Legal
Privacy policy
Last updated
This policy explains how Privion (“Privion,” “we,” “us”) collects and uses personal information when you visit priviontech.com or interact with us about our services. We have written it to satisfy the transparency expectations of the EU/UK GDPR and the California CCPA/CPRA, while keeping the language plain.
Who we are
Privion is a technology consultancy operating under the Privion brand. Our mailing address is 12481 High Bluff Drive, Suite 300, San Diego, CA 92130. For privacy questions, contact us at hello@priviontech.com or via the contact form. For deployments of our products inside your own environment (for example, PAnalytics on your Microsoft 365 tenant), your organization is the controller — see the product's own privacy notice.
What we collect
- Information you send us. When you submit the contact form or e-mail us, we receive your name, work e-mail, company (optional), and the contents of your message. We process this through Netlify forms.
- Usage analytics (only with your consent). If you accept analytics cookies, we use our own self-hosted, privacy-respecting analytics to count page views, referrers, and approximate location at country level. It runs on infrastructure we control; we do not sell or share this data with advertising networks.
- Strictly necessary technical data. Like any website, our hosting provider processes connection metadata (IP, user-agent, timestamps) for security, fraud prevention, and to deliver the page you requested. This is not used to build a marketing profile.
We do not knowingly collect data from children under 16. We do not run advertising cookies, retargeting pixels, social-media trackers, or session-replay scripts.
Why we use it (lawful bases under GDPR)
- Contract / pre-contract steps — to respond to your inquiry and evaluate whether we can work together.
- Legitimate interests — to keep the site secure, prevent abuse, and maintain basic server logs.
- Consent — for optional analytics cookies. You can withdraw consent at any time using .
Cookies & similar technologies
We classify cookies into two groups:
- Strictly necessary. Required for the site to function (for example, remembering that you have answered the cookie banner). These are exempt from consent under EU/UK rules.
- Analytics (optional, off by default). Set only if you click Accept on the cookie banner. We anonymize IP addresses and respect Do Not Track / Global Privacy Control signals as a rejection.
You can change your choice any time via in the footer.
Who we share data with
We rely on a small number of processors who only act on our instructions:
- Netlify — static hosting and contact-form delivery.
- Self-hosted analytics — usage analytics on infrastructure we operate.
- E-mail providers — to receive and respond to messages you send us.
We do not sell or “share” personal information for cross-context behavioral advertising as those terms are defined under the CCPA/CPRA. We will only disclose information when legally compelled or to protect our rights or the safety of others.
International transfers
Our processors may store data in the United States or other countries. Where required, we rely on the EU Standard Contractual Clauses, the UK IDTA addendum, and equivalent safeguards offered by our providers.
How long we keep data
- Contact-form submissions: up to 24 months after the conversation closes, unless we've started an engagement that requires longer retention.
- Analytics events: up to 13 months, then deleted or aggregated.
- Server logs: typically 30–90 days at our hosting provider.
Your rights
Depending on where you live, you may have the right to access, correct, delete, port, or restrict processing of your personal information, to object to processing based on legitimate interests, and to withdraw consent for analytics cookies at any time.
California residents additionally have the right to know what we collect, request deletion, request correction, and opt out of the sale or sharing of personal information. As noted above, we do not sell or share personal information; you can still exercise these rights and we will not discriminate against you for doing so. You may designate an authorized agent to act on your behalf.
To exercise any right, e-mail privacy@priviontech.com or use the contact form. We will respond within the timeframe required by the law that applies to you (generally 30–45 days). If you are in the EU/UK, you may also lodge a complaint with your local data-protection authority.
Security
We use TLS in transit, restrict administrative access on a need-to-know basis, keep our hosting infrastructure patched, and review processors before adopting them. No system is perfectly secure, but we hold ourselves to the standards we recommend to clients.
Changes to this policy
If we make material changes, we will update the “Last updated” date above and, where appropriate, surface a notice on the site. Continued use of priviontech.com after changes means you accept the updated policy.
Contact
Privacy questions or requests: privacy@priviontech.com
General inquiries: priviontech.com contact form