Greyfeld Partners is committed to protecting the privacy and personal data of our clients, website visitors, and business contacts. This policy describes how we collect, use, store, and protect your information in compliance with the Brazilian General Data Protection Law (LGPD — Lei Geral de Proteção de Dados, Law No. 13,709/2018) and the European General Data Protection Regulation (GDPR) where applicable.
1. Information We Collect
We collect only the information necessary to provide our services and communicate with you:
- Contact information: name, email address, phone number, company name, and job title provided through our booking forms or direct communication.
- Engagement data: project scope, business challenges, budget range, and other information you share during consultations.
- Website analytics: anonymized usage data such as pages visited and session duration, collected through privacy-respecting analytics tools.
2. How We Use Your Information
- To schedule and conduct Fit Assessments and client engagements.
- To communicate about our services, project updates, and relevant insights.
- To improve our website and service delivery based on anonymized usage patterns.
- To comply with legal obligations under Brazilian and applicable international law.
3. Data Protection & Storage
Your data is stored on encrypted servers with TLS 1.3 encryption in transit and AES-256 encryption at rest. We implement strict access controls, ensuring only authorized team members can access client data on a need-to-know basis. We do not sell, rent, or share your personal data with third parties for marketing purposes.
4. Your Rights
Under the LGPD and GDPR, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your personal data.
- Withdraw consent for data processing at any time.
- Request data portability in a structured, machine-readable format.
5. Cookies & Tracking
Our website uses essential cookies for authentication and session management. We use privacy-respecting analytics that do not track individual users across websites, do not use cookies for advertising, and do not collect personally identifiable information. We do not use third-party advertising trackers.
6. Data Retention
We retain client engagement data for the duration of the professional relationship plus 5 years for legal and regulatory compliance. Website analytics data is retained in anonymized form. You may request deletion of your personal data at any time by contacting us.
Data Protection Contact
For any privacy-related requests or questions, contact our Data Protection Officer: