Privacy Policy
Effective Date: March 23, 2026
1. Introduction
This policy is designed to comply with applicable data protection regulations, including but not limited to:
The General Data Protection Regulation (GDPR) in the European Union and United Kingdom
The California Consumer Privacy Act (CCPA) and other U.S. state privacy laws
The Texas Data Privacy and Security Act (TDPSA)
The Personal Information Protection and Electronic Documents Act (PIPEDA) in Canada
The Privacy Act 1988 in Australia
Other applicable privacy laws in your jurisdiction
2. Information We Collect
We collect information about you in a variety of ways, including:
Personal Data: Identifiable information such as your name, email address, phone number, business name, job title, billing information, and any other data you provide when engaging with our consulting services, requesting a diagnostic, or signing a service agreement.
Business and Operational Data: Information you share as part of our consulting engagements, including but not limited to operational metrics, workflow documentation, process maps, performance data, financial summaries, staffing models, technology stack details, and any materials submitted during a Paid Diagnostic, Guardrails Install, Transformation Engagement, or Monthly Retainer.
Usage Data: Information about your interactions with our website and services, including your IP address, browser type, operating system, referring URLs, and pages viewed.
Cookies and Tracking Technologies: We use cookies and similar tracking technologies to track activity on our website and retain certain information to improve your experience.
3. How We Use Your Information
We use the information we collect for purposes including:
Providing and managing our operations transformation consulting services, diagnostics, and retainer engagements
Preparing deliverables such as diagnostic reports, process improvement recommendations, automation roadmaps, and transformation playbooks
Managing your account and service agreements
Fulfilling contractual obligations
Communicating with you regarding service updates, project milestones, offers, and events
Improving and personalizing your user experience
Using anonymized or aggregated engagement data for research, development, case studies, benchmarking, and marketing purposes
Ensuring compliance with applicable laws and regulations
We process your personal data only when we have a valid legal basis to do so, which may include:
Your consent
Performance of a contract
Compliance with a legal obligation
Our legitimate interests, provided they do not override your fundamental rights and freedoms
4. Sharing Your Information
We may share your information in the following situations:
Service Providers and Partners: We may share data with trusted third-party service providers for payment processing (e.g., Stripe), email communications, CRM and project management tools, analytics platforms, and accounting services. These providers are contractually bound to protect your data.
Business Transfers: In the event of a merger, acquisition, sale of assets, or other business transfer, your information may be transferred as part of that transaction.
Legal Requirements: We may disclose your information to comply with legal obligations, enforce our agreements, or protect our rights, property, or safety.
We ensure that any third parties with whom we share your data are contractually bound to protect your data in compliance with applicable laws.
5. International Data Transfers
We may transfer your personal data to countries outside your home country, including to team members and service providers operating internationally. When we do so, we implement appropriate safeguards in line with applicable data protection laws, such as Standard Contractual Clauses or ensuring the recipient country has adequate data protection laws.
6. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. This includes encryption of sensitive data in transit and at rest, role-based access controls, and regular security assessments. Despite these efforts, no security measure can guarantee absolute protection.
7. Your Data Protection Rights
Depending on your location, you may have the following rights regarding your personal data:
Right to Access: Request a copy of the personal data we hold about you.
Right to Rectification: Request corrections to your personal data.
Right to Erasure: Request the deletion of your data, subject to certain conditions.
Right to Restrict Processing: Limit how we process your data.
Right to Data Portability: Request your data in a structured, commonly used format.
Right to Object: Object to the processing of your data.
Rights Regarding Automated Decision-Making: Be informed if your data is subject to automated processing and request human review.
To exercise these rights, please contact us using the information provided in the “Contact Us” section below.
8. Data Retention
We retain your data only as long as necessary to fulfill the purposes for which it was collected, including compliance with legal, accounting, and reporting obligations. Diagnostic reports, transformation deliverables, and engagement artifacts may be retained for the duration specified in your service agreement, after which they will be securely deleted or anonymized.
9. Children’s Privacy
Our services are intended for business professionals and organizations and are not directed at children under the age of 18. We do not knowingly collect personal data from children under 16. If you are a parent or guardian and believe your child has provided us with personal data, please contact us immediately.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated Privacy Policy on this page and updating the “Effective Date” at the top of this document. Your continued use of our services after such changes constitutes your acceptance of the revised policy.
11. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
Email: info@transformopshub.com
Phone: +1 972-947-2250
Address: 5900 Balcones Drive, Austin, TX 78731, USA
12. Specific Regional Provisions
For European Union and UK Residents (GDPR Compliance)
We act as a data controller for your personal data.
Our legal basis for processing your data includes consent, contract performance, and legitimate interests as applicable.
You have the right to lodge a complaint with a supervisory authority in your jurisdiction.
For California Residents (CCPA Compliance)
You have the right to request disclosure of what personal information we collect, use, disclose, and sell.
You have the right to request deletion of your personal information, subject to certain exceptions.
You have the right to opt out of the sale of your personal information. We do not sell personal information.
We will not discriminate against you for exercising your CCPA rights.
For Texas Residents (TDPSA Compliance)
You have the right to confirm whether we are processing your personal data and to access such data.
You have the right to correct inaccuracies, delete your personal data, and obtain a portable copy of your data.
You have the right to opt out of the processing of personal data for targeted advertising, the sale of personal data, or profiling in furtherance of decisions that produce legal or similarly significant effects.
We will respond to verified consumer requests within 45 days.
For Canadian Residents (PIPEDA Compliance)
We collect, use, and disclose your personal information only for purposes that a reasonable person would consider appropriate in the circumstances.
You have the right to access your personal information and request corrections.
For Australian Residents (Privacy Act Compliance)
We comply with the Australian Privacy Principles (APPs) in handling your personal information.
You have the right to request access to your personal information and ask for corrections to be made.
For Asia-Pacific Residents
We comply with applicable data protection laws in your jurisdiction, which may include specific requirements for consent, data localization, or cross-border data transfers.
By using our services, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described herein.
