Legal
Last updated: May 2026. Questions? Contact our Privacy Officer at privacy@collisionmatrix.ca.
In plain terms: your data is yours. This policy explains what we collect, why we collect it, and how you can control it.
CollisionMatrix is a product of LatitudeITP Inc., a software company incorporated in Ontario, Canada. We are the data controller for information collected through collisionmatrix.ca and the CollisionMatrix application. When you use CollisionMatrix to manage your customers' data, you are the controller of that data and we act as your data processor.
We do not sell, rent, or share your data with third parties for their own marketing. We share data only with the sub-processors necessary to operate the platform:
All sub-processors are contractually bound to process data only on our instructions and to maintain appropriate security standards.
Database records are stored on servers in the United States (AWS US East region). Photo and document files are stored on Cloudflare's distributed edge network. Both are accessible to Canadian users with low latency. We are PIPEDA-compliant and, where applicable, meet the requirements of provincial privacy legislation.
All data is encrypted in transit using TLS 1.2 or higher and encrypted at rest using AES-256. Access to production data is restricted to authorised LatitudeITP personnel on a need-to-know basis. Staff passwords are never stored in recoverable form. Customer portal passwords use PBKDF2-HMAC-SHA256 with per-user salts. We conduct periodic security reviews.
Under PIPEDA and applicable provincial law, you have the right to access the personal information we hold about you, to correct inaccuracies, and to request deletion. To exercise these rights, email privacy@collisionmatrix.ca. We will respond within 30 days.
We use session cookies for authentication and local storage for your theme preference and portal session. We do not use third-party advertising cookies. We do not use cross-site tracking.
For any privacy question, access request, or concern: