Privacy and Cookie Policy
Effective Date: 1st April 2025
Information We Collect
When you interact with ShieldPhish.com, we collect both personal and non-personal information. This includes data you submit via forms or communications; technical and usage data are captured automatically. We aim to gather only the necessary information to provide services, improve functionality, and keep you informed. We do not collect sensitive personal data unless explicitly needed and with your consent.
- Full name, email address, company name, and job title.
- Details you submit via demo requests, support inquiries, or surveys.
- IP address, device type, browser version, and language settings.
- Interaction data includes page visits, clicks, and time spent on the site.
- Cookies and tracking IDs for analytics and performance monitoring.
- Information collected during webinar registrations or newsletter sign-ups.
How We Use Your Information
The information we collect serves several purposes, enabling us to deliver relevant content, secure the platform, and provide a seamless user experience. We use data to personalize communication, improve our offerings, fulfill contractual obligations, and respond to your requests effectively. We only send marketing communications with your explicit opt-in consent.
- Communicate with you regarding inquiries or service-related updates.
- Deliver requested content like whitepapers, demo access, or webinar invites.
- Analyze usage trends and improve website functionality and content.
- Provide technical support and respond to service requests.
- Send newsletters or promotional content (only if you opt in).
- Prevent misuse, monitor suspicious activity, and maintain security.
- Comply with legal obligations and respond to regulatory requests.
Legal Basis for Processing (EU/UK Residents)
Under data protection laws such as GDPR, we are required to identify the legal grounds for processing your data. These bases depend on how and why we are using the information. In most cases, we rely on your consent, a contract with you, or our legitimate business interests. When required by law, we will ask for your explicit permission before collecting or using your personal data.
- Consent: Given when you opt in for emails or data collection.
- Contractual obligation: When processing is required to fulfill your request.
- Legitimate interest: For analytics, performance, or business insights.
- Legal compliance: If we are legally required to process or share data.
- Vital interests: Rare cases to protect individual safety or legal rights.
Cookies and Tracking Technologies
Cookies help us understand how users interact with our site so we can offer a more responsive and personalized experience. They allow us to analyze performance, enhance security, and remember your preferences. Some cookies are essential to site functionality, while others support advertising or analytics. You can manage cookie preferences anytime through your browser or cookie banner settings.
- Essential cookies: Enable core features like form submissions or navigation.
- Performance cookies: Monitor site usage and optimize performance.
- Functional cookies: Save user preferences and language choices.
- Targeting cookies: Help serve relevant ads or content via third parties.
- Session cookies: Expire after you close your browser.
- Persistent cookies: Stay on your device to recognize return visits.
Sharing Your Information
We do not sell your personal information. However, to help operate our services efficiently, we may share your data with trusted third-party vendors under strict contractual agreements. These providers assist us in hosting, analytics, communications, and compliance. We may also disclose data when required by law or to protect our rights and those of others. We may share data with:
- Web hosting providers and cloud infrastructure services.
- Email marketing tools and customer support platforms.
- Analytics and optimization tools such as Google Analytics.
- Legal and financial advisors for compliance or audits.
- Law enforcement or courts comply with legal obligations.
- Event partners or co-hosted webinar organizers (with consent).
Data Retention
We retain personal data for as long as necessary to fulfill the purposes for which it was collected or to comply with legal, accounting, or regulatory requirements. Retention times depend on the type of data and our relationship with you. When data is no longer required, we delete or anonymize it securely using industry-standard practices. General retention guidelines:
- Form and contact data: Retained for up to 3 years.
- Marketing consent data: Retained until you withdraw consent.
- Transactional records: Stored for legal compliance up to 7 years.
- Analytics data: Retained per provider defaults.
- Backup data: Stored securely for limited periods for recovery.
Data Security
We prioritize the security of your data through a multi-layered approach that includes technical and organizational safeguards. ShieldPhish implements industry-standard practices to prevent data breaches, unauthorized access, and data loss. However, no online service can guarantee complete security, so we encourage users to report any suspicious activity immediately. Security measures we take:
- SSL encryption on all data transmitted between your browser and our servers.
- Access control and user authentication for staff and internal systems.
- Regular security scans, software updates, and system monitoring.
- Firewalls and secure server configurations to prevent intrusion.
- Employee training on data handling and cyber hygiene.
- Incident response protocols in the event of a data breach.
Your Rights and Choices
You have control over your personal information and can request access, correction, or deletion at any time. Depending on your jurisdiction, you may also have rights to restrict or object to data processing, or to receive a copy of your data in a portable format. We make it easy for you to exercise these rights and respond to requests promptly and transparently. You may request:
- Access to the personal data we hold about you.
- Correction of inaccurate or outdated information.
- Deletion of your data, where legally permitted.
- Restriction or objection to certain types of processing.
- Portability of your data to another service.
- Withdrawal of consent for marketing communications.
Third-Party Links
Our website may contain links to third-party websites or tools for your convenience. ShieldPhish does not control these external platforms, and we are not responsible for their content, policies, or data practices. You should review the privacy policies of any third-party sites you visit to understand how they handle your information. Be aware of the following:
- We do not endorse or control third-party privacy practices.
- Interacting with third-party services is at your discretion.
- Examples: Calendly for bookings, LinkedIn plugins, YouTube embeds.
- Always read third-party terms before sharing your data with them.
Children’s Privacy
ShieldPhish.com is designed for business professionals and is not intended for children under the age of 13. We do not knowingly collect personal information from minors. If we become aware that a child has submitted personal data through our website, we will delete it immediately and take any necessary steps to prevent future collection. Protective measures include:
- No features or forms targeting children or minors.
- Immediate deletion of any discovered underage data.
- Parental notification if we unintentionally receive a minor's data.
- Policy compliance with COPPA and other child protection laws.
Updates to This Policy
We may revise this Privacy Policy occasionally to reflect changes in our business, technologies, or legal requirements. Any updates will be posted on this page and become effective upon publication. We encourage you to check this policy periodically to stay informed about how we protect your data. Update policy includes:
- "Effective Date" changes to reflect the latest version.
- Major changes may be communicated via email or website banners.
- Your continued use of our site confirms your acceptance.
- Archived versions are available upon request for reference.
Contact Us
If you have any questions, requests, or concerns regarding this Privacy Policy or how we handle your data, please get in touch with us. We are happy to assist and respond promptly to all privacy-related inquiries.
Contact information:
Email: connect@shieldphish.com
Website: https://www.shieldphish.com