Política de privacidad de Commvault
Commvault Systems, Inc. and its affiliates and subsidiaries (collectively, “Commvault” “us” “we”) prioritize your data privacy and security. Our Solutions empower you to control the collection, use, and processing of your data. Any data collected, used, or shared on a limited basis as a result of your use of our Solutions, Websites, or Portals (as defined herein) will be in accordance with this “Privacy Policy”.
Qué datos recopilamos
We are provided with data when our products and services (together, the “Solutions”) and our websites or portals (either, “Websites” or “Portals”) are purchased, used, or accessed.
Tipos de datos
Data that identifies, or can reasonably be used to identify, a person or household, either directly or indirectly (“Personal Data”) including:
- Nombre y datos de contacto profesionales (dirección de correo electrónico, dirección postal, número de teléfono, cargo, empresa)
- Datos almacenados protegidos por nuestras Soluciones
- Datos transaccionales necesarios para que podamos realizar y recibir pagos y prestar las Soluciones
- Información que se nos facilita al rellenar formularios en nuestros sitios web o portales, al participar en una promoción o encuesta, al suscribirse, comentar o descargar información de nuestros sitios web o portales, o a través de solicitudes de empleo
- Datos de selección de personal, en la medida en que lo permita la ley, incluyendo estado civil, fecha de nacimiento, datos de contacto personales, número de identificación nacional, información sobre inmigración, permiso de conducir, idiomas que se hablan, datos de contacto de familiares más cercanos, personas a cargo o de emergencia, detalles sobre cualquier discapacidad, currículos y CV, datos de entrevistas y evaluaciones, información de investigación y verificación (p. ej., historial crediticio, formación académica, sanciones financieras y comprobación de antecedentes), el resultado de su solicitud, los detalles de la oferta de empleo y otros datos informales (p. ej., opiniones generadas durante el proceso de selección)
- Comportamiento y preferencias en línea recopilados a través de cookies y otras tecnologías de seguimiento
- Datos técnicos, incluidos identificadores electrónicos, derechos de licencia, direcciones IP, tipo de nombres de dominio y sistemas operativos, registros, marcas de tiempo de las actividades de uso, métricas de modificación y autenticación de la cuenta, identificador del dispositivo, datos de geolocalización, tipo de navegador e idioma, horas de acceso, contraseñas cifradas y preguntas de seguridad, historial de la cuenta y otros identificadores únicos
- Información demográfica, como su edad, sexo, país, intereses y preferencias, incluidas las preferencias relacionadas con el marketing y las comunicaciones
- Datos audiovisuales, cuando proceda y esté legalmente permitido, incluidas las grabaciones de las cámaras de seguridad de nuestras oficinas o las grabaciones de llamadas
Por qué utilizamos los datos
Commvault utiliza los datos, incluidos los datos personales, para diversos fines, entre los que se incluyen:
- La prestación y optimización de nuestras soluciones
- Ofrecer la mejor asistencia técnica para nuestras soluciones
- Optimizar y personalizar la experiencia del usuario
- Fines de seguridad, auditoría y marketing
- Tramitación de pagos, facturación y cobros
- Prácticas de selección y contratación
- Análisis empresarial
- Comunicaciones sobre nuestras soluciones, como notificaciones de renovación o eventos
- Con su consentimiento y si tenemos la intención de utilizar sus datos para fines que excedan el ámbito de aplicación de la presente Política de privacidad, o de cualquier otro fundamento jurídico aplicable, le pediremos su consentimiento
- Cuando sea necesario para ejecutar o hacer cumplir un contrato o para cumplir con la ley
- Nuestros intereses comerciales legítimos, por ejemplo, la mejora de nuestras soluciones. Antes de llevar a cabo dichas acciones, realizamos una evaluación para asegurarnos de que nuestros intereses no prevalezcan sobre sus derechos de privacidad de datos
En la medida en que lo permita la legislación aplicable, Commvault podrá utilizar, tratar, transferir y compartir sus datos de forma anónima, automatizada y agregada. Podremos combinar dichos datos con otra información recopilada, incluida la procedente de fuentes de terceros. Al utilizar las Soluciones, usted reconoce que podemos recopilar, utilizar, compartir y almacenar datos anonimizados y agregados con fines de evaluación comparativa, análisis, métricas, investigación, elaboración de informes, aprendizaje automático y otros fines comerciales legítimos.
Cómo utilizamos las cookies, las balizas web y otras tecnologías
Our Websites and Portals use cookies, web beacons, and other similar technologies to improve the user experience. Cookies are small text files placed on a computer by a web server when browsing online and are used to store user preference data so a web server doesn’t have to repeatedly request this information. You can review and modify your cookie preferences by clicking on ‘Cookie Preferences’ at the footer of the page. However, you may not be able to access all or parts of our Solutions, Websites, or Portals if you block certain cookies. A web beacon is a small pixel incorporated into a web page or email to keep track of activity on the page or email and helps us manage the content of our Websites by informing us of what content is effective. For additional details on how Commvault uses cookies and other technologies, please refer to our Aviso sobre cookies.
Cómo utilizamos las tecnologías de IA generativa
Commvault emplea tecnologías de IA generativa para mejorar las operaciones internas y nuestras soluciones. A nivel interno, utilizamos la IA generativa para transcribir notas de reuniones y conclusiones, resumir debates e identificar medidas a tomar con el fin de mejorar la eficiencia. También aprovechamos la IA generativa para facilitar la creación de contenidos, incluida la documentación técnica, los artículos de la base de conocimientos y los materiales de soporte de productos, con el fin de garantizar la coaquíncia y la precisión. Dentro de nuestras soluciones, la IA generativa impulsa Features como Arlie, nuestro asistente de IA, que ofrece resolución de problemas en tiempo real y soluciones a fallos operativos, asistencia en la automatización y orientación adaptada al contexto para mejorar la experiencia del usuario y la eficiencia operativa. Commvault no utiliza datos de clientes para entrenar modelos de IA generativa. Cualquier dato procesado dentro de estas capacidades basadas en IA se gestiona en estricto cumplimiento de nuestras políticas de protección de datos y de la normativa de privacidad aplicable, con el fin de garantizar la seguridad, la transparencia y el control por parte del usuario.
No rastrear
Commvault does not change its practices in response to No rastrear signals from web browsers.
When & Why We Share Your Personal Data
We do not and will not sell Personal Data to marketers or other vendors and we do not access the data protected by our Solutions for marketing or other purposes outside the scope of our Commvault’s Master Terms & Conditions and the applicable Acuerdos sobre datos. Commvault may share data in the following categories: identifiers, customer records information, commercial information, internet or other network or device activity, and geolocation data. Commvault may share data or categories of data for the reasons set forth aquíin with:
- Commvault Affiliates. Commvault may share data with its affiliates waquí necessary for administrative purposes or to deliver our Solutions.
- Partners. Partners provide us with theirs and their customers’ data as part of marketing, sale and delivery of the Solutions. Partner represents and warrants they have authorization or the required legal basis to obtain and share such data, including Personal Data, with us
- Contractors and Service Providers. Commvault may share data, including Personal Data, with contracted third-party service providers (“Service Providers”). These Service Providers include business partners, payment services, advertising networks, IT and security service providers, auditors and consultants, customer survey companies, staffing and recruiting agencies, and cloud solutions and storage providers. Service Providers with whom we share Personal Data are contractually bound to use and disclose such Personal Data only for the permitted purposes and to provide the same level of protections as required by the relevant Data Privacy Framework (including onward transfer provisions). We require all our Service Providers to use reasonable security measures to protect Personal Data from unauthorized access and use.
- Legal Purposes. Commvault may share data, including Personal Data, as necessary to comply with applicable laws, court orders, governmental agencies
,or other lawful requests by public authorities, and to protect our security or integrity and that of our customers and partners, or to take precautions against legal liability. - Sale. In the event of a merger, consolidation, or acquisition of all, substantially all or a portion of Commvault’s business or assets, you acknowledge and agree that data may be securely shared, disclosed, and transferred to such successor or assignee.
Conservación de datos
Podemos conservar los datos, incluidos los datos personales, durante el tiempo que sea necesario para prestar las Soluciones o según sea necesario para otros fines legítimos. Cuando sus datos ya no sean necesarios, nos aseguramos de que se destruyan de forma segura. Podemos conservar datos anonimizados o agregados de forma indefinida o en la medida en que lo permita la legislación aplicable.
Gestión global de datos
Commvault Systems, Inc. is located in the U.S. and has global offices. We act as: (i) a data controller when we collect and process Personal Data for our legitimate business interests, and (ii) a data processor when we provide certain of our Solutions to you as the data controller, joint-data controller, or joint-data processor. Commvault Systems International BV located at Papendorpseweg 75-79, 3528 BJ Utrecht, Netherlands serves as our main establishment for the European Union (“E.U.”). Commvault manages your data in compliance with the E.U.’s General Data Protection Regulation (“GDPR”) and other applicable data privacy and security laws. By using the Solutions, Websites or Portals or by providing Personal Data to us, you acknowledge that Personal Data may be sent to and processed in countries outside your country of residence. For individuals residing in the European Economic Area (“EEA”) and for Personal Data subject to GDPR, this may include transfers outside of the EEA. Some of these countries may not have data protection laws that provide an equivalent level of data protection as the laws in your country of residence, however we take steps to ensure Personal Data is handled in accordance with this al Data subject to GDPR, this may include transfers outside of the EEA. Some of these countries may not have data protection laws that provide an equivalent level of data protection as the laws in your country of residence, however we take steps to ensure Personal Data is handled in accordance with this Privacy Policy and all applicable laws. Commvault transfers data from the EEA pursuant to Standard Contractual Clauses, as approved by the European Commission (Art. 46 GDPR). If you are located in the EEA and would like to execute Standard Contractual Clauses with Commvault, please visit Acuerdos sobre datos.
Declaraciones de cumplimiento del Marco de Privacidad de Datos
To learn more about Data Privacy Frameworks (“DPF”) program in detail, please visit https://www.dataprivacyframework.gov.
Commvault cumple con el Marco de Privacidad de Datos UE-EE. UU. (EU-U.S. DPF), la Extensión del Reino Unido al EU-U.S. DPF y el Marco de Privacidad de Datos Suiza-EE. UU. (Swiss-U.S. DPF), tal y como los establece el Departamento de Comercio de EE. UU. Commvault ha certificado ante el Departamento de Comercio de EE. UU. que se adhiere a los Principios del Marco de Privacidad de Datos UE-EE. UU. (Principios del EU-U.S. DPF) en lo que respecta al tratamiento de datos personales recibidos de la Unión Europea al amparo del EU-U.S. DPF y del Reino Unido (y Gibraltar) al amparo de la Extensión del Reino Unido al EU-U.S. DPF. Commvault ha certificado ante el Departamento de Comercio de EE. UU. que se adhiere a los Principios del Marco de Protección de Datos Suiza-EE. UU. (Principios del DPF Suiza-EE. UU.) en lo que respecta al tratamiento de los datos personales recibidos de Suiza en virtud del DPF Suiza-EE. UU. En caso de conflicto entre los términos de la presente política de privacidad y los Principios del Marco de Protección de Datos UE-EE. UU. y/o los Principios del Marco de Protección de Datos Suiza-EE. UU., prevalecerán dichos Principios.
The Federal Trade Commission has jurisdiction over Commvault’s compliance with the EU-U.S. Data Privacy Framework (EU-U.S. DPF) and, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF).
En cumplimiento del Marco de Protección de Datos UE-EE. UU. (EU-U.S. DPF), de la Extensión del Reino Unido al Marco de Protección de Datos UE-EE. UU. y del Marco de Protección de Datos Suiza-EE. UU. (Swiss-U.S. DPF), Commvault se compromete a:
- proporcionar a las personas físicas mecanismos claros, visibles y fácilmente accesibles para ejercer su derecho de elección en relación con sus datos personales; en este sentido, Commvault proporcionará a las personas físicas un mecanismo para excluirse voluntariamente del intercambio de datos con terceros o del uso de datos personales para una finalidad que difiera sustancialmente de la(s) finalidad(es) para la(s) que fueron recopilados originalmente y autorizados por la persona física.
- Cuando Commvault transfiera a un tercero datos personales recibidos al amparo de estos marcos normativos, exigiremos a dichos terceros que actúen de conformidad con los principios del DPF. Commvault es responsable y podrá ser considerada responsable del tratamiento de los datos personales que hayamos recibido y posteriormente transferido a terceros, salvo que podamos demostrar que no somos responsables del hecho que haya dado lugar a los daños.
- to cooperate and comply respectively with the advice of the panel established by the EU data protection authorities (DPAs), and the UK Information Commissioner’s Office (ICO), and the Gibraltar Regulatory Authority (GRA) and the Swiss Federal Data Protection and Information Commissioner (FDPIC) with regard to unresolved complaints concerning our handling of Personal Data received in reliance on the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF and the Swiss-U.S. DPF.
- resolve DPF Principles-related complaints about our collection and use of your Personal Data. EU, UK and Swiss individuals with inquiries or complaints regarding our handling of Personal Data, received in reliance on the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF and the Swiss-U.S. DPF should first contact us on the details indicated in the “Contacte con Commvault” section below.
If your complaint cannot be resolved through the above channels, under certain conditions, you may invoke binding arbitration for some residual claims not resolved by other redress mechanisms. Further information on arbitration can be found aquí.
Seguridad
Commvault maintains administrative, physical, and technical safeguards and security measures designed to protect data. Details of our data privacy and security program can be found in Annex II of the applicable Acuerdo de Tratamiento de Datosaplicable. Sin embargo, no podemos —ni creemos que nadie pueda— garantizar o asegurar de forma genuina la seguridad absoluta de los datos personales que se nos revelen o transmitan a través de Internet, ya sea a nosotros o a un tercero.
Exclusión voluntaria
Puede darse de baja para dejar de recibir comunicaciones de marketing y promocionales de Commvault siguiendo las instrucciones de baja que figuran en dichas comunicaciones o poniéndose en contacto con Commvault Systems, Inc. tal y como se indica a continuación. Seguiremos tratando los datos personales con el fin de enviar comunicaciones operativas y relacionadas con el servicio relativas a nuestras soluciones o políticas, así como para otros fines permitidos por la ley.
Tus derechos
You may have certain rights with respect to Commvault’s handling of Personal Data depending on your geolocation, including without limitation:
- Access. You have the right to access your Personal Data held by us. Consumers who reside in California may also request the categories of Personal Data we collect or disclose, the categories of sources of such Personal Data, the business or commercial purpose for collecting that Personal Data, and the categories of third parties with whom we share that Personal Data
- Rectification. You have the right to request correction of your Personal Data that is incomplete, incorrect, unnecessary, or outdated
- Right to be Forgotten. You have the right to request erasure of all your Personal Data that is incomplete, incorrect, unnecessary, or outdated within a reasonable period of time. We will do everything possible to erase your Personal Data if you so request. However, we cannot erase all your Personal Data if it is technically impossible due to limitations of existing technology or for legal reasons, such as legal mandates to retain Personal Data
- Restriction of Processing. You have the right to request restriction of processing your Personal Data for certain reasons, provided we do not have an overriding, legitimate interest to continue processing
- Data Portability. If requested, we will provide your Personal Data in a structured, secure, commonly used, and machine-readable format.
- Right to Withdraw Consent. If your Personal Data is processed solely based on consent, and not based on any other legal basis, you can withdraw consent at any time.
- Contact Data Protection Regulators. You have the right to contact data protection regulator(s) regarding our handling of Personal Data.
Additionally, California law provides California consumer residents with the right to not be discriminated against (as provided for in applicable law) for exercising rights taquíunder. Further, under California’s “Shine the Light” law California consumer residents have the right, twice in a calendar year, to request and obtain from Commvault information about Personal Data Commvault has shared, if any, with other businesses for their own direct marketing uses. This information, if applicable, would include the categories of Personal Data and the names and addresses of those businesses with which Commvault shared Personal Data for the immediately prior calendar year (e.g., requests made in 2022 will receive information regarding 2021 sharing activities).
Third Party Linking & Content
The Solutions, Websites and Portals may contain links to third-party websites that Commvault does not control or maintain. We are not responsible for the privacy practices employed by these third-party websites and encourage you to read the privacy statements of such other websites before submitting any Personal Data. Our Website may contain third-party content which may include statements, opinions, advice, criticisms, offers or other information (collectively, “Third-Party Content”). Any Third-Party Content solely reflects the opinion and belief of the respective third party and not that of Commvault. We make no endorsement, guarantee or other statement, express or implied, about Third-Party Content. You must independently evaluate any Third-Party Content if you intend to rely on it in any way.
En relación con los menores
Commvault does not knowingly collect or distribute any Personal Data from children under 13 years old. If a child under 13 has provided Commvault with Personal Data, the parent or guardian of that child should contact Commvault immediately at privacy@commvault.com to delete this Personal Data.
Changes to Commvault’s Privacy Policy
As laws and best practices evolve, this Privacy Policy will change. At times we may provide privacy notices within our Solutions, Websites or Portals. By continuing to access our Websites and Portals or use our Solutions, you acknowledge and accept the Privacy Policy as updated. We encourage you to periodically review this Privacy Policy to stay informed about how we manage data. If we update this Privacy Policy, the new Privacy Policy will be posted to the website fifteen (15) days prior to the changes taking effect. If we make a material change to the Privacy Policy, you will be provided with appropriate notice in accordance with legal requirements. At such time, your continued use of the Solutions, or access to our Websites and Portals after notice of posting or notice of such changes, constitutes your agreement to the latest version of this Privacy Policy.
Contacte con Commvault
Commvault’s Global Privacy Team can be contacted at privacy@commvault.com.
Si tiene preguntas, quejas o desea ejercer cualquiera de sus derechos, póngase en contacto con Commvault en privacy@commvault.com. Tomamos las medidas razonables para verificar su identidad cuando ejerce sus derechos. Asegúrese de mantener su información de contacto actualizada y precisa para que podamos tramitar sus solicitudes de conformidad con la legislación aplicable y en un plazo razonable.
También puede ponerse en contacto con nosotros por correo postal:
Estados Unidos y regiones internacionales distintas del EEE, el Reino Unido, Suiza o la India:
Commvault Systems, Inc.
A la atención de: Departamento Jurídico/Responsable
de Gobernanza Global de Datos One Commvault Way
Tinton Falls, Nueva Jersey 07724
EEE, Reino Unido y Suiza:
Commvault Systems International BV
A la atención de: Departamento Jurídico/Responsable
de Gobernanza Global de Datos Papendorpseweg 75-79, 3528 BJ
Utrecht, Países Bajos
India:
Centro de Desarrollo de la India
10.ª planta, Atria, The V IT Park,
Parcela n.º 17, zona de naves de software,
Hitech City, Madhapur Hyderabad – 500081, Telangana
Última actualización: mayo de 2026