Privacy Policy
This Privacy Policy explains how AutoScope collects, uses, protects, and handles information in connection with its Services.
Who We Are and What This Covers
AutoScope Labs Inc. ("AutoScope," "we," "us") provides software that helps law enforcement agencies locate vehicles connected to an investigation.
This policy explains what information we collect, how we use it, and the limits we place on ourselves. It covers our website at autoscope.io, the AutoScope mobile and web applications, and the RoadHawk license plate recognition ("LPR") network (together, the "Services").
If you do not agree with this policy, do not use the Services.
What AutoScope Does Not Do
Because these distinctions matter more than most of what follows:
- We do not own or operate cameras.
- We do not install license plate readers, and we do not create new collection of any kind.
- We do not track vehicles at will.
- Live location from a connected vehicle service is available only where the vehicle's owner has authorized it, for a specific incident.
- We do not sell personal information. Not to advertisers, data brokers, or anyone else.
- We do not maintain a public database. Access is limited to authorized users at agencies we have onboarded.
Categories of Information
We handle three distinct categories, and they follow different rules.
3.1 Account and Website Information
Information you give us directly when you request access or use the site:
- Name, agency, rank or title, badge or ID number
- Agency-issued email address and phone number
- Authentication credentials and multi-factor settings
- Support correspondence
Information collected automatically when you use the Services:
- Device type, operating system, application version
- IP address and approximate network location
Log data:
- Sign-ins
- Queries run
- Records viewed
- Actions taken
We use this to operate the Services, verify that users are authorized, provide support, secure the system, and satisfy the audit obligations described below.
3.2 Owner-Authorized Vehicle Location Data
Where a vehicle owner authorizes it, AutoScope retrieves location information from the owner's connected vehicle service. This may include live GPS position, recent location history, and vehicle identifiers such as year, make, model and VIN.
The rules we apply:
- Authorization comes from the vehicle owner, not from us and not from the agency.
- The owner grants access through their own connected service credentials.
- AutoScope does not ask officers to collect or hold owner credentials.
- Authorization is tied to a specific incident. It is not a standing grant.
- Authorization can be withdrawn.
- An owner may revoke access through their connected vehicle service at any time, and an agency may deactivate a vehicle in AutoScope, which ends access.
We retain this data for [RETENTION PERIOD] after deactivation, or as long as applicable law or the agency's records policy requires, and then delete it.
3.3 License Plate Reader Data (RoadHawk)
RoadHawk lets an authorized agency search LPR data from vendor systems and partner agencies that have authorized that access. The originating agency owns its LPR data. AutoScope processes it on that agency's instructions. We do not acquire ownership by transmitting it.
We do not set retention for this data. Retention is governed by the originating agency's policy, its vendor contract, and applicable state law. When the originating record expires, it is no longer returned by RoadHawk.
Sharing is agreement-based. An agency's data is searchable by another agency only where a sharing arrangement authorizing it is in place. There is no default pooling.
Every result carries its source. Results identify the vendor system that produced the read and the agency it came from.
Query Logging and Audit
Every search of the Services is logged, including the user, the agency, the time, the query, and the purpose recorded by the user where required.
Logs are available to:
- The agency employing the user who ran the query, for supervision and audit
- The agency that shared the data queried, so it can see who accessed records it owns
- AutoScope, for security, abuse investigation, and support
We retain audit logs for [RETENTION PERIOD] or as long as applicable law requires.
How We Use Information
We use information to:
- Verify eligibility and provision access
- Operate, maintain, secure, and improve the Services
- Route alerts to users within a relevant area
- Respond to support requests
- Produce audit records and comply with legal obligations
- Communicate about service changes, outages, and releases
We do not use vehicle location data or LPR data to train machine learning models, and we do not use it for advertising or marketing of any kind.
Disclosure
We disclose information only:
- To the agency whose users generated or own it
- To partner agencies where an applicable sharing arrangement authorizes it
- To service providers who host, secure, or support the Services under written obligations no less protective than this policy
- Where legally required, in response to valid legal process, and where permitted we will notify the affected agency
- To protect rights and safety, where we reasonably believe disclosure is necessary to prevent harm or investigate abuse of the Services
- In a corporate transaction, where the Services transfer as part of a merger, acquisition, or sale of assets, subject to this policy
We do not sell personal information, and we do not share it for cross-context behavioral advertising.
Security
We maintain administrative, technical, and physical safeguards appropriate to the sensitivity of the data, including:
- Encryption in transit and at rest
- Role-based access control and multi-factor authentication
- Segmentation of agency data
- Logging of administrative and user activity
- Periodic review of access and credentials
No system is perfectly secure. Users are responsible for safeguarding their credentials and for signing out of shared devices.
Where an agency's use is subject to the FBI CJIS Security Policy, applicable CJIS requirements apply to that use and to our handling of covered data.
Restricted System Notice
The Services are a restricted information system limited to authorized users. Access is monitored and recorded.
Unauthorized access or use may result in loss of access and referral for criminal or civil action.
Data Subject Requests
Some information we handle is provided to us by agencies and is not ours to release, correct, or delete.
Where a request concerns data an agency owns, including LPR reads and case-related records, we refer the request to that agency, which is the appropriate custodian and is subject to its own public records obligations.
Where a request concerns information we hold as a business, such as an account profile or website data, contact us at [PRIVACY EMAIL] and we will respond as applicable law requires.
Vehicle owners who wish to withdraw authorization may do so through their connected vehicle service, or by contacting the agency handling the incident.
State Privacy Rights
Residents of states with consumer privacy laws, including California, Virginia, Colorado, Connecticut, and Utah, may have rights to access, correct, delete, or limit the use of personal information we hold about them, and to appeal a denial.
Section 9 explains the limits of what we can act on.
To make a request, contact [PRIVACY EMAIL].
Children
The Services are intended for use by authorized adult professionals. We do not knowingly collect information from anyone under 13.
Cookies
Our website uses cookies necessary for the site to function, and limited analytics to understand site performance.
You may restrict cookies through your browser, though parts of the site may not work as intended.
Changes
We will update this policy as the Services change. Material changes will be communicated to agency administrators.
The date at the top reflects the most recent revision.
Contact
[MAILING ADDRESS]
[PRIVACY EMAIL]
(718) 309-7403