Privacy Policy
How AC CISNERO TILE LLC collects, uses, discloses, and safeguards your personal information.
Contents
- Introduction and Scope
- Information We Collect
- How We Use Your Information
- Legal Bases for Processing
- Disclosure of Your Information
- Data Retention
- Data Security
- Your Privacy Rights
- Cookies and Tracking
- Children's Privacy
- International Data Transfers
- Third-Party Services
- Do Not Track
- Data Breach Notification
- Changes
- Contact Us
1. Introduction and Scope
This Privacy Policy describes how AC CISNERO TILE LLC, a Utah limited liability company doing business as No Cap Studio, collects, uses, stores, shares, and protects personal information obtained through our website at www.nocap.surf, through any related digital properties, through our professional services, and through any other interactions with our organization. This policy applies to all visitors, users, clients, prospective clients, vendors, and job applicants who interact with No Cap Studio in any capacity.
No Cap Studio is a computer systems design and related services firm specializing in enterprise systems architecture, cloud infrastructure engineering, systems integration, cybersecurity, and managed IT operations. Our studio is located at 1812 W 4100 S, APT 104, West Valley City, Utah 84119-4744, United States of America. Throughout this document, references to No Cap Studio, we, us, and our refer to AC CISNERO TILE LLC and its affiliated operating entities. The website was developed and is maintained by the No Cap Studio engineering team, who designed this site with data privacy and security as foundational requirements embedded in every layer of our platform.
By accessing our website or using our services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with any provision, discontinue use immediately. We reserve the right to modify this policy, effective upon posting. Continued use after changes constitutes acceptance. This Privacy Policy complies with applicable privacy laws including the California Consumer Privacy Act, the Utah Consumer Privacy Act, and applicable provisions of the GDPR. We are committed to transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, and confidentiality in all data handling practices.
2. Information We Collect
2.1 Information You Provide Directly
We collect information you voluntarily provide when interacting with our website, communicating with our team, or engaging our services. This includes contact form submissions, email correspondence, phone calls, service inquiry forms, and client onboarding documentation. Categories include your full name, business email, telephone number, job title, organization name, physical business address, billing address, payment information, tax identification numbers, and any other information you include in messages, project descriptions, or service requests. When you engage No Cap Studio for professional services, we may collect additional information necessary for contractual obligations under strict security protocols.
2.2 Information Collected Automatically
When visiting our website, information is collected automatically including IP address, browser type and version, operating system, device type, referring pages, timestamps, pages viewed, clickstream data, and form interaction behavior. Server log data is retained for thirty days.
2.3 Information from Third Parties
We may receive information from third-party sources including business intelligence platforms, public registries, professional networking platforms, and referral partners, treated in accordance with this policy and applicable law.
3. How We Use Your Information
We use information for specific business purposes necessary to provide services, operate our business, and comply with legal obligations. We use information to provide, maintain, and improve services including computer systems design, architecture consulting, cloud engineering, systems integration, cybersecurity assessment, and managed IT operations. We communicate about project status, deliverables, milestones, and service-related notifications throughout the engagement lifecycle. We respond to inquiries with personalized replies and may follow up. We process payments, manage billing, maintain financial records, and fulfill accounting obligations. We send marketing communications where consented or permitted — opt-out available. We analyze website usage and develop aggregate insights. We protect system security, monitor for unauthorized access, investigate incidents, detect fraud, enforce our Terms of Service, and comply with legal obligations.
4. Legal Bases for Processing
Contractual Necessity — processing necessary for contract performance. Legitimate Interests — processing for our legitimate interests including operating our business, customer support, fraud protection, analytics, and B2B marketing. Consent — where required, obtained before processing for specific purposes, with right to withdraw. Legal Obligation — processing to comply with laws. Vital Interests — in rare circumstances, to protect vital interests.
5. Disclosure of Your Information
We do not sell your personal information. We may share information with service providers bound by contractual obligations including cloud hosting, payment processing, CRM, email, analytics, and professional advisors. We may disclose as required by law or legal process with reasonable efforts to notify unless prohibited. We may disclose in connection with a corporate transaction. We may disclose aggregated, de-identified information for any lawful purpose.
6. Data Retention
We retain personal information for no longer than necessary. Contact form submissions are retained for two years. Client engagement records are retained for the relationship duration plus seven years. Financial records are retained for seven years per tax law. Server logs are retained for thirty days. Anonymized data may be retained indefinitely.
7. Data Security
We implement comprehensive administrative, technical, and physical safeguards including TLS 1.3 encryption, AES-256 encryption at rest, multi-factor authentication, role-based access controls, automated vulnerability scanning, intrusion detection and prevention, endpoint detection and response, SIEM with real-time alerting, and regular third-party assessments. Administrative safeguards include documented security policies reviewed annually, mandatory training, background checks, incident response procedures, vendor risk management, and tested business continuity plans. While we implement robust measures, no security system is absolute. In the event of a breach, we will notify affected individuals and relevant authorities per applicable legal requirements.
8. Your Privacy Rights
Depending on your jurisdiction, you may have rights including access and data portability, correction, deletion, restriction of processing, opt-out of sale or sharing, and non-discrimination. To exercise rights, submit a verifiable request using contact information in Section 16. We acknowledge within ten business days and respond within forty-five calendar days. Identity verification will be required.
9. Cookies and Tracking Technologies
Our website uses cookies and similar technologies to enhance browsing and analyze traffic. Essential cookies enable core functionality without requiring consent. Analytics cookies help understand interaction patterns anonymously. You may configure browser settings to manage cookies.
10. Children's Privacy
Our website and services are directed at business professionals and not intended for individuals under eighteen. We do not knowingly collect personal information from children under thirteen.
11. International Data Transfers
No Cap Studio is headquartered in the United States. Data processing occurs primarily within the United States. We implement appropriate safeguards for cross-border transfers as required by applicable law.
12. Third-Party Services
Our website may contain links to third-party websites. We are not responsible for third-party privacy practices. When engaging service providers, we conduct due diligence and enter written agreements with data protection obligations.
13. Do Not Track
Our website does not currently respond to Do Not Track signals. Manage tracking preferences through browser cookie controls.
14. Data Breach Notification
In the event of a security incident, we will execute incident response procedures and notify affected individuals and relevant authorities per applicable legal requirements, including the Utah Consumer Privacy Act notification framework.
15. Changes
We reserve the right to update this policy. Material changes will be posted with a new Last Updated date and additional notice where required by law.
16. Contact Us About Privacy
AC CISNERO TILE LLC
Attn: Privacy Office
1812 W 4100 S, APT 104
West Valley City, UT 84119-4744
United States of America
Email: care@nocap.surf
Phone: +1 (479) 383-6082
The No Cap Studio engineering team developed this website with data privacy as a foundational design principle.