Privacy Policy
Last updated: January 2024
Privacy Commitment
At Cosmic Stack, we prioritize the security and privacy of our clients’ data. This policy outlines how we collect, use, and protect information.
Data Collection
We collect:
- Business contact information
- Technical deployment data
- Cloud infrastructure metrics
- Project requirements and specifications
- Usage analytics for our platforms
Enterprise Data Protection
For our enterprise clients, we implement:
- Military-grade encryption (AES-256)
- Multi-factor authentication
- Regular security audits
- Automated threat detection
- Secure cloud infrastructure
Data Usage
We use collected data to:
- Optimize cloud performance
- Enhance security measures
- Improve service delivery
- Provide technical support
- Generate performance insights
Security Measures
Our security infrastructure includes:
- ISO 27001 certified processes
- Regular penetration testing
- 24/7 security monitoring
- Automated backup systems
- Access control protocols
Client Data Rights
Enterprise clients maintain:
- Full data ownership
- Data export capabilities
- Right to data deletion
- Access to audit logs
- Control over data retention
Third-Party Services
We partner with:
- Major cloud providers (AWS, Azure, GCP)
- Industry-standard monitoring tools
- Enterprise security solutions
All partners meet our strict security requirements.
Compliance
We adhere to:
- GDPR
- CCPA
- SOC 2 Type II
- HIPAA (for healthcare clients)
- Industry-specific regulations
Data Retention
- Project data: Retained per contract terms
- Analytics: 24 months
- Security logs: 12 months
- Backup data: 6 months
Updates to Policy
Policy changes will be:
- Communicated 30 days in advance
- Sent directly to technical contacts
- Posted on our client portal
- Documented in our changelog
Contact Information
For privacy inquiries:
- Email: privacy@cosmicstack.org
- Technical Support: support@cosmicstack.org
- Security Team: security@cosmicstack.org
Cosmic Stack Technologies, Inc. San Francisco, California