These cookies cannot be disabled. |
| Preferences | These cookies remember your settings, preferences, and other choices you make in order to help personalize and streamline your experience. |
| Statistics | These cookies collect analytical information to help us understand how you use our Site, for example, whether you have viewed messages, clicked on links, and how long you spent on each page. |
| Marketing | These cookies help advertisers show you ads. When we place advertising cookies, they help us track the efficiency of our advertising campaigns. |
9.4. Third-Party Cookies
In addition to our first-party cookies, we place cookies from certain third parties in connection with marketing.
9.5. How to Adjust Your Preferences
Most web browsers are initially configured to accept cookies, but you can change the settings so your browser refuses all cookies or certain types of cookies. Please note that some features of the services may not function properly when cookies are disabled or removed.
9.6. Mobile Ad Identifier Settings
By changing your device settings, you can prevent your device's ad identifier being used for interest-based advertising, or you can reset your device's ad identifier. Adjusting your preferences does not mean you will no longer receive ads; it only means the ads that you do see may be less relevant to your interests.
10. Third-Party Services
You may have access to third-party services through our services. Please note that all use of third-party services is at your own risk and subject to such third party's terms and privacy policies. We do not take any responsibility for the performance of other services.
11. Children
We do not knowingly collect personal data from children under the age of sixteen (16). In the event that you become aware that an individual under the age of sixteen (16) has provided us with information without parental permission, please advise us immediately at info@operasecurity.io.
12. Changes to the Privacy Notice
We may update this Privacy Notice from time to time to keep it up to date with legal requirements and the way we operate our business. We will place any updates on this webpage. Please come back to this page every now and then to make sure you are familiar with the latest version.