Privacy Policy
Last Updated: January 2025
At Bright Harbor Cloud, we take your privacy seriously. This policy outlines how we collect, use, and protect your personal information.
Table of Contents
- 1. Information We Collect
- 2. How We Use Your Information
- 3. Information Sharing and Disclosure
- 4. Data Security
- 5. Data Retention
- 6. Your Rights and Choices
- 7. Cookies and Tracking Technologies
- 8. Third-Party Services
- 9. International Data Transfers
- 10. Children's Privacy
- 11. Changes to This Policy
- 12. Contact Us
Welcome to Bright Harbor Cloud. We are committed to protecting your personal information and your right to privacy. This Privacy Policy describes how we collect, use, store, and share your information when you use our cloud technology consultancy services, visit our website, or engage with us in any related manner.
By using our services, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our services.
1. Information We Collect
1.1 Information You Provide to Us
We collect information that you voluntarily provide to us when you:
- Register for an account or sign up for our services
- Contact us for support or inquiries
- Subscribe to our newsletter or marketing communications
- Participate in surveys, webinars, or events
- Request a consultation or demo
- Submit feedback or reviews
This information may include:
- Personal Identifiers: Name, email address, phone number, job title, company name
- Account Credentials: Username, password, and security questions
- Payment Information: Billing address, credit card information, or other payment details
- Communication Data: Content of messages, emails, or chat conversations with our support team
- Professional Information: Company size, industry, infrastructure details, and technical requirements
1.2 Information Automatically Collected
When you access our website or use our services, we automatically collect certain information about your device and usage patterns, including:
- Device Information: IP address, browser type and version, operating system, device type
- Usage Data: Pages visited, time spent on pages, click patterns, navigation paths
- Location Data: Geographic location based on IP address
- Technical Data: Error reports, performance data, and diagnostic information
- Referral Information: Source of traffic and referring websites
1.3 Information from Third Parties
We may receive information about you from third-party sources, including:
- Business partners and referral sources
- Marketing and analytics providers
- Cloud service providers and infrastructure partners
- Public databases and data enrichment services
- Social media platforms (if you connect your account)
2. How We Use Your Information
We use the information we collect for various purposes, including:
2.1 Service Delivery
- Providing, maintaining, and improving our cloud consultancy services
- Creating and managing your account
- Processing payments and managing billing
- Delivering cloud migration, security, and infrastructure optimization services
- Monitoring and improving website performance and speed
2.2 Communication
- Responding to your inquiries, requests, and support needs
- Sending service-related notifications and updates
- Providing technical support and troubleshooting
- Sending newsletters, marketing materials, and promotional content (with your consent)
- Notifying you about changes to our services or policies
2.3 Analytics and Improvement
- Analyzing usage patterns and trends to improve our services
- Conducting research and development for new features
- Testing and optimizing website performance
- Understanding customer needs and preferences
- Measuring the effectiveness of our marketing campaigns
2.4 Security and Legal Compliance
- Detecting, preventing, and addressing fraud, security breaches, and technical issues
- Protecting the rights, property, and safety of our users and company
- Complying with legal obligations and regulatory requirements
- Enforcing our terms of service and other agreements
- Resolving disputes and investigating complaints
2.5 Personalization
- Customizing your experience based on your preferences and usage
- Providing relevant content, recommendations, and solutions
- Tailoring marketing communications to your interests
- Delivering targeted advertisements on third-party platforms
3. Information Sharing and Disclosure
We do not sell your personal information. We may share your information in the following circumstances:
3.1 Service Providers
We may share your information with third-party service providers who perform services on our behalf, including:
- Cloud infrastructure and hosting providers
- Payment processors and financial institutions
- Email and communication platforms
- Analytics and monitoring services
- Customer relationship management (CRM) platforms
- Marketing and advertising partners
3.2 Business Transfers
In connection with any merger, sale of company assets, financing, or acquisition of all or a portion of our business, your information may be transferred to the acquiring entity.
3.3 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities, including:
- Complying with legal processes, court orders, or government requests
- Enforcing our terms and conditions
- Protecting our rights, privacy, safety, or property
- Investigating potential fraud or security issues
3.4 With Your Consent
We may share your information with other third parties when we have your explicit consent to do so.
3.5 Aggregated or De-identified Data
We may share aggregated or de-identified information that cannot reasonably be used to identify you for research, marketing, analytics, or other purposes.
4. Data Security
We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. Our security measures include:
- Encryption: Data encryption in transit (SSL/TLS) and at rest
- Access Controls: Role-based access controls and multi-factor authentication
- Network Security: Firewalls, intrusion detection systems, and regular security monitoring
- Secure Infrastructure: Use of trusted cloud providers with industry-standard certifications
- Regular Audits: Security assessments, vulnerability scans, and penetration testing
- Employee Training: Regular security awareness training for all staff members
- Incident Response: Documented procedures for detecting and responding to security incidents
- Data Backup: Regular backups and disaster recovery planning
While we strive to protect your personal information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we continuously work to improve our security practices and respond promptly to any security incidents.
Important: If you become aware of any security vulnerability or unauthorized access to your account, please contact us immediately at [email protected].
5. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
Retention Periods
- Active Accounts: Information retained for the duration of your active account plus a reasonable period thereafter
- Closed Accounts: Account data retained for up to 90 days after account closure, except where longer retention is required
- Transaction Records: Financial and billing information retained for 7 years to comply with tax and accounting requirements
- Marketing Data: Contact information retained until you unsubscribe or request deletion
- Usage Logs: Server logs and analytics data retained for 12-24 months
- Support Communications: Customer support records retained for 3 years
When we no longer need your information, we will securely delete or anonymize it in accordance with our data retention policies and applicable legal requirements.
6. Your Rights and Choices
Depending on your location and applicable laws, you may have certain rights regarding your personal information:
6.1 Access and Portability
You have the right to request access to the personal information we hold about you and receive a copy of your data in a structured, commonly used, and machine-readable format.
6.2 Correction and Update
You can update your account information at any time through your account settings. You may also request that we correct inaccurate or incomplete information.
6.3 Deletion
You have the right to request deletion of your personal information, subject to certain exceptions (such as legal obligations or legitimate business interests). You can delete your account through your account settings or by contacting us.
6.4 Opt-Out of Marketing
You can opt-out of receiving marketing emails by clicking the "unsubscribe" link in any marketing email or by adjusting your communication preferences in your account settings. Note that you will still receive transactional and service-related communications.
6.5 Restriction of Processing
You may request that we restrict the processing of your personal information in certain circumstances, such as when you contest the accuracy of the data or object to processing.
6.6 Object to Processing
You have the right to object to our processing of your personal information for direct marketing purposes or when processing is based on legitimate interests.
6.7 Withdraw Consent
Where we rely on your consent to process your personal information, you have the right to withdraw that consent at any time.
Exercising Your Rights
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within the timeframe required by applicable law (typically 30 days). We may need to verify your identity before processing your request.
Note: If you are a resident of California, the European Union, or other jurisdictions with specific privacy laws, you may have additional rights. Please see our region-specific privacy notices or contact us for more information.
8. Third-Party Services
Our website and services may contain links to third-party websites, applications, or services that are not owned or controlled by Bright Harbor Cloud. This Privacy Policy does not apply to third-party services.
Third-Party Links
We are not responsible for the privacy practices of third-party websites or services. We encourage you to review the privacy policies of any third-party sites you visit.
Third-Party Integrations
Our services may integrate with third-party cloud platforms, tools, and services (such as AWS, Azure, Google Cloud, monitoring tools, etc.). When you use these integrations:
- You authorize us to access and process data through these platforms on your behalf
- The third-party provider's terms and privacy policies also apply
- We may receive information from these platforms as part of providing our services
- We implement appropriate safeguards when sharing data with integrated services
Social Media Features
Our website may include social media features (such as share buttons or widgets). These features may collect your IP address, pages you visit, and may set cookies. Social media features are governed by the privacy policies of the companies providing them.
9. International Data Transfers
Bright Harbor Cloud operates globally, and your information may be transferred to, stored, and processed in countries other than your country of residence. These countries may have data protection laws that differ from the laws of your country.
Data Transfer Safeguards
When we transfer personal information internationally, we implement appropriate safeguards to protect your data, including:
- Standard Contractual Clauses approved by relevant regulatory authorities
- Data processing agreements with service providers
- Adequacy decisions recognizing comparable data protection standards
- Certification schemes and codes of conduct
- Technical and organizational security measures
EU-U.S. and Swiss-U.S. Data Privacy Framework
We comply with applicable data privacy frameworks and regulations governing international data transfers. If you have questions about how we transfer and protect your data internationally, please contact us.
10. Children's Privacy
Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and believe we have collected information from a child under 18, please contact us immediately at [email protected].
If we become aware that we have collected personal information from a child under 18 without parental consent, we will take steps to delete that information as quickly as possible.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will:
- Update the "Last Updated" date at the top of this policy
- Post the revised policy on our website
- Notify you via email or through a prominent notice on our website if the changes are material
- Obtain your consent if required by applicable law
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information. Your continued use of our services after changes are posted constitutes your acceptance of the revised policy.
12. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Bright Harbor Cloud
Privacy Team
Email: [email protected]
General Inquiries
Email: [email protected]
Security Issues
Email: [email protected]
Response Time
We aim to respond to all privacy-related inquiries within 3 business days. For data subject requests, we will respond within the timeframe required by applicable law (typically 30 days).
This Privacy Policy was last updated on January 2025 and is effective as of that date.
© 2025 Bright Harbor Cloud. All rights reserved.