This Privacy Policy describes how CVB Ventures LLC, the developer and operator of this website, collects, uses, discloses, and protects information obtained from visitors and clients. CVB Ventures specializes in Computer Systems Design and Related Services within the Professional, Scientific, and Technical Services sector. We are committed to maintaining the confidentiality and security of all personal data entrusted to us. By accessing or using any services offered through this website, you acknowledge that you have read and understood the practices described in this policy.
1. Information We Collect
We may collect several categories of information from and about users of our website and services. The types of information we gather depend on the nature of your interaction with us and the services you engage. We categorize this information as follows:
Personal Identification Information: This includes your full name, email address, telephone number, company name, job title, and physical mailing address. We collect this information when you voluntarily submit it through our contact forms, request a consultation, subscribe to communications, or otherwise correspond with us regarding our computer systems design and integration services.
Technical and Usage Information: When you visit our website, we automatically collect certain technical data through server logs and analytics tools. This includes your Internet Protocol address, browser type and version, operating system, referring URL, pages visited on our site, time and date of each visit, time spent on each page, and other diagnostic data. This information helps us understand how users interact with our website and identify opportunities for improvement.
Communication Records: When you communicate with us by email, telephone, or through our contact forms, we retain copies of that correspondence. This includes the content of your messages, the date and time of communication, and any attachments you provide. We maintain these records to ensure continuity of service and to document our professional engagements.
Business Information: If you engage our services, we may collect information about your organization, including its operational structure, existing technology infrastructure, integration requirements, project specifications, and other details relevant to the delivery of our professional services. This information is treated as confidential under the terms of our engagement agreements.
2. How We Collect Information
We employ multiple methods to gather information depending on the context of the interaction. Each collection method is designed to be transparent and proportionate to the purpose for which the data is sought.
Direct Collection: The majority of personal information we hold is provided directly by you. This occurs when you fill out a contact form on our website, send us an email, call our office, participate in a consultation meeting, or sign an engagement agreement. In each case, you control what information you choose to share with us.
Automated Collection: As you navigate through our website, we use cookies, web beacons, and similar tracking technologies to automatically collect technical data about your device and browsing behavior. This collection is governed by your browser settings and our cookie consent mechanisms. You may disable cookies through your browser preferences, though doing so may affect the functionality of certain website features.
Third-Party Sources: In limited circumstances, we may receive information about you from third-party partners, such as analytics providers, business directories, or professional networking platforms. We only accept such information when we have verified that the third party has obtained your consent or otherwise has a lawful basis to share it with us.
3. Use of Collected Information
We use the information we collect for specific, legitimate business purposes related to the delivery and improvement of our computer systems design and integration services. Each use is grounded in a clearly defined purpose, as described below.
Service Provision: We use your personal and business information to deliver the services you have requested, including system architecture consulting, integration planning, project management, and ongoing technical support. This includes communicating with you about project milestones, deliverables, and any changes to scope or timeline.
Communication and Support: Your contact information enables us to respond to your inquiries, provide requested information about our services, schedule consultations, and send administrative communications such as confirmations, invoices, and technical notices. We do not use your contact information for unsolicited marketing unless you have explicitly consented to receive such communications.
Website Improvement: Technical and usage data helps us analyze website performance, identify navigation issues, optimize page load times, and enhance the overall user experience. This analysis is performed in aggregate and does not involve profiling individual users for automated decision-making.
Legal Compliance: We may process your information as necessary to comply with applicable laws, regulations, legal processes, or governmental requests. This includes maintaining records required by tax authorities, responding to court orders, and fulfilling our obligations under data protection legislation.
Business Operations: We use aggregated and anonymized data for internal business analysis, financial planning, capacity forecasting, and strategic decision-making. No individual is identifiable in such aggregated datasets.
5. Data Storage and Retention
We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable law. Our retention periods are determined by reference to the nature and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we process the data, and applicable legal requirements.
Active Client Data: Information related to ongoing client engagements is retained for the duration of the engagement plus a period of seven years following project completion to comply with tax, accounting, and professional liability requirements.
Inquiry Data: Information submitted through contact forms or general inquiries from individuals who do not result in an engagement is retained for a period of twenty-four months from the date of last communication, after which it is securely deleted or anonymized.
Website Analytics Data: Technical and usage data collected through automated means is retained in identifiable form for a maximum of twenty-six months. After this period, data is either deleted or aggregated into non-identifiable statistical reports.
Data Disposal: When personal information is no longer required, we securely dispose of it using industry-standard methods, including secure deletion protocols for electronic records and cross-cut shredding for physical documents.
6. Data Security Measures
We implement and maintain administrative, technical, and physical safeguards designed to protect the personal information we hold against accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access. Our security framework is reviewed and updated regularly to address evolving threats and to incorporate advances in security technology.
Technical Safeguards: These include Transport Layer Security encryption for data in transit, encryption at rest for stored sensitive data, network firewalls, intrusion detection and prevention systems, endpoint protection, multi-factor authentication for administrative access, regular vulnerability scanning, and automated patch management protocols.
Administrative Safeguards: We maintain a comprehensive information security program that includes employee training on data protection practices, access control policies based on the principle of least privilege, periodic security audits, incident response procedures, and vendor risk assessments for all third-party service providers.
Physical Safeguards: Our physical infrastructure is hosted in access-controlled data center facilities with 24/7 security monitoring, biometric access controls, environmental protections, and redundant power and connectivity. Physical access to servers is restricted to authorized personnel only.
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee absolute security, but we are committed to responding promptly to any security incident and notifying affected individuals and relevant authorities as required by applicable law.
7. International Data Transfers
CVB Ventures LLC is based in the United States, and our primary data processing activities take place on servers located within the United States. If you are accessing our website or services from outside the United States, please be aware that your information may be transferred to, stored, and processed in the United States, where our servers are located and our central database is operated.
The data protection laws of the United States may differ from those of your country of residence. By using our website or services, you consent to the transfer of your information to the United States and its processing in accordance with this Privacy Policy. We take appropriate measures to ensure that any such transfers comply with applicable data protection laws and that your information remains protected to the standards described in this policy.
Where required by applicable law, we implement standard contractual clauses, binding corporate rules, or other recognized transfer mechanisms to provide adequate safeguards for personal data transferred across international borders. If you would like further information about the specific safeguards applied to the transfer of your personal data, please contact us using the details provided at the end of this policy.
8. Your Privacy Rights
Depending on your jurisdiction, you may have certain rights regarding the personal information we hold about you. We are committed to respecting and facilitating the exercise of these rights to the extent required by applicable law. The following outlines the rights that may be available to you:
Right of Access: You have the right to request confirmation of whether we process your personal information and, if so, to obtain a copy of that information along with details about how and why we process it.
Right of Rectification: If you believe that the personal information we hold about you is inaccurate or incomplete, you may request that we correct or supplement that information.
Right of Erasure: In certain circumstances, you may request that we delete your personal information from our systems. This right is not absolute and may be subject to legal or contractual retention obligations.
Right to Restrict Processing: You may request that we limit the processing of your personal information in specific situations, such as while we verify the accuracy of data you have contested.
Right to Data Portability: Where applicable, you may request a copy of your personal information in a structured, commonly used, and machine-readable format, and have the right to transmit that data to another controller.
Right to Object: You may object to the processing of your personal information for direct marketing purposes or where the processing is based on our legitimate interests, unless we demonstrate compelling legitimate grounds that override your interests.
To exercise any of these rights, please contact us using the details provided in the Contact Information section below. We will respond to your request within the timeframe required by applicable law, typically within thirty days. We may request verification of your identity before processing your request.
9. Privacy for Children
Our website and services are not directed to, and we do not knowingly collect personal information from, individuals under the age of sixteen. We do not offer services designed for or marketed to children, and our computer systems design and integration services are intended exclusively for business and professional audiences.
If we become aware that we have inadvertently collected personal information from an individual under the age of sixteen without verifiable parental consent, we will take immediate steps to delete that information from our records. If you believe that we may have collected information from or about a child under the age of sixteen, please contact us promptly so that we can investigate and take appropriate corrective action.
We encourage parents and guardians to monitor their childrens online activities and to instruct their children never to provide personal information through websites or online forms without prior permission. We support efforts to create a safer online environment for all users, particularly minors, and we design our data collection practices with age-appropriate privacy considerations in mind.
11. Third-Party Services and Links
Our website may contain links to third-party websites, plugins, and applications that are not owned or controlled by CVB Ventures LLC. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy practices or content.
We encourage you to review the privacy policies of every third-party website or service that you visit through links on our site. The inclusion of any link does not imply our endorsement of the linked website or its privacy practices. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.
If we use third-party service providers for hosting, analytics, or other operational functions, we conduct due diligence on their privacy and security practices and enter into data processing agreements that bind them to obligations consistent with this Privacy Policy. A current list of the categories of third-party service providers we use is available upon request.
12. Data Breach Notification
We have established procedures to detect, investigate, and respond to actual or suspected data breaches involving personal information. In the event of a confirmed breach that poses a risk to your rights and freedoms, we will notify affected individuals and, where required, relevant supervisory authorities without undue delay and in accordance with applicable legal requirements.
Our breach notification will describe the nature of the breach, the categories and approximate number of individuals and records affected, a contact point for further information, the likely consequences of the breach, and the measures we have taken or propose to take to address the breach and mitigate its effects. We maintain an internal breach register documenting all incidents, whether or not they resulted in notification to affected parties.
We encourage you to report any suspected security vulnerabilities or privacy incidents to us immediately using the contact information provided at the end of this policy. We investigate all reports thoroughly and take appropriate corrective measures.
13. Legal Basis for Processing
We process personal information only where we have a valid legal basis for doing so. The specific legal basis depends on the context in which we collect and use your information and the requirements of applicable data protection law. We typically rely on one or more of the following legal bases:
Contractual Necessity: We process your information as necessary to perform a contract with you, such as delivering our computer systems design and integration services, or to take steps at your request prior to entering into a contract.
Legitimate Interests: We may process your information for our legitimate business interests, provided that those interests are not overridden by your data protection rights. Legitimate interests include improving our website, responding to inquiries, developing our service offerings, and protecting our legal rights.
Consent: In certain circumstances, we may rely on your explicit consent to process your personal information, such as for sending marketing communications or placing non-essential cookies. You have the right to withdraw your consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
Legal Obligation: We may process your information to comply with applicable laws, regulations, court orders, or other legal processes to which we are subject.
14. California Privacy Rights
If you are a resident of California, you may have additional rights under the California Consumer Privacy Act and other applicable California privacy laws. These rights include the following:
Right to Know: You have the right to request information about the categories of personal information we have collected about you, the sources from which we collected it, the business purpose for collecting or sharing it, and the categories of third parties with whom we have shared it. You may request this information up to twice in a twelve-month period.
Right to Delete: You may request that we delete personal information we have collected from you, subject to certain exceptions such as completing a transaction, detecting security incidents, or complying with legal obligations.
Right to Non-Discrimination: We will not discriminate against you for exercising any of your privacy rights. This means we will not deny you services, charge you different prices, or provide a different level or quality of service because you exercised a privacy right.
Shine the Light: Under California Civil Code Section 1798.83, California residents may request information regarding our disclosure of personal information to third parties for their direct marketing purposes. To make such a request, please contact us using the details below.
To exercise your California privacy rights, please contact us using the information in the Contact Information section. We will verify your identity before processing your request, which may require you to provide information sufficient to allow us to confirm you are the person about whom we collected personal information.
15. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our information practices, legal requirements, or operational needs. When we make changes, we will revise the Last Updated date at the top of this page and, if the changes are material, we will provide a more prominent notice, such as a notification on our homepage or an email to clients with active accounts.
We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting the personal information we collect. Your continued use of our website and services after any modification to this policy constitutes your acknowledgment of the updated terms. If you disagree with any changes, you should discontinue use of our website and services and contact us regarding your concerns.
If we make material changes that affect the way we use previously collected personal information, we will seek your consent where required by applicable law before applying those changes retroactively.
16. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data protection practices, or if you wish to exercise any of your privacy rights, please contact us using the details provided below. We are committed to addressing your inquiries promptly and thoroughly.
Company Name: CVB Ventures LLC
Address: 521 E 3RD Ave, Salt Lake City, UT 84103-2973, United States
Email: reach@machen.hair
Phone: +1 (219) 474-1960
Website: https://www.machen.hair
We aim to acknowledge all privacy-related inquiries within two business days and to provide a substantive response within thirty calendar days. If your request is particularly complex or voluminous, we may extend this period by an additional thirty days, in which case we will inform you of the extension and the reasons for the delay.
If you believe that we have not adequately addressed your privacy concerns, you have the right to lodge a complaint with the relevant data protection supervisory authority in your jurisdiction. We encourage you to contact us first so that we may attempt to resolve your concern directly.