Skip to main content
BilgeQor
Back to home

Privacy Policy

Effective: 2026-04-13·Last Updated: 2026-04-13

We collect only what we need to deliver your service. This policy explains what we collect, how we use it, and your rights.

1.Information We Collect

We collect information necessary to deliver our services and process payments:

Contact Information:

  • Email address
  • Phone number

Billing Information:

  • Full name (for individual customers)
  • Legal business name (for business customers)
  • Billing address (street address, city, state/province, postal code, country)

Business Information (for business customers only):

  • Business registration number
  • Tax registration number (where applicable)
  • Country of incorporation
  • Tax residence country
  • Business website
  • Authorized buyer details (full name, job title)

Service Delivery Information:

  • Intake form responses (project requirements, technical specifications, timeline preferences)
  • Communication records related to service delivery

Payment Information:

  • Payment is processed securely through our payment processor. We do not directly store credit card numbers or complete payment credentials. Payment data is handled in accordance with PCI DSS standards by our payment processor.

2.How We Use Your Information

We use collected information for the following purposes:

Service Delivery:

  • Communicate with you about your service engagement
  • Deliver security assessments, development work, or advisory services as purchased
  • Coordinate project timelines and deliverables

Billing and Payment:

  • Process payments via our secure payment link
  • Generate invoices
  • Handle refund requests (where applicable)

Tax Compliance:

  • Calculate applicable taxes based on billing address and customer type
  • Generate tax-compliant invoices
  • Maintain records for tax authority requirements

Service Improvement:

  • Analyze service usage patterns
  • Improve service delivery processes
  • Develop new service offerings

Legal Compliance:

  • Comply with applicable laws and regulations
  • Respond to legal requests
  • Enforce our terms of service

We do not sell your personal information to third parties. We do not use your information for advertising or marketing beyond direct service communication.

3.Data Security

We implement industry-standard security measures to protect your information:

Encryption:

  • All data transmission is encrypted using HTTPS/TLS
  • Sensitive data is encrypted at rest

Access Controls:

  • Access to personal information is restricted to authorized personnel only
  • Role-based access controls limit data exposure
  • Multi-factor authentication required for administrative access

Third-Party Services:

  • Payment processor: Handles payment data in accordance with PCI DSS standards. We do not store complete credit card information on our servers.
  • Service infrastructure: Hosted on secure cloud infrastructure with regular security updates

Security Monitoring:

  • Regular security audits and vulnerability assessments
  • Automated monitoring for unauthorized access attempts
  • Incident response procedures in place

While we implement strong security measures, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security but commit to industry best practices.

4.Data Retention

We retain personal information for the following periods:

Active Service Relationship:

  • Information is retained for the duration of your service engagement
  • Communication records retained for continuity of service delivery

Billing and Tax Records:

  • Billing information and invoices are retained for a minimum of 7 years to comply with tax authority requirements in applicable jurisdictions
  • Payment records retained as required by financial regulations

After Service Completion:

  • Service delivery records (project documentation, deliverables) may be retained for reference purposes unless deletion is requested
  • You may request deletion of personal information subject to legal retention requirements

Deletion Requests:

  • You may request deletion of your personal information by contacting [email protected]
  • Deletion requests are processed within 30 days, except where retention is required by law (e.g., tax records, dispute resolution)
  • Some anonymized or aggregated data may be retained for service improvement purposes

5.Your Rights and Privacy Contact

You have the following rights regarding your personal information:

Access:

  • You may request a copy of the personal information we hold about you

Correction:

  • You may request correction of inaccurate or incomplete personal information

Deletion:

  • You may request deletion of your personal information, subject to legal retention requirements (e.g., tax records must be retained for 7 years)

Data Portability:

  • You may request a machine-readable copy of your personal information

Objection:

  • You may object to processing of your personal information for certain purposes (e.g., marketing, which we do not currently conduct)

To Exercise Your Rights:
Contact us at [email protected] with the subject line "Privacy Request". Include your name, email address, and specific request. We will respond within 30 days.

Privacy Questions:
For questions about this Privacy Policy or our data handling practices, contact [email protected].

Questions?

For questions about our privacy policy, please contact [email protected]