Privacy Policy

Your privacy is important to us. This policy explains how Servvio collects, uses, and protects your personal information.

Last Updated: June 22, 2025
GDPR & CCPA Compliant

1. Overview

Servvio ("we," "us," or "our") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, use our software development services, or engage with our mobile applications and AI solutions.

Who We Are

Servvio is a software development company specializing in custom software solutions, mobile applications, AI integration, and technology consulting for startups and growing businesses.

This policy applies to all information collected through our website (servvio.com), services, and any related communications. By using our services, you consent to the data practices described in this policy.

2. Information We Collect

Personal Information You Provide

  • Contact Information: Name, email address, phone number, company name, job title
  • Project Information: Project requirements, technical specifications, budget details
  • Communication Data: Messages, feedback, support requests, consultation notes
  • Account Information: Username, password, preferences (for client portals)
  • Payment Information: Billing address, payment method details (processed securely by third-party providers)

Information Automatically Collected

  • Usage Data: Pages visited, time spent, click patterns, referral sources
  • Device Information: IP address, browser type, operating system, device identifiers
  • Analytics Data: Website performance metrics, user engagement statistics
  • Cookies: Session cookies, preference cookies, analytics cookies

Information from Third Parties

  • Social Media: Profile information when you connect social accounts
  • Business Partners: Contact information from referral partners
  • Public Sources: Company information from public business directories

3. How We Use Information

Service Delivery

  • Providing software development, mobile app, and AI solution services
  • Managing project timelines, deliverables, and client communications
  • Offering technical support and maintenance services
  • Processing payments and managing invoices

Communication & Marketing

  • Responding to inquiries and providing customer support
  • Sending service updates, security alerts, and administrative messages
  • Marketing our services (with your consent where required)
  • Sharing industry insights and technical resources

Business Operations

  • Improving our services and developing new features
  • Analyzing usage patterns to enhance user experience
  • Ensuring security and preventing fraud
  • Complying with legal obligations and industry standards

Legal Basis for Processing (GDPR)

We process your personal data based on:

  • Contract Performance: To deliver agreed services
  • Legitimate Interest: To improve services and ensure security
  • Consent: For marketing communications and optional features
  • Legal Obligation: To comply with applicable laws

4. Information Sharing

We do not sell, trade, or rent your personal information to third parties. We may share your information in the following limited circumstances:

Service Providers

  • Cloud Hosting: AWS, Google Cloud, Microsoft Azure for secure data storage
  • Payment Processing: Stripe, PayPal for secure payment handling
  • Analytics: Google Analytics for website performance insights
  • Communication: Email service providers for business communications

Business Partners

  • Trusted subcontractors working on your projects (with your consent)
  • Technology partners for specialized integrations
  • Referral partners (limited contact information only)

Legal Requirements

  • Compliance with court orders, subpoenas, or legal processes
  • Protection of our rights, property, or safety
  • Investigation of fraud or security incidents
  • Enforcement of our terms of service

Data Processing Agreements

All third-party service providers are bound by strict data processing agreements that ensure your information is protected according to the same standards we maintain.

5. Data Security

We implement industry-standard security measures to protect your personal information:

Technical Safeguards

  • Encryption: SSL/TLS encryption for data in transit, AES-256 for data at rest
  • Access Controls: Multi-factor authentication and role-based access
  • Firewalls: Network security and intrusion detection systems
  • Regular Updates: Security patches and vulnerability assessments

Organizational Measures

  • Staff Training: Regular security awareness training for all employees
  • Access Limitation: Need-to-know basis for personal data access
  • Incident Response: Comprehensive data breach response procedures
  • Regular Audits: Internal and external security assessments

Data Breach Notification

In the unlikely event of a data breach affecting your personal information, we will:

  • Notify relevant authorities within 72 hours (GDPR requirement)
  • Inform affected individuals without undue delay
  • Provide clear information about the breach and remediation steps
  • Take immediate action to contain and resolve the incident

6. Your Rights

Depending on your location, you may have the following rights regarding your personal information:

GDPR Rights (EU Residents)

  • Right to Access: Request copies of your personal data
  • Right to Rectification: Request correction of inaccurate data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a machine-readable format
  • Right to Object: Opt out of certain data processing activities
  • Right to Withdraw Consent: Revoke consent for data processing

CCPA Rights (California Residents)

  • Right to Know: Information about data collection and use
  • Right to Delete: Request deletion of personal information
  • Right to Opt-Out: Opt out of sale of personal information
  • Right to Non-Discrimination: Equal treatment regardless of privacy choices

How to Exercise Your Rights

To exercise any of these rights, contact us at:

  • Email: privacy@servvio.com
  • Phone: +1 (555) 123-4567
  • Response Time: Within 30 days of request

7. Cookies & Tracking Technologies

We use cookies and similar tracking technologies to improve your experience on our website:

Types of Cookies We Use

Preference Cookies

Remember your settings and preferences for a personalized experience.

Marketing Cookies

Track visits across websites to deliver relevant advertisements (with consent).

Third-Party Tracking

  • Google Analytics: Website usage analytics and performance metrics
  • Google Tag Manager: Managing marketing and analytics tags
  • Social Media Pixels: LinkedIn, Twitter for business insights (with consent)

Cookie Management

You can control cookies through:

  • Your browser settings (most browsers allow you to block cookies)
  • Our cookie consent banner (for non-essential cookies)
  • Opt-out tools provided by advertising networks
  • Global Privacy Control (GPC) for automated opt-out requests

8. International Data Transfers

Servvio operates globally and may transfer your personal information to countries outside your residence, including the United States. We ensure appropriate safeguards are in place:

Transfer Mechanisms

  • Standard Contractual Clauses: EU-approved contracts for data protection
  • Adequacy Decisions: Transfers to countries with adequate protection levels
  • Certification Programs: Privacy frameworks like Privacy Shield successors
  • Explicit Consent: Your consent for specific transfer purposes

Data Storage Locations

  • Primary: United States (AWS, Google Cloud infrastructure)
  • Backup: European Union (for EU client data)
  • Processing: May occur in various countries where our team operates

Protection Standards

All international transfers maintain the same level of protection as required by applicable data protection laws, including GDPR and equivalent standards.

9. Data Retention

We retain your personal information only as long as necessary for the purposes outlined in this policy:

Retention Periods

Active Client Data

Duration of project + 3 years for support and warranty purposes

Marketing Communications

Until you unsubscribe or 2 years of inactivity

Financial Records

7 years as required by applicable tax and accounting laws

Website Analytics

26 months (Google Analytics default) or as configured

Secure Deletion

When retention periods expire or upon valid deletion requests, we securely delete or anonymize your data using industry-standard methods to ensure it cannot be recovered or reconstructed.

10. Children's Privacy

Servvio's services are designed for businesses and professionals. We do not knowingly collect personal information from children under 16 years of age (or under 13 in the United States).

If You Are a Parent or Guardian

If you believe your child has provided us with personal information, please contact us immediately at privacy@servvio.com. We will promptly investigate and delete any such information from our systems.

Age Verification

We may implement age verification mechanisms where appropriate and do not knowingly process personal data of children without proper parental consent as required by applicable laws such as COPPA.

Educational Projects

For any educational or student-focused projects, we ensure compliance with FERPA and other educational privacy regulations, working directly with educational institutions and obtaining proper consent.

11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.

How We Notify You

  • Website Notice: Prominent notice on our website for 30 days
  • Email Notification: Direct email to active clients and subscribers
  • Service Notifications: In-app notifications for significant changes
  • Updated Date: "Last Updated" date at the top of this policy

Material Changes

For material changes that significantly affect your privacy rights, we will:

  • Provide at least 30 days' advance notice
  • Obtain your consent where required by law
  • Allow you to opt out of new practices where applicable
  • Maintain previous terms for existing data where legally required

Version History

We maintain a version history of this policy. Previous versions are available upon request for transparency and compliance purposes.

12. Contact Information

If you have questions, concerns, or requests related to this Privacy Policy or our data practices, please contact us:

General Privacy Inquiries

privacy@servvio.com
+1 (555) 123-4567
Servvio Technologies, Inc.
Remote & On-site Operations

Data Protection Officer

dpo@servvio.com

For GDPR-related inquiries and data subject rights requests

Response Times

General Inquiries: 48 hours
Data Subject Requests: 30 days
Urgent Security Issues: 24 hours

Regulatory Authorities

If you believe we have not addressed your privacy concerns adequately, you have the right to lodge a complaint with your local data protection authority.

This Privacy Policy is effective as of June 22, 2025. Servvio Technologies, Inc. is committed to protecting your privacy and ensuring transparent data practices. For the most current version of this policy, please visit our website.

GDPR Compliant CCPA Compliant SOC 2 Certified ISO 27001