IoT Privacy White Paper - Xiaomi

1. Overview



Xiaomi has the world-leading consumer IoT platform – Xiaomi/Mi Home. To date, more than 4781 million smart devices have been connected to Xiaomi/Mi Home. However, the rapid increase in the use of IoT devices has also caused increasing concern among users over the privacy and security of their personal data.

Respecting users' privacy has always been among Xiaomi's core values. Xiaomi frequently insists on the concept of 'security and privacy by design' in creating IoT products.

Based on the principle of Transparency (as later defined), we have published this IoT users' privacy white paper, which aims to demonstrate our privacy protection practices and what we have done to protect your data in each of our products and services. We have included 5 products and associated 2 mobile applications in this white paper, and have included details that will enable you to develop a full understanding of how we collect, use, and store data, as well as how you can control your data. Our aim is help you to better understand the Xiaomi IoT security and privacy protection practices.

Chapter 1 - Overview introduces the basic introduction of Xiaomi IoT platform, the purpose and structure of this white paper.

Chapter 2 - Privacy Governance introduces Xiaomi's privacy governance situation. In this chapter, you can understand that Xiaomi has built mature privacy governance and management system in the company, which lays a solid foundation for privacy protection.

Chapter 3 - Xiaomi IoT Products and Privacy introduces the privacy practice for 5 main types of IoT products and 2 connected mobile applications. You can get all the details of data collections and usages, and specific privacy features for each devices. To provide a simple, clear statement and to improve the understanding of our data collection and usage practice, we refer to most of the concepts from ISO/IEC 19944-1:2020 Cloud computing and distributed platforms ─ Data flow, data categories and data use — Part 1: Fundamentals, including data taxonomy, data use statement, and corresponding examples. Reference to the ISO standard provides additional clarity about our data collection and usage practice and allows easy comparison with other products or services that also references the standard.

Chapter 4 - International Data Transfer introduces our international data storage and transfer practice. In this chapter, you can learn about our cloud service providers, the storage locations for user data, and our compliance mechanism for international data transfer.

Chapter 5 - Control Your Privacy in IoT Products introduces how you can control your privacy in IoT products via different mobile applications. There are details screenshot or description of different user access right when you connect your device by using different mobile applications.

Chapter 6 - Security and Privacy Certifications introduces the security and privacy certifications we have obtained, which indicates our outstanding security and privacy protection capabilities.

Chapter 7 - Conclusion: An overall summary for the whole white paper to emphasize the privacy protect principles, privacy development integration of our IoT products, and how we improve our technology, process and any other related practice continuously.

We strive for more transparency in this White Paper and hope that all Xiaomi users, developers, partners, and relevant regulatory authorities can better understand the privacy practices in Xiaomi.



Note

1 Data Statistics from Q1 2022 Xiaomi Financial Report.