Privacy Policy
Data Collection & Processing
We collect only essential data: name, email, phone, and company (if applicable). Billing information is processed via PCI-DSS compliant gateways (Stripe). Cookies are used solely for session management and analytics (Google Analytics with IP anonymization). No sale of personal data occurs.
Legal Basis (GDPR/CCPA)
- Consent: For marketing emails; opt-out available in every message.
- Contractual necessity: To deliver services and process payments.
- Legitimate interests: Internal analytics to improve user experience.
Data Retention & Deletion
Client records retained for 5 years post-engagement per industry regulations. On request, data is deleted within 30 days (except for legal holds). Encrypted backups purged annually.
Third-Party Sharing
- Sub-processors: Asana (project management), Zoom (coaching sessions), Mailchimp (newsletter).
- Data Transfer: EU clients – Standard Contractual Clauses in place for US-based services.
User Rights
Access, rectification, erasure, portability, objection. Exercise via [email protected]. Response within 28 days.
