Loading...
Effective Date: January 1, 2026 | Last Updated: January 1, 2026
Planetek ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website planetek.org (the "Site"), use our services, or engage with us for fractional technology leadership, code review, security audit, managed SOC services, or the Drift platform.
This Privacy Policy applies to all information collected through our Site, services, applications, and any related services, sales, marketing, or events (collectively, the "Services"). It also describes your privacy rights and how the law protects you.
By using our Services, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Services. Your continued use of the Services following the posting of changes to this policy will be deemed your acceptance of those changes.
We may collect personal information that you voluntarily provide to us when you register for Services, express interest in obtaining information about us or our Services, participate in activities on the Site, or otherwise contact us. The personal information we collect may include:
All personal information that you provide must be true, complete, and accurate, and you must notify us of any changes to such information.
When you access or use our Services, we automatically collect certain technical information about your device and usage patterns. This information is primarily needed to maintain the security and operation of our Services, and for our internal analytics and reporting purposes. The technical information we collect includes:
In connection with providing our specialized security and code review services, we may collect and process additional technical information necessary to perform the Services. This service-specific information is collected only with your explicit authorization and includes:
All service-specific information is handled with the highest level of security and confidentiality in accordance with industry standards and our contractual obligations.
We may receive information about you from various third-party sources to supplement the information we collect directly. These third-party sources help us maintain accurate records, provide better services, and comply with our legal obligations. Third-party information sources include:
We only collect third-party information where we have a legal basis to do so and where the third party has confirmed they have the right to share such information with us.
We process your personal information for various purposes depending on how you interact with our Services, including:
You may opt-out of marketing communications at any time by clicking the unsubscribe link in our emails or contacting us directly.
We do not sell, trade, or rent your personal information to third parties for their marketing purposes. We may share your information in the following circumstances:
We may share information with third-party vendors, consultants, and service providers who perform services on our behalf, including payment processing, data hosting, email delivery, customer support, and analytics. These parties are contractually obligated to use your information only as necessary to provide services to us and are bound by strict confidentiality agreements.
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., court orders, subpoenas, government agencies). We may also disclose information when we believe in good faith that disclosure is necessary to:
In connection with or during negotiations of any merger, sale of company assets, financing, acquisition, divestiture, or dissolution of all or a portion of our business, your information may be transferred to the acquiring or successor entity. We will provide notice before your information is transferred and becomes subject to a different privacy policy.
We may share your information for any other purpose with your explicit consent or at your direction.
We may share aggregated, anonymized, or de-identified information that cannot reasonably be used to identify you. This information may be used for research, analytics, marketing, or other business purposes without restriction.
We implement comprehensive technical, administrative, and physical security measures designed to protect your information from unauthorized access, use, alteration, and disclosure:
We employ industry-standard technical security measures to protect your information from unauthorized access, disclosure, alteration, and destruction. Our technical safeguards include, but are not limited to:
These technical controls are regularly tested and updated to address emerging threats and maintain compliance with industry security standards including SOC 2, ISO 27001, and NIST Cybersecurity Framework.
We implement comprehensive administrative policies and procedures to ensure that only authorized personnel have access to personal information and that such access is limited to what is necessary to perform their job functions. Our administrative safeguards include:
These administrative controls are documented in our Information Security Policy and are reviewed and updated annually or whenever significant changes occur to our operations or threat landscape.
Our data is stored in secure, professionally managed data centers that implement multiple layers of physical security controls to prevent unauthorized physical access to servers and infrastructure. Physical safeguards include:
Our data center providers undergo regular third-party audits and maintain certifications including ISO 27001, PCI DSS, and HIPAA compliance where applicable.
Security is not a one-time implementation but an ongoing process of monitoring, testing, and improvement. We maintain continuous security operations through:
All security testing results are reviewed by our security team, and findings are tracked through remediation using our vulnerability management program.
Despite our comprehensive security measures, no system can be completely immune to security incidents. In the unlikely event of a data breach that affects your personal information, we have established procedures to respond quickly and transparently:
We will notify affected individuals and relevant regulatory authorities as required by applicable law, typically within 72 hours of confirming the breach. Our notification will include: (a) a description of the nature of the breach, including the categories and approximate number of individuals and records affected; (b) the likely consequences of the breach; (c) measures we have taken or propose to take to address the breach and mitigate potential harm; (d) contact information for our data protection officer or other point of contact where more information can be obtained; and (e) recommendations for steps you can take to protect yourself.
Notifications will be provided via email to the address associated with your account, and where required by law, through additional means such as postal mail, telephone, or prominent website notice. We will also provide updates as our investigation progresses and additional information becomes available.
While we implement robust security measures, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we continuously work to protect your information using industry best practices.
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
We determine retention periods based on:
Upon expiration of the retention period or upon your request (subject to legal obligations), we will securely delete or anonymize your personal information using industry-standard methods including:
You may request deletion of your personal data at any time by contacting privacy@planetek.org. We will honor your request subject to legal retention requirements and legitimate business needs.
Depending on your jurisdiction, you may have the following rights:
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have certain data protection rights under the General Data Protection Regulation (GDPR). These rights include:
You also have the right to lodge a complaint with your local supervisory authority if you believe we have not complied with applicable data protection laws.
California residents have specific privacy rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), including:
These rights are subject to certain exceptions and limitations as provided by applicable law. We will not discriminate against you for exercising any of your privacy rights.
To exercise these rights, contact us at privacy@planetek.com. We will respond within 30 days.
We use cookies, web beacons, pixels, and similar tracking technologies to collect and store information when you interact with our Services. These technologies help us provide, protect, and improve our Services.
You can control and manage cookies through your browser settings. Most browsers allow you to:
Note that disabling cookies may affect the functionality of our Services. For more information about cookies and how to manage them, visit www.allaboutcookies.org.
Some browsers include a "Do Not Track" (DNT) feature. Currently, there is no industry standard for how to respond to DNT signals. We do not currently respond to DNT signals, but we will update this policy if standards are established.
Your information may be transferred to, stored, and processed in countries other than your country of residence, including the United States, where our servers and service providers are located. These countries may have data protection laws that differ from those in your jurisdiction.
When we transfer personal information from the European Economic Area (EEA), United Kingdom, or Switzerland to other countries, we ensure appropriate safeguards are in place:
We conduct Transfer Impact Assessments (TIAs) to evaluate risks associated with international data transfers and implement supplementary measures where necessary to ensure adequate protection.
For more information about our international data transfer practices or to obtain copies of relevant safeguards, contact privacy@planetek.org.
Our Services are not intended for, nor directed to, individuals under the age of 18 ("Children" or "Minors"). We do not knowingly collect, use, or disclose personal information from Children without verifiable parental consent.
If we become aware that we have collected personal information from a Child without proper parental consent, we will take immediate steps to delete such information from our systems. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at privacy@planetek.org.
Parents and guardians should supervise their children's online activities and consider using parental control tools to prevent children from disclosing personal information without permission.
Our Services may contain links to third-party websites, applications, and services that are not operated by us. We are not responsible for the privacy practices or content of these third parties.
We may use third-party service providers to support our Services, including:
These third parties have their own privacy policies. We encourage you to review their privacy policies before providing any information to them. We are not responsible for their practices.
We reserve the right to modify, update, or replace this Privacy Policy at any time to reflect changes in our practices, technology, legal requirements, or for other operational reasons.
When we make material changes to this Privacy Policy, we will notify you by:
Your continued use of our Services after the effective date of any changes constitutes your acceptance of the revised Privacy Policy. If you do not agree with the changes, you must discontinue use of our Services and may request deletion of your account and personal information.
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information. Material changes will be effective 30 days after notification, unless otherwise required by law.
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA). This section provides detailed information about these rights and how to exercise them.
California residents have the following rights regarding their personal information:
To exercise these rights, submit a verifiable request to privacy@planetek.org. We will verify your identity before processing your request and respond within 45 days. We may extend this period by an additional 45 days when reasonably necessary, in which case we will notify you of the extension and the reason for it.
California residents may also contact us for a list of personal information categories we disclosed to third parties for direct marketing purposes in the preceding calendar year, along with the names and addresses of those third parties. This request may be made once per calendar year and is free of charge.
Nevada residents who have purchased goods or services from us have the right to opt-out of the sale of certain personal information to third parties who will license or sell such information to additional third parties.
We do not currently sell your personal information as defined under Nevada Revised Statutes Chapter 603A. However, if you are a Nevada resident and wish to exercise your opt-out rights or have questions about our data practices, please contact us at privacy@planetek.org with "Nevada Privacy Rights" in the subject line.
In addition to California, several other U.S. states have enacted comprehensive privacy laws that grant residents specific rights regarding their personal information. If you are a resident of one of these states, you may have additional privacy rights as described below.
Virginia residents have rights under the Virginia Consumer Data Protection Act to access, correct, delete, and obtain a copy of their personal data. Virginia residents may also opt-out of the processing of personal data for purposes of targeted advertising, the sale of personal data, or profiling in furtherance of decisions that produce legal or similarly significant effects.
Colorado residents have similar rights under the Colorado Privacy Act to access, correct, delete, and port their personal data. Colorado residents may also opt-out of targeted advertising, sale of personal data, and certain profiling activities that produce legal or similarly significant effects concerning the consumer.
Connecticut residents have rights under the Connecticut Data Privacy Act to confirm whether we process their personal data, access their data, correct inaccuracies, delete their data, and obtain a copy in a portable format. Connecticut residents may also opt-out of the processing of personal data for targeted advertising, the sale of personal data, or profiling in furtherance of solely automated decisions that produce legal or similarly significant effects.
Utah residents have rights under the Utah Consumer Privacy Act to access, delete, and obtain a copy of their personal data. Utah residents may also opt-out of the processing of personal data for targeted advertising or the sale of personal data.
To exercise any of these state-specific rights, please contact us at privacy@planetek.org with "[State Name] Privacy Rights" in the subject line. We will respond to your request within the timeframes required by applicable state law, typically within 45 days. We may need to verify your identity before processing your request and may deny requests in certain circumstances as permitted by law.
For questions about this Privacy Policy, to exercise your rights, or to file a complaint, contact us:
Planetek
Email: privacy@planetek.org
Phone: 303-356-2782
Address: 10040 Yampa Street, Commerce City, Colorado 80022
If you are located in the EU/EEA, you also have the right to lodge a complaint with your local data protection authority.
For GDPR-related inquiries, you may contact our Data Protection Officer at dpo@planetek.org