1. In order to provide the main functionality of the Software and in order to provide You with relevant information and offers from the Rightholder, including in relation to Software features, maintaining security levels, support and other help-related materials, as well as Kaspersky and/or its partners products and services, marketing offers, discounts, and promotional materials, You agree to automatically provide the Rightholder with following information:

- Information about the OS installed on the User's computer: additional information about OS features; OS ID; type of hardware platform; OS bit size; operating system family; OS version, OS build number, OS update number, OS edition, extended information about the OS edition; OS type (server, workstation, domain controller);

- Information on interaction with Web-Portal: one-time password for device registration on Web-Portal; token type; unique device ID on Web-Portal; data to receive an authentication token for the session; Web-Portal account ID; unique device ID; flag indicating whether the Software is connected to Web-Portal;

- Information about the license and other agreements: Software operating mode; Software activation code; Software license expiration date and time; number of days till Software license expiration; Software license ID; Software license term; type of Software license used; full name of the partner organization through which the Software license order was placed; flag indicating whether the user has accepted the terms of the legal agreement while using the Software; type of legal agreement accepted by the user while using the Software; date and time when the user accepted the Agreement terms while using the Software; version of the legal agreement accepted by the user while using the Software;

- Information about the User's computer connection to a wireless network: DHCP settings (checksums of gateway local IPv6, DHCP IPv6, DNS1 IPv6, DNS2 IPv6; checksum of network prefix length; checksum of local address IPv6); DHCP settings (checksums of the local IP address of the gateway, DHCP IP, DNS1 IP, DNS2 IP, and subnet mask); Wi-Fi network authentication type; checksum (MD5 with salt) of the MAC address of the access point; checksum (SHA256 with salt) of the MAC address of the access point; connection types supported by the Wi-Fi access point; Wi-Fi network encryption type; Wi-Fi network ID based on the MAC address of the access point; Wi-Fi network ID based on the Wi-Fi network name; Wi-Fi network ID based on the Wi-Fi network name and the MAC address of the access point; Wi-Fi signal strength; Wi-Fi network name; Wi-Fi network SSID; URL of the service used to access the internet;

- Information about the User environment: device ID; computer name on the network (domain name); one-time password for device registration on Web-Portal; unique device ID; device type (laptop, desktop, tablet); ID of the marketing campaign;

- Information about the Rightholder's installed Software: full version of third-party software; localization of third-party software; unique identifier of the application installation; Software ID derived from the license; full version of the Software; Software update ID; Software ID; Software localization; Software installation ID (PCID); Software rebranding ID; ID of the licensed Software; code of the partner organization associated with the Software rebranding; type of installed Software; Software group; Software ID; Software installation/uninstallation status; installation error code; ID of the Software rebranding; installation type (new installation, update); ID of the Software update start; ID of the user of the Rightholder's website; version of the Software's component; source file path; number of the string in the script where the error has occurred; name of the module in which the failure probably occurred; Software module ID; nested error occurred during the application work;

- Other information: public key of the certificate; digital certificate thumbprint of the scanned object and hashing algorithm; web address being processed; error type; text of the error message; the memory stack of the Software process failure; address for Software module loading; process system ID (PID);

- Information about an object being processed: size of the object being processed; description of an object being processed as defined in the object properties;

2. Data processing depending on the VPN Provider

The work of the functionality of the VPN component of the Software is provided via access to and/or use of the VPN Provider services as is specified in the VPN Statement. For the fulfillment of obligations under the License Agreement and providing the VPN functionality of the Software, the VPN Provider and the Rightholder need to receive and process information described in this Clause 2 for the declared purposes, depending on the VPN Provider.

2.1. If work of the VPN component is provided via access to the service of a third party which is Pango GmbH (hereafter "VPN Provider"): https://www.pango.co, the VPN Provider and the Rightholder need to receive and process data as described in Clause 2.1:

2.1.1. Data processing by the Rightholder

The Rightholder has to verify that the license You will use is legal during activation and use of the Software. To do so the Rightholder has to process and receive the following data:

- Information on interaction with Web-Portal: unique device ID on Web-Portal;

- Information about connection to the VPN provider's infrastructure: unique user ID in the service provider's infrastructure;

- Information about the Rightholder's installed Software: unique identifier of the application installation.

The Rightholder handles the data it receives from the End User under this Statement in accordance with the Rightholder’s Privacy Policy published at: https://www.kaspersky.com/Products-and-Services-Privacy-Policy.

2.1.2. Data processing by the VPN Provider

To provide You with the core functionality of the Software, the VPN Provider has to receive from Your Computer and process the following data: token used for authentication in the Software; country code according to ISO 3166-1 alpha-2; VPN connection settings; public key of the certificate.

The VPN Provider has to verify the legality of access to its services during Your use of the Software. To do so the VPN Provider has to process and receive the following data received from the Software and from the Rightholder:

- Information about connection to the VPN provider's infrastructure: service provider; computer category; unique identifier of the application installation; one-time password for automatically connecting the Software downloaded from the Web-Portal account; user login for the Web-Portal account; token used for authentication in the Software; country code according to ISO 3166-1 alpha-2; method used for authentication in the Software; internal authentication protocol;

The VPN Provider processes information in accordance with its privacy policy. You can find and read its complete content at https://www.pango.co/privacy/.

2.2. If work of the VPN component is provided via access to the service of a third party which is PureVPN (hereafter "VPN Provider"): https://www.purevpn.com, the VPN Provider and the Rightholder need to receive and process data described in Clause 2.2:

2.2.1. Data processing by the Rightholder

To provide You with the core functionality of the Software, the Rightholder has to receive and process the following data: unique User ID in the Rightholder's systems; unique user ID in the service provider's infrastructure; unique device ID on Web-Portal; device type; public key of the certificate; country code according to ISO 3166-1 alpha-2; VPN connection settings.

The Rightholder also process the following received under this Statement data which has undergone de-identification process for the purposes of creating statistics and reports of the Software use: unique device ID on Web-Portal; unique User ID in the Rightholder's systems.

The Rightholder handles the data it receives from the End User under this Statement in accordance with the Rightholder's Privacy Policy published at: https://www.kaspersky.com/Products-and-Services-Privacy-Policy.

2.2.2. Data processing by the VPN Provider

To provide You with the VPN functionality, the VPN Provider has to receive and process the following data received from the Software and from the Rightholder: unique User ID in the Rightholder's systems; unique user ID in the service provider's infrastructure; token used for authorization in the service provider's infrastructure; service provider; device type; public key of the certificate; country code according to ISO 3166-1 alpha-2; protocol ID; VPN connection settings.

The VPN Provider processes information in accordance with its privacy policy. You can find and read its complete content at https://redirect.kaspersky.com/?target=PureVpnPrivacyPolicy.