1. Scope
This Privacy Policy applies to information processed through the ORBIT marketing website, product access workflows, support channels, and merchant compliance and risk intelligence services. Customer agreements may include additional data-processing terms.
2. Information we collect
We may collect business contact information such as name, work email, company, role, website, and messages submitted through our forms. In providing the service, ORBIT may handle workspace configuration, user access records, merchant website content, scan results, findings, remediation activity, and audit events selected by a customer.
ORBIT is designed to minimize collection of sensitive information. Customers should not submit government identifiers, health records, personal credentials, or other unnecessary sensitive information through general website forms.
3. How we use information
- Provide, secure, maintain, and improve the ORBIT service.
- Respond to access requests, support questions, and product inquiries.
- Monitor system performance, prevent misuse, and verify relevant events.
- Generate website-change intelligence, findings, and audit records as configured by customers.
- Meet contractual, legal, and compliance obligations applicable to ORBIT.
4. Legal bases and business use
Where applicable law requires a legal basis, ORBIT processes information to perform contracts, pursue legitimate business interests, comply with law, and act on consent when consent is the appropriate basis. ORBIT is intended primarily for business customers and authorized business users.
5. Service providers
ORBIT may use infrastructure, security, analytics, communications, and customer-support vendors under appropriate contractual restrictions. These vendors receive only the information reasonably necessary to perform services for ORBIT and remain subject to their own privacy and security obligations.
6. Retention
We retain information for as long as reasonably necessary to provide the service, preserve customer-configured audit history, resolve disputes, enforce agreements, and meet legal obligations. Retention periods may vary by data type, customer instructions, and contractual terms.
7. Security
ORBIT is designed to use safeguards such as encryption in transit, role-based access architecture, audit logging, workspace controls, and reduced data exposure. No method of storage or transmission can be guaranteed completely secure, and this policy does not represent a certification.
8. Your choices and rights
Depending on location and applicable law, individuals may have rights to request access, correction, deletion, restriction, or portability of personal information, or to object to certain processing. We may need to verify identity and authority before fulfilling a request. Business users may also contact their organization's workspace administrator.
9. International processing
Information may be processed in jurisdictions other than the one where it was collected. Where required, ORBIT will use appropriate contractual or legal mechanisms for cross-border transfers.
10. Changes to this policy
We may update this policy as the service and legal requirements evolve. Material changes will be indicated by an updated effective date and, where appropriate, additional notice.
Contact
Questions about this policy may be directed to [SUPPORT EMAIL]. Notices may also be sent to [LEGAL ENTITY] at [BUSINESS ADDRESS].