Privacy Policy
This Privacy Policy explains how Openhilltrack Inc. collects, uses, discloses, and protects personal information when you interact with our website, request services, or participate in diagnostics and consulting engagements. Our goal is to provide clear, practical information about data practices so clients and visitors understand what data we gather, why it is necessary, and how we keep it secure. We limit data collection to what is required to deliver services, to respond to inquiries, and to comply with legal obligations. If you have questions about this policy or our practices, please contact us using the details at the end of this page.
Information we collect
We collect information that enables us to provide services, communicate with you, and operate our business effectively. This includes contact details you provide when you request a consultation, such as name, email, phone number, job title, and company. For diagnostic and engagement work we may collect operational data you authorize, including usage metrics, cost reports, process maps, and vendor information. When you use our website we collect technical information such as IP address, browser type, pages viewed, and the referring site. We only retain personally identifiable information that is necessary for service delivery, legal compliance, or as part of an agreed engagement scope. We do not sell personal data to third parties and we limit access internally to staff and contractors who need the data to perform their duties.
How we use information
We use collected information to respond to inquiries, provide and improve services, manage engagements, and comply with contractual and legal obligations. Contact information is used to schedule and coordinate diagnostics, calls, and proposals. Operational and usage data provided during engagements are analyzed to identify savings opportunities, to model right-sizing actions, and to produce reports and recommendations. Technical data from the website helps us maintain performance, detect abuse, and make user experience improvements. We may use anonymized, aggregated data for research and to develop general insights about operational optimization, but such aggregated data cannot reasonably be used to identify individuals or specific companies without explicit consent. When processing personal data we rely on contractual necessity, legitimate business interests, consent where required, or other lawful bases depending on the context and jurisdiction.
Cookies and tracking technologies
Our website uses minimal cookies to support essential functionality, performance, and analytics. Cookies enable features such as remembering your cookie consent preference, protecting the site from abuse, and collecting anonymous usage statistics so we can improve navigation and content. We do not use cookies for targeted advertising. You can manage cookie preferences through the cookie consent control available in the bottom-right corner of every page. Accepting cookies allows non-essential analytics to run; rejecting cookies limits tracking to strictly necessary items that keep the website functional. If you block cookies via your browser settings some parts of the site may not function as intended. For more detailed technical information about cookie types used, please contact [email protected] and we will provide the current cookie set and purposes.
Data security and retention
We implement administrative, technical, and physical measures to protect personal data against unauthorized access, accidental loss, and unlawful processing. Access to client data is provided on a need-to-know basis and reviewed regularly. Data in transit is encrypted using TLS, and where we host or process sensitive operational datasets we use reputable service providers with strong security controls. We retain personal information only for as long as necessary to provide services, to meet legal and regulatory obligations, or as agreed with you in the scope of an engagement. When information is no longer required it is securely deleted or anonymized. Note that no system can be 100 percent secure; if a security incident affecting personal data occurs we will follow applicable notification obligations and communicate with affected parties promptly and transparently.
Your rights and choices
Depending on your jurisdiction, you may have rights regarding your personal data, including access, correction, deletion, restriction of processing, portability, or objection to certain uses. If you are a client or a website visitor and wish to exercise any rights you may have, please contact us at [email protected] or by mail at the postal address listed above. When we receive requests we will verify your identity and respond within the timeframe required by law. You can also manage cookie preferences at any time using the on-site cookie control. For data provided as part of a paid engagement, we will follow contractual terms regarding data handling, ownership, and retention; please speak to your engagement lead for specific agreements and export or deletion requests tied to the engagement contract.
Third parties and international transfers
We may share data with trusted third-party service providers who perform services on our behalf, such as cloud hosting, analytics, and communications. These providers are contractually bound to process data only on our instructions and to maintain appropriate security measures. Where data is transferred or accessed outside your country, we put safeguards in place such as contractual clauses or rely on permitted legal mechanisms. We do not sell personal data to third parties for marketing. If you require details about the specific subprocessors used for your engagement, we will provide a list upon request and include relevant contractual protections in the engagement agreement.
Changes to this policy and contact
We may update this Privacy Policy to reflect operational or legal changes. Material changes will be posted on this page with an updated effective date. For questions about this policy, to exercise your data rights, or to request data access and portability for an engagement, contact us at [email protected] or by mail at Openhilltrack Inc., 200 Market St, Suite 500, San Francisco, CA 94105, USA. We aim to respond to privacy inquiries within one business week. If you are not satisfied with our response you may have the right to lodge a complaint with a supervisory authority in your jurisdiction.