BoldMentor's Commitment to Your Privacy: A Global Standard in Data Protection
At BoldMentor, we understand that trust is the cornerstone of any successful partnership, especially in the digital realm. As a leading software house specializing in cutting-edge solutions, including robust Dynamics 365 CE implementations and custom module development, we are entrusted with sensitive information. Therefore, our commitment to privacy is not just a legal obligation; it's a fundamental principle embedded in every aspect of our operations, mirroring the stringent privacy standards adopted by international software companies worldwide.
This privacy policy outlines how BoldMentor collects, uses, protects, and manages your personal data, ensuring transparency, accountability, and respect for your rights.
Our Global Approach to Data Privacy
BoldMentor operates with a global mindset, proactively adhering to and often exceeding the requirements of leading international data protection regulations, including but not limited to:
- General Data Protection Regulation (GDPR) - European Union: We are fully compliant with GDPR, protecting the personal data of individuals within the European Economic Area (EEA) and beyond. This includes upholding principles like data minimization, purpose limitation, transparency, and respecting data subject rights.
- California Consumer Privacy Act (CCPA) / California Privacy Rights Act (CPRA) - United States: For our operations involving California residents, we comply with CCPA/CPRA, granting consumers specific rights regarding their personal information.
- Other Regional & National Laws: We continuously monitor and adapt our practices to comply with relevant data protection laws in all jurisdictions where we operate or have clients, including Brazil (LGPD), India (IT Act), and others as applicable.
We adhere to the principle of data minimization, collecting only the information strictly necessary for the stated purposes.
What Information BoldMentor Collects
BoldMentor collects various types of information, depending on your interaction with us (e.g., website visitor, client, prospective client, job applicant). This may include:
- Contact Information: Name, email address, phone number, company name, and job title.
- Service-Related Information: Data necessary for delivering our software solutions, including configuration details, user roles, system usage data (non-personal operational metrics), and specific project-related data shared by clients for development or support (always handled under strict data processing agreements).
- Website Usage Data: IP address, browser type, operating system, pages visited, referral source, and time spent on our site, collected via cookies and similar technologies (with appropriate consent mechanisms).
- Communication Data: Records of correspondence, inquiries, and feedback.
- Billing Information: Payment details for services rendered.
How BoldMentor Uses Your Information
BoldMentor uses the collected information for specific, legitimate purposes, including:
- Providing and Delivering Services: To fulfill our contractual obligations, implement software solutions (Dynamics 365 CE, custom modules), provide support, and ensure the functionality of our tools like the "Pricing Engine Validation" or "Validation Engine."
- Communication: To respond to inquiries, send service updates, provide project progress reports, and deliver relevant information.
- Marketing and Engagement: With your explicit consent where required, to send newsletters, promotional materials, and information about our services that may be of interest to you. You always have the right to opt-out.
- Improving Our Services: To analyze website usage, gather feedback, and enhance our software solutions, services, and overall customer experience.
- Security and Compliance: To maintain the security of our systems, prevent fraud, comply with legal obligations, and protect our rights and the rights of our users.
How BoldMentor Protects Your Information (Security by Design)
BoldMentor employs a multi-layered approach to data security, integrating "Privacy by Design" and "Security by Design" principles into our software development lifecycle and operational practices:
Technical Measures:
- Encryption: All sensitive data, both in transit and at rest, is protected using industry-standard encryption protocols.
- Access Controls: Strict role-based access controls (RBAC) ensure that personal data is only accessible by authorized personnel on a "need-to-know" basis.
- Network Security: Firewalls, intrusion detection/prevention systems, and regular vulnerability scanning protect our networks.
- Secure Development Practices: Our development teams follow secure coding guidelines and conduct regular security reviews and penetration testing for all solutions.
- Data Backups & Recovery: Robust backup and disaster recovery plans are in place to prevent data loss.
Organizational Measures:
- Employee Training: All BoldMentor employees receive regular training on data privacy principles, security best practices, and our internal privacy policies.
- Data Handling Policies: Comprehensive internal policies and procedures govern data collection, processing, storage, retention, and disposal.
- Incident Response Plan: A detailed incident response plan is in place to effectively manage and mitigate any potential data breaches, with clear notification protocols.
- Data Protection Officer (DPO): Where required by law (e.g., GDPR), we have designated individuals responsible for overseeing data protection compliance.
Data Sharing and Third Parties
BoldMentor only shares your personal data with third parties under specific circumstances and with appropriate safeguards:
- Service Providers: We may share data with trusted third-party service providers (e.g., cloud hosting providers like Azure, payment processors, analytics tools) who assist us in delivering our services. These providers are bound by strict contractual obligations to protect your data and comply with data protection laws.
- Client Data Processing: When working with clients, we act as a "data processor" for their data (e.g., customer data within a Dynamics 365 CE implementation). In such cases, we enter into comprehensive Data Processing Agreements (DPAs) that clearly define our roles, responsibilities, and security measures, ensuring full compliance with GDPR, CCPA, and other relevant regulations.
- Legal Compliance: We may disclose information if required by law, court order, or governmental regulation, or if we believe it's necessary to protect our rights, property, or safety, or the rights, property, or safety of others.
- Business Transfers: In the event of a merger, acquisition, or asset sale, your data may be transferred as part of the transaction, subject to privacy commitments.
BoldMentor will never sell your personal data to third parties for their independent marketing purposes.
International Data Transfers
As an international software company, BoldMentor may transfer and process personal data in countries outside of your country of residence, including to servers located in various global regions. We ensure that such transfers comply with international data protection laws by implementing appropriate safeguards, such as:
- Standard Contractual Clauses (SCCs): Utilizing SCCs approved by regulatory bodies (e.g., the European Commission).
- Binding Corporate Rules (BCRs): For intra-group transfers, where applicable.
- Adequacy Decisions: Relying on adequacy decisions made by relevant authorities for certain countries.
Your Data Protection Rights
BoldMentor respects your rights concerning your personal data. Depending on your jurisdiction, these rights may include:
- Right to Be Informed: To receive clear and transparent information about how your data is processed.
- Right of Access: To request access to the personal data we hold about you.
- Right to Rectification: To request correction of inaccurate or incomplete personal data.
- Right to Erasure ("Right to Be Forgotten"): To request the deletion of your personal data under certain circumstances.
- Right to Restrict Processing: To request limitations on how we process your personal data.
- Right to Data Portability: To receive your personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.
- Right to Object: To object to the processing of your personal data for certain purposes (e.g., direct marketing).
- Rights Related to Automated Decision-Making and Profiling: To object to decisions based solely on automated processing that produce legal effects concerning you.
- Right to Withdraw Consent: Where processing is based on consent, the right to withdraw that consent at any time.
To exercise any of these rights, please contact us using the details provided below. We will respond to your request within the legally required timeframe.
Data Retention
BoldMentor retains personal data only for as long as necessary to fulfill the purposes for which it was collected, including legal, accounting, or reporting requirements. Once data is no longer needed, we securely delete or anonymize it.
Changes to This Privacy Policy
BoldMentor may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by posting the updated policy on our website and, if appropriate, through direct communication.
Contact Us
If you have any questions about this Privacy Policy, our data practices, or if you wish to exercise your data protection rights, please contact us at:
BoldMentor Software House
Email: contactus@boldmentor.com
Phone: +2 011 20 27 28 30
Address: BoldMentor, Cairo Governance, New Cairo, Investors area, 11865
Your privacy is our priority. At BoldMentor, we are dedicated to building and maintaining your trust through transparent practices and robust data protection measures.