Privacy Policy
Effective Date: 28th April 2025
Last Updated: 28th April 2025
Introduction
About Us
Umair Sajid (“we,” “us,” “our”) operates this website (the “Site”) and provides digital marketing consultancy services through Umair Sajid LTD, a company registered in the United States. Our registered address is [Insert Registered US Address].
Purpose of This Policy
This Privacy Policy explains how we collect, use, share, and protect your personal information. It applies to all users of our Site, services, and digital interactions.
Information We Collect
User-Provided Data
We collect the following information when you submit it via forms, emails, or consultations:
- Contact details: Name, email (e.g., umair hi@umairsajid.com), and company name.
- Service preferences: Digital marketing requirements (e.g., SEO, social media strategy).
- Payment data: Processed via Stripe, Wise, or PayPal (we do not store full card details).
Automatically Collected Data
We automatically collect non-personal data when you interact with our Site:
- Device data: IP address, browser type, operating system, and device ID.
- Usage data: Pages viewed, session duration, and referral sources (via analytics tools like Google Analytics).
Social Media Integration
Our Site includes links to social media profiles (e.g., Facebook, LinkedIn, YouTube). These platforms operate under their own privacy policies.
Cookies and Tracking Technologies
Types of Cookies
- Analytics cookies: Track website performance (e.g., Google Analytics).
- Functional cookies: Enable core features (e.g., login sessions).
Cookie Consent
We use a cookie consent banner to obtain your explicit agreement before placing non-essential cookies.
How We Use Your Data
Primary Uses
- Service delivery: To provide consultations or digital marketing solutions.
- Communication: To respond to inquiries or send updates (unsubscribe options available).
- Analytics: To improve website usability and user experience.
Legal Basis for Processing
- Contractual necessity: To fulfill service agreements.
- Legitimate interest: To enhance our services (e.g., website analytics).
Data Sharing and Third-Party Services
Third-Party Tools
We use the following services, which adhere to GDPR/CCPA standards:
- Payment gateways: Stripe, Wise, PayPal (PCI-DSS compliant).
- Analytics: Google Analytics (data anonymization enabled).
- Email services: Mailchimp (for newsletters, if applicable).
Data Sharing
We may share data with:
- Subcontractors: Third parties assisting with service delivery.
- Legal authorities: If required by law (e.g., tax audits, court orders).
International Data Transfers
Data Storage Locations
Data may be stored in the United States, United Kingdom, or European Union.
Legal Safeguards
We use Standard Contractual Clauses (SCCs) to protect EU/UK data transfers to non-EU jurisdictions.
Your Rights
GDPR (EU/UK) Rights
- Right to access: Request details about stored data.
- Right to erasure: Delete your data (where lawful).
- Right to object: Opt out of marketing or analytics.
CCPA (USA) Rights
- Right to know: Request data categories we hold.
- Right to delete: Erase personal information.
- Right to opt-out: Withdraw consent for data sharing.
Exercising Your Rights
Submit requests to umair hi@umairsajid.com. We respond within 30 days (GDPR) or 45 days (CCPA).
Data Security
Security Measures
- Encryption: SSL/TLS for data in transit.
- Access controls: Restricted internal access to user data.
- Breach protocol: Notify users within 72 hours of a confirmed breach.
Payment Security
Payment gateways (Stripe, Wise, PayPal) comply with PCI-DSS standards.
Data Retention
Retention Periods
- Customer data: Retained for 3 years after last interaction.
- Payment records: Stored for 7 years (US tax compliance).
Children’s Privacy
Age Restrictions
Our services are not intended for users under 16. We do not knowingly collect data from minors.
Updates to This Policy
Policy Changes
We may update this policy. Material changes will be notified via email and posted here.
Contact Us
Inquiries
Email: umair hi@umairsajid.com
Compliance Checklist
- GDPR: Cookie consent, lawful basis for processing, data subject rights.
- CCPA: “Do Not Sell My Info” link (even if you don’t sell data, state this).
- PCI-DSS: Payment gateways (Stripe, PayPal) comply with standards.
Notes for Developers
- Cookie banner: Implement with explicit consent for analytics/functional cookies.
- Data encryption: Use HTTPS for all pages.
- Third-party tools: Audit Google Analytics, Mailchimp, and payment gateways for compliance.