Privacy Policy
Last Updated: September 1, 2026
This Privacy Policy explains how Nivaloq, Inc., a Delaware corporation ("Nivaloq," "we," "us," or "our"), collects, uses, discloses, and protects personal information through https://nivaloq.com and our custom CRM design, development, migration, hosting, maintenance, and support services (the "Services").
1. Information We Collect
Information you provide
- Names, business contact details, company information, and project inquiries.
- CRM requirements, workflow descriptions, integration needs, and migration instructions.
- Customer records and other data that a customer chooses to provide for migration, hosting, support, or development.
- Billing, contract, and support communications.
Information collected automatically
We may collect IP address, browser and device information, referring pages, visited pages, approximate location, and security or diagnostic logs. We do not use this website to sell personal data. We do not intentionally request sensitive personal data through the public website; where consent is legally required for sensitive data that we process as a controller, we obtain that consent before processing.
2. How We Use Information
We limit collection to information that is adequate, relevant, and reasonably necessary for the disclosed purposes.
- Respond to inquiries and prepare scopes and quotes.
- Design, build, migrate, host, secure, maintain, and support customer CRM systems.
- Authenticate users, prevent fraud, diagnose problems, and improve the Services.
- Meet contractual, accounting, tax, legal, and compliance obligations.
- Send service communications and, where permitted, business updates.
3. Customer Data and Service Provider Role
For customer CRM data, the customer determines the purposes and means of processing and Nivaloq generally acts as a service provider or processor. Customers are responsible for providing required notices, obtaining permissions, and configuring lawful retention and access controls.
4. Disclosures
We may disclose the categories of information described in Section 1 to hosting, infrastructure, security, payment, communications, analytics, and professional service providers that support the Services; to authorities when legally required; or to transaction counterparties and advisers in connection with a corporate transaction. These are the categories of third parties with which we may share personal information. We do not sell personal data or share it for cross-context behavioral advertising.
5. Retention and Security
We retain information for as long as needed to provide the Services, comply with law, resolve disputes, and enforce agreements. We use reasonable administrative, technical, and organizational safeguards, including access controls and encryption where appropriate. No system is completely secure.
6. Your Privacy Rights
Delaware residents have the right to confirm whether we process their personal data; access, correct, or delete that data; obtain a portable copy; obtain a list of the categories of third parties to which personal data was disclosed; and opt out of targeted advertising, the sale of personal data, or qualifying automated profiling. Nivaloq does not currently sell personal data or process it for targeted advertising. We will not discriminate against a consumer for exercising a privacy right.
Submit a request through our contact page or email [email protected]. We may verify your identity before completing a request, but we will not require you to create a new account. We will respond to a Delaware request within 45 days, subject to a legally permitted 45-day extension. If we deny a request, you may appeal by emailing the same address with the subject “Privacy Appeal.” We will respond to an appeal within 60 days and, if the appeal is denied, provide a way to contact the Delaware Department of Justice. Where applicable, Delaware residents may use an authorized agent for opt-out requests, and Nivaloq honors legally recognized universal opt-out signals.
7. International Transfers
Information may be processed in the United States and other locations where our providers operate. Where required, we use appropriate contractual or legal safeguards.
8. Children
The Services are intended for businesses and are not directed to children under 13. We do not knowingly collect personal information from children.
9. Changes and Contact
We may update this policy and will post the revised date on this page. Questions and privacy requests may be sent to [email protected].