Privacy Policy

Your privacy is important to us. Learn how we protect your data.

Last Updated: 3 November 2025

Privacy at a Glance

We Don't Sell Your Data

Your information is never sold to third parties

GDPR & CCPA Compliant

We comply with international privacy laws

Your Rights Protected

Access, correct, or delete your data anytime

Secure Storage

Industry-standard encryption and security

1. Introduction

Kynetics BSD Limited ("we", "us", "our", or "Company") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services or visit our website.

This policy applies to all users of our services, including:

Website visitors

Prospective and current clients

Project stakeholders and end-users

Newsletter subscribers and contact form users

We comply with:

General Data Protection Regulation (GDPR) - for EU/UK users

California Consumer Privacy Act (CCPA) - for California residents

Other applicable data protection laws

By using our services, you consent to the data practices described in this policy.

2. Information We Collect

2.1 Personal Information You Provide

We collect information that you voluntarily provide to us, including:

Contact Information: Name, email address, phone number, company name

Business Information: Job title, company size, industry sector

Project Information: Project requirements, specifications, briefs

Payment Information: Billing address, payment method details (processed securely by third parties)

Communication Records: Messages, emails, consultation notes

Account Information: Username, password (encrypted), preferences

2.2 Automatically Collected Information

When you visit our website, we automatically collect:

Technical Data: IP address, browser type, device information, operating system

Usage Data: Pages visited, time spent on pages, click patterns, referral sources

Location Data: General geographic location based on IP address

Cookie Data: Information stored through cookies and similar technologies

2.3 Analytics and Tracking

We use analytics services to improve our website and services:

Google Analytics: Website traffic, user behavior, demographics

PostHog Cloud: Product analytics, user journeys, feature usage

Firebase: App performance, crash reporting, user engagement

Other analytics tools: As needed for specific projects

2.4 Information from Third Parties

We may receive information about you from:

Business partners and referral sources

Public databases and social media platforms

Payment processors (transaction confirmation)

Professional networking sites (LinkedIn, etc.)

3. How We Use Your Information

We use your information for the following purposes:

3.1 Service Delivery

Providing and managing our software development services

Communicating about projects, deliverables, and updates

Responding to inquiries and support requests

Processing payments and maintaining financial records

Delivering completed work and project documentation

3.2 Business Operations

Managing client relationships and accounts

Improving our services and user experience

Conducting internal research and development

Maintaining security and preventing fraud

Complying with legal and regulatory requirements

3.3 Marketing and Communications (Future)

Sending newsletters and service updates (with consent)

Sharing relevant industry insights and company news

Promoting new services or features

Conducting customer satisfaction surveys

You can opt out of marketing communications at any time.

3.4 Analytics and Optimization

Understanding how visitors use our website

Identifying popular features and content

Improving website performance and functionality

Detecting and preventing technical issues

4. Legal Basis for Processing (GDPR)

For users in the EU/UK, we process your personal data based on:

4.1 Contract Performance

Processing necessary to fulfill our service agreements

Delivering projects and maintaining client relationships

4.2 Legitimate Interests

Improving our services and user experience

Preventing fraud and ensuring security

Direct marketing to existing clients (with opt-out option)

Business analytics and optimization

4.3 Consent

Using cookies and tracking technologies

Sending marketing communications to new contacts

Processing special categories of data (if applicable)

4.4 Legal Obligation

Complying with tax and accounting requirements

Responding to legal requests and court orders

Meeting regulatory compliance obligations

You have the right to object to processing based on legitimate interests or withdraw consent at any time.

5. Data Sharing and Disclosure

5.1 We Do NOT Sell Your Data

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

5.2 Service Providers

We may share data with trusted service providers who assist us:

Payment Processors: PayPal, Stripe, banking institutions

Cloud Services: Hosting and data storage providers

Analytics Tools: Google Analytics, PostHog, Firebase

Communication Tools: Email services, project management platforms

Development Tools: Version control, testing platforms

All providers are contractually obligated to protect your data and use it only for specified purposes.

5.3 Business Transfers

If we undergo a merger, acquisition, or asset sale, your information may be transferred. We will notify you of any such change and your options.

5.4 Legal Requirements

We may disclose information when required by law:

In response to subpoenas, court orders, or legal processes

To protect our rights, property, or safety

To prevent fraud or illegal activities

To comply with regulatory investigations

5.5 With Your Consent

We may share information for other purposes with your explicit consent.

6. Data Storage and Security

6.1 Where We Store Data

Your data is currently stored:

Locally in secure file systems with encryption

With reputable cloud service providers (details provided upon request)

In jurisdictions with adequate data protection standards

For EU/UK users, we ensure appropriate safeguards for international transfers.

6.2 How We Protect Your Data

We implement industry-standard security measures:

Encryption in transit (SSL/TLS) and at rest

Regular security audits and vulnerability assessments

Access controls and authentication requirements

Secure backup and disaster recovery procedures

Employee training on data protection practices

Confidentiality agreements with all staff and contractors

6.3 Data Retention

We retain your personal data only as long as necessary:

Active client data: Duration of relationship plus legal requirements

Project files: As agreed in project contracts

Financial records: Minimum legal retention period (typically 6-7 years)

Marketing data: Until you opt out or we no longer have legitimate use

Analytics data: Typically 12-26 months

After retention periods expire, we securely delete or anonymize your data.

7. Your Privacy Rights

7.1 Rights for All Users

You have the right to:

Access: Request a copy of your personal data

Correction: Update inaccurate or incomplete information

Deletion: Request deletion of your data (subject to legal obligations)

Objection: Object to certain processing activities

Portability: Receive your data in a machine-readable format

7.2 Additional GDPR Rights (EU/UK Users)

Right to restriction of processing

Right to withdraw consent at any time

Right to lodge a complaint with a supervisory authority

Right to detailed information about processing activities

7.3 Additional CCPA Rights (California Residents)

Right to know what personal information is collected

Right to know if personal information is sold or disclosed

Right to opt out of sale of personal information (we don't sell data)

Right to non-discrimination for exercising your rights

7.4 How to Exercise Your Rights

To exercise any of these rights:

Email us at: info@kyneticsbsd.com

Subject line: "Privacy Rights Request - [Your Right]"

Include: Your name, contact details, and specific request

We will respond within 30 days (or as required by law)

We may need to verify your identity before processing requests.

8. Cookies and Tracking Technologies

8.1 What Are Cookies?

Cookies are small text files stored on your device that help us provide and improve our services.

8.2 Types of Cookies We Use

Essential Cookies (Required)

Enable basic website functionality

Remember your preferences and settings

Maintain security and prevent fraud

Analytics Cookies (With Consent)

Google Analytics: Track website usage and performance

PostHog: Analyze user behavior and feature usage

Firebase: Monitor app performance and crashes

8.3 Third-Party Cookies

Some third-party services may set their own cookies:

Social media platforms (if you share content)

Embedded content providers

Analytics and advertising partners

8.4 Managing Cookies

You can control cookies through:

Browser settings (most browsers allow blocking or deleting cookies)

Privacy settings on our website (when implemented)

Third-party opt-out tools

Note: Disabling essential cookies may affect website functionality.

8.5 Do Not Track Signals

We currently do not respond to "Do Not Track" browser signals, but you can control tracking through the methods above.

9. Children's Privacy

Our services are not intended for individuals under 18 years of age.

We do not knowingly collect personal information from children

Our services require users to be 18+ (individuals) or represent a business

If we discover we have collected data from a child, we will delete it promptly

Parents or guardians who believe we have collected information from a minor should contact us immediately at info@kyneticsbsd.com.

10. International Data Transfers

As we operate globally and serve clients in the UK, EU, and US, your data may be transferred internationally.

10.1 Safeguards for International Transfers

Standard Contractual Clauses (SCCs) approved by regulatory authorities

Adequacy decisions by the EU Commission

Binding corporate rules where applicable

Explicit consent for specific transfers when required

10.2 Your Rights Regarding International Transfers

You can request information about:

Where your data is transferred

What safeguards are in place

How to exercise your rights regarding transfers

Contact us for detailed information about our international data transfer practices.

11. Data Breach Notification

In the event of a data breach that affects your personal information:

11.1 Our Response

We will investigate the breach immediately

Take steps to contain and mitigate the breach

Assess the risk to your rights and freedoms

Notify relevant supervisory authorities within 72 hours (if required)

11.2 Notifying You

We will notify affected users if:

The breach poses a high risk to your rights and freedoms

Required by applicable law

Notification would help protect your interests

11.3 What We'll Tell You

Nature of the breach and data affected

Likely consequences and potential risks

Steps we're taking to address the breach

Recommendations for protecting yourself

Contact information for questions

12. Third-Party Links and Services

Our website and services may contain links to third-party websites and services.

12.1 Not Our Responsibility

We are not responsible for the privacy practices of third parties

Third-party sites have their own privacy policies

We encourage you to review their policies before providing information

12.2 Third-Party Integrations

When we integrate third-party services in your projects:

We will inform you of any data sharing

You remain responsible for your own privacy policy

We recommend reviewing third-party terms and policies

12.3 Social Media

If we maintain social media profiles:

Those platforms have their own privacy policies

Interactions on those platforms are governed by their terms

We may collect publicly available information from social media

13. Business Clients and End Users

13.1 When We Process Data on Your Behalf

For software development projects where we process end-user data:

You are the data controller; we are the data processor

We process data only according to your instructions

A Data Processing Agreement (DPA) will govern this processing

You are responsible for your own privacy policy and user consent

13.2 Your Responsibilities as a Client

Ensure you have legal basis to collect and share data with us

Provide necessary privacy notices to your users

Obtain required consents for data processing

Inform us of any data subject requests affecting project data

13.3 Our Responsibilities as Processor

Process data only as instructed

Implement appropriate security measures

Assist with data subject requests

Notify you of any data breaches

Delete or return data upon project completion (unless legally required to retain)

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect:

Changes in our practices or services

Legal or regulatory requirements

Technological developments

User feedback and best practices

14.1 How We Notify You of Changes

Posting the updated policy on our website

Updating the "Last Updated" date

Email notification for material changes (to registered users)

Prominent website notice for significant changes

14.2 Your Continued Use

Continued use of our services after changes take effect constitutes acceptance of the updated policy. If you disagree with changes, please discontinue use and contact us to close your account.

14.3 Archived Versions

We maintain previous versions of our Privacy Policy for reference. Contact us if you need access to a previous version.

15. Contact Us and Data Protection

15.1 General Privacy Inquiries

For questions, concerns, or requests regarding this Privacy Policy:

Email: info@kyneticsbsd.com

Subject: Privacy Inquiry

15.2 Data Protection Officer

We are in the process of appointing a Data Protection Officer. In the meantime, privacy inquiries should be directed to the email above.

15.3 Supervisory Authorities

If you are located in the EU/UK, you have the right to lodge a complaint with your local data protection authority:

UK: Information Commissioner's Office (ICO) - ico.org.uk

EU: Your national data protection authority

15.4 Response Time

We aim to respond to all privacy inquiries within:

30 days for general inquiries

1 month for GDPR requests (extendable to 3 months for complex requests)

As required by applicable law for other jurisdictions

15.5 California Residents

For CCPA-specific requests:

Email: info@kyneticsbsd.com

Subject: CCPA Request - [Type of Request]

We will not discriminate against you for exercising your CCPA rights.

16. Consent and Acceptance

By using our services, you acknowledge that:

You have read and understood this Privacy Policy

You consent to the collection, use, and disclosure of your information as described

You understand your rights and how to exercise them

For business users: You have authority to provide data and consent on behalf of your organization

If you do not agree with this policy, please do not use our services.

For specific consent requirements (e.g., marketing emails, cookies), we will obtain explicit opt-in consent as required by law.

Have Privacy Questions?

We're here to help. Contact us with any questions about your privacy, data rights, or this policy.