1. Introduction
Black Diamond Cybersecurity Consulting LLC (“Black Diamond Cyber,” “we,” “us,” or “our”) operates the website bd-cyber.com and provides web design, AI chatbot integration, and analytics services to local businesses.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services. Please read this policy carefully. By using our website, you consent to the practices described in this policy.
If you have questions or concerns, contact us at: blackdiamondcyber@gmail.com
2. Information We Collect
Information You Provide Directly
- Contact form submissions: Name, email address, phone number, business name, industry, and message content.
- Free site audit requests: Business website URL, business name, and contact details.
- Service purchases: Payment and billing information processed securely through Stripe. We do not store raw payment card data on our servers.
- Strategy call bookings: Name, email, and scheduling preferences.
Information Collected Automatically
- Usage data: Pages visited, time spent on pages, referring URLs, and browser type via Vercel Analytics.
- Device information: IP address, operating system, and screen resolution.
- Cookies: Session cookies necessary for site functionality. See Section 6 for details.
3. How We Use Your Information
We use the information we collect to:
- Respond to inquiries, contact form submissions, and service requests
- Process payments and deliver purchased services
- Send project status updates, invoices, and service-related communications
- Perform free website audits you have requested
- Improve our website and services based on usage patterns
- Comply with legal obligations
- Prevent fraud and protect the security of our website
We will never sell your personal information to third parties. We do not use your data for behavioral advertising or profile building.
4. Third-Party Services
We use the following third-party services to operate our business. Each has its own privacy practices:
- Vercel — Our hosting provider. Handles site deployment, edge network delivery, and web analytics. Privacy Policy: vercel.com/legal/privacy-policy
- Supabase — Our database provider. Stores contact submissions and service records. Privacy Policy: supabase.com/privacy
- Stripe — Payment processing for website and service purchases. We never see or store your full card number. Privacy Policy: stripe.com/privacy
- Google (Gmail SMTP) — Transactional email delivery for contact confirmations and audit reports. Privacy Policy: policies.google.com/privacy
5. Data Retention
We retain contact form submissions and service records for up to 3 years for business and tax purposes. Payment records are retained as required by applicable law. You may request deletion of your data at any time by contacting us (see Section 9).
6. Cookies
Our website uses cookies and similar tracking technologies. Cookies we use include:
- Strictly necessary cookies: Required for the website to function. These cannot be disabled. Examples include session state and CSRF protection tokens.
- Analytics cookies: Vercel Analytics collects anonymized usage data to help us understand how visitors use our site. This data does not identify individuals.
You can control cookie settings through your browser preferences. Disabling strictly necessary cookies may affect site functionality.
7. California Privacy Rights (CCPA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to Know: You may request a list of the personal information we have collected about you, the categories of sources, and the purposes for collection.
- Right to Delete: You may request deletion of personal information we have collected from you, subject to certain exceptions.
- Right to Opt-Out of Sale: We do not sell personal information. This right is not applicable.
- Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights.
To exercise your rights, contact us at blackdiamondcyber@gmail.com with the subject line “CCPA Privacy Request.” We will respond within 45 days.
8. Data Security
We implement industry-standard security measures to protect your information, including:
- HTTPS encryption for all data in transit
- Row-level security policies on our database
- Third-party payment processing through PCI-compliant Stripe
- Access controls limiting who can access stored data
No method of transmission over the internet is 100% secure. We cannot guarantee absolute security, but we take commercially reasonable precautions to protect your information.
9. Your Rights & Contact
You have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Request deletion of your information
- Opt out of marketing communications at any time
To exercise any of these rights, contact us at:
10. Children's Privacy
Our website and services are not directed to children under the age of 13. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the “Last updated” date at the top of this page. We encourage you to review this policy periodically. Continued use of our website after changes constitutes acceptance of the updated policy.