Privacy Notice
Last updated: 2026-10-03
legalPagesApproved to true. Public claims are limited until then.1. Who we are
Data controller identity: [BUSINESS INPUT REQUIRED — legal entity name].
Contact address: [BUSINESS INPUT REQUIRED — business address].
Privacy contact: [BUSINESS INPUT REQUIRED — privacy contact email].
2. Personal information we collect
Through the Request Review / contact forms we may collect:
- Name
- Work email
- Company
- Phone (optional)
- Product / service description
- Target market / country
- Project stage and message content
- Technical metadata reasonably needed for security (for example IP address for rate limiting)
We do not ask for patient data, government IDs, medical records or confidential technical-file uploads through the initial web form.
3. Why we collect it
- To review and respond to project enquiries
- To determine whether a project fits ConformArc’s service scope
- To communicate about next information needed
- To protect the form endpoint against abuse
4. Legal basis
[BUSINESS INPUT REQUIRED — confirm legal bases for your jurisdictions, for example legitimate interests and/or contract steps / consent where required].
5. How we use and share information
Enquiry details are used to respond to you. If specialist laboratory, assessment or regulatory support is proposed, we will explain any relevant sharing of project information before it happens.
Processors / service providers: [BUSINESS INPUT REQUIRED — hosting, email delivery, analytics if enabled].
6. International transfers
[BUSINESS INPUT REQUIRED — describe transfer locations and safeguards if personal data leaves your primary jurisdiction].
7. Retention
[BUSINESS INPUT REQUIRED — retention periods for enquiry records and security logs].
8. Your rights
Depending on applicable law, you may have rights to access, rectify, erase, restrict, object, or port personal data, and to complain to a supervisory authority. Contact: [BUSINESS INPUT REQUIRED].
9. Cookies and analytics
Strictly necessary cookies may be used for security and basic function (for example CSRF protection on forms). Non-essential analytics or advertising technologies load only after consent where required. See the Cookie Policy.
10. Security
We apply technical and organisational measures appropriate to a marketing website and enquiry form, including HTTPS, server-side validation, spam controls and least-privilege handling of secrets. No method of transmission is guaranteed perfectly secure.
