Xilio Privacy Policy

Xilio Therapeutics, Inc. and/or its affiliates (hereafter “Xilio”) collect Personal Information (as defined below) in order to serve you and communicate with you. Xilio respects the privacy of visitors to this website and this Privacy Policy explains how Xilio collects, uses, and discloses your Personal Information.

This Privacy Policy applies to the operation of this website and other applications (including mobile applications), that are directly linked to this statement.

1. Types of Personal Information Xilio May Collect

This Privacy Policy explains our practices with regard to “Personal Information.” Personal Information is defined as any information that can be used to identify you or relates to an identifiable individual.

2. Uses of Personal Information

 Xilio may collect, use, and process Personal Information via the website in the following ways:

  • We will process information voluntarily submitted to us, such as your name, contact information, interests, including your interest in a specific role, in order to contact you to obtain more information, provide you with information that you have requested, or provide additional information which Xilio believes may be of interest to you.
  • We may automatically collect information, via cookies and related technologies, about your use of this website. This may allow us to understand how the website is used or how you interact with our website in order to enable us to tailor and improve this website.

3. Data Sharing

Personal Information provided by you, which is collected via this website, will not be transferred outside of Xilio, other than as stated in this Privacy Policy, without your prior consent, except where permitted or required by applicable law. Your Personal Information may be used within Xilio, or by a third-party acting on behalf of Xilio. Xilio maintains contracts with the third-parties who process information on Xilio’s behalf, which are intended to provide adequate safeguards for Personal Information (e.g., restriction on access, use, retention, and disclosure of Personal Information to those solely required to meet their contractual obligations in the performance of the specific functions described below).

Xilio and its third-party service providers may act on our behalf to collect and use data that assists in the hosting, maintenance, and improvement of this website as well as employee recruitment/hiring. This website is intended for US residents and is hosted and maintained within the United States.

Xilio and its third-party service providers may exchange such information with each other or with you over the Internet or intranet systems for the purposes of carrying out the activities described above.  

4. Cookies

Our website uses both “persistent” and “non-persistent” cookies and related technologies (“cookies”), which are small data files that a server sends or technology that is stored on your browser device, or the page you are viewing when you access a website. We use “non-persistent cookies” to provide you with the best presentation of our contents as you navigate our website. Some of these “non-persistent cookies” are considered essential to the functioning of the website and are automatically deleted when you close your web browser.

We use “persistent cookies” to track page visits and how you interact with our website, including pages visited and links clicked, in order to help us analyze our website usage more accurately and tailor your experience. Web browsers may offer users of our websites the ability to disable receiving certain types of cookies; however, if cookies are disabled, some features or functionality of our websites may not function correctly. The “help” menu on most internet browsers contains information on how to disable cookies, or you can visit http://aboutcookies.com/.

We use analytical cookies such as Google Analytics to help us analyze how visitors use the website. The tool uses cookies to collect standard Internet log information and visitor behavior information. The information generated by the cookie about your use of this website, including your IP address, is transmitted to such providers. This information is then used to evaluate visitors’ use of the website and to compile statistical reports on website activity for us. We do not seek to link an IP address with the identity of a computer user. If you do not want any information to be collected and used by Google Analytics, you can install an opt-out add-on in your web browser. Google’s ability to use and share information collected by Google Analytics about your visits to this website is restricted by the Google Analytics Terms of Service and the Google Privacy Policy found here https://policies.google.com/privacy?hl=en-US.

5. Data Security

Xilio has implemented a data security program that contains administrative, technical, and physical controls that are designed to reasonably safeguard your Personal Information from unlawful use and unauthorized disclosure. However, no system is completely secure or error-free. We do not, and cannot, guarantee the complete security of your Personal Information.

6. Your Rights in Connection with Your Personally Identifiable Information:

 Under certain circumstances, and as required by law you may have the right to:

  • Request access to your Personal Information. This enables you to receive a copy of the Personal Information we hold about you.
  • Request correction of any incomplete or inaccurate Personal Information that we hold about you.
  • Request erasure of your Personal Information when there is no need for us to continue processing it, or you have exercised your right to object to processing (see below).
  • Object to processing of your Personal Information where we are relying on a legitimate interest (or those of a third party), and there is something about your particular situation which makes you want to object to processing on this ground.
  • Request the restriction of processing of your Personal Information to suspend the processing, for example if you want us to verify its accuracy or the reason for processing it.
  • Request the transfer of your Personal Information to another party.

If you want to exercise any of these rights, please see the Contact Us section of this Privacy Policy. Valid requests will be honored within 45 calendar days of request.

You will not have to pay a fee to access your Personal Information (or to exercise any of the other rights). However, we may charge a reasonable fee if your request for access is unfounded or excessive. Alternatively, we may refuse to comply with the request in such circumstances. In addition, there may be requests that we are unable to process because of certain legal requirements that we may have. If a request is denied, we will notify you of the reason.

We may need to request specific information from you to help us confirm your identity and ensure your right to access your Personal Information (or to exercise any of your other rights). This is an appropriate security measure to ensure that Personal Information is not disclosed to a person who does not have the right to receive it.

7. California Privacy Rights

While Xilio does not provide your Personal Information to third parties for their use in marketing, under California law, California residents have the right to opt-out of such use of their Personal Information if it occurred.

8. Children’s Privacy

Xilio websites and applications are not intended to attract children, and we do not knowingly collect any Personal Information of anyone under the age of 13. If you believe your child is using our website, please contact us online in the “Contact Us” section of our website, so we can investigate and delete any applicable data.

9. Changes to this Privacy Policy

We will only use Personal Information in the manner described in the Privacy Policy that was in effect when the data was collected from you. However, we reserve the right to change the terms of this Privacy Policy at any time by posting revisions to our site. If we make any material changes to this Privacy Policy, we will place a prominent notice on our website.

Any portions of this policy are void to the extent they are prohibited by applicable law.

10. How to Contact Us

Please contact us if you have any questions or comments about our privacy practices, your privacy choices, including those related to our use of your Personal Information, or this Privacy Policy. You can always reach us online at https://xiliotx.com/contact. You may contact us to delete, update, or correct the Personal Information that you provided to us through the website.

If you choose to contact us via mail at the address below, please provide your name, address, email address, along with your questions, comments, or requests.

Xilio Therapeutics, Inc.
Attn: Head of Legal
828 Winter Street Suite 300
Waltham, MA 02451
legal@xiliotx.com