Effective Date: August 10, 2026
Website: https://cybervantagellc.com/
Trust & Security Standards
The security controls, encryption, and data practices supporting CyberVantage LLC adhere to internationally recognized security frameworks:
- NIST CSWP / Cybersecurity Framework
- PCI-DSS Compliant Infrastructure Principles
- SSL / TLS 1.3 Encryption Standard
- EU GDPR Compliant Processing
- US State Privacy Statutes (CCPA/CPRA)
1. Information We Collect and Legal Basis
We adhere strictly to the principle of data minimization. We only collect personal information that you voluntarily submit to us via our online contact forms or direct email inquiries.
- Categories of Data Collected: Name, email address, phone number (if provided), and any message content included in your submission.
- Legal Basis for Processing (GDPR Article 6): Processing is based on our legitimate interest in responding to direct inquiries, providing requested services, or entering into pre-contractual discussions with you.
2. Data Storage, Retention, and Security Controls
To minimize privacy risks, we do not store submission data in secondary website databases or marketing tracking lists.
- Email Processing & Automatic Deletion Schedule: Submissions made through our website contact form are directly routed as an encrypted email to our secured mailbox hosted by our infrastructure provider (Hostinger). All user inquiry emails and submission messages are automatically and permanently purged after ninety (90) days from receipt, including removal from server trash folders.
- Encryption in Transit: All traffic to and from our website is encrypted using TLS 1.3 / SSL standards.
- Access Control & Infrastructure Safeguards: Receiving email accounts and administrative systems are protected by Multi-Factor Authentication (MFA) and strict access controls. Our hosting environment operates on ISO 27001 / SOC 2 compliant server infrastructure.
3. Third-Party Data Processors
We do not sell, rent, share, or trade personal data with third parties. We engage a minimal set of infrastructure providers (Data Processors) operating under strict security commitments:
- Website Infrastructure & Email Services:
- Provider: Hostinger International Ltd.
- Role: Web hosting, server infrastructure, and mailbox services.
- Location & Security: Data centers operating under GDPR and ISO 27001 / SOC 2 international security standards.
4. Cookies and Tracking Technologies
This website uses only strictly necessary functional cookies required for core site operations, navigation, and server security.
- We do not use third-party tracking pixels, cross-context behavioral tracking, social media trackers, or target-advertising cookies.
- Because we do not use non-essential tracking cookies, no cookie consent banner or opt-in prompt is required.
5. United States Consumer Privacy Rights
We do not sell, rent, trade, or share personal information with third parties for monetary or other valuable consideration under any circumstances, including under the laws of California (CCPA/CPRA), Texas (TDPSA), Virginia (VCDPA), New Mexico, or any other US state.
Residents of these states maintain the right to:
- Know & Access: Confirm what personal data is processed or collected.
- Request Erasure: Request deletion of personal data submitted via direct inquiries prior to the automatic purge cycle.
- Verify Non-Sale: Confirm that personal data is never sold or shared for cross-context behavioral advertising.
6. European Union / EEA Visitor Rights (GDPR)
If you reside within the European Union (EU) or European Economic Area (EEA), you maintain specific rights regarding your personal data under the GDPR:
- Right to Access / Portability: Request a copy of personal information held about you.
- Right to Erasure (“Right to be Forgotten”): Request that we delete personal communications prior to our standard 90-day purge schedule.
- Right to Rectification: Request correction of inaccurate personal data.
- Right to Restrict Processing: Limit how your communication is processed.
(Note: Because we automatically purge contact form submissions after 90 days, requested data may already be permanently deleted from our primary servers.)
7. Security Disclosures & Incident Reporting
We maintain appropriate administrative and technical safeguards to protect your communications. In alignment with security disclosure standards, security researchers can review our security contact guidelines via our standard manifest located at:
[https://cybervantagellc.com/.well-known/security.txt]
8. Contact Us & Data Controller Details
If you have questions, concerns, or legal inquiries regarding this Privacy Policy, your personal data, or our security practices, please reach out directly to our privacy compliance team:
- Entity: CyberVantage LLC
- Headquarters Address: Albuquerque, New Mexico 87110, United States
- General Support Email:
info@cybervantagellc.com - Telephone: +1 (310) 731-4766 | +1 (225) 266-8264
- Online Contact Form: https://cybervantagellc.com/contact-us/