Our policies regarding your data
This page is about your data and how we handle it. We live in a world where data is a very valuable asset. Please read this page carefully to understand how we handle it.
Your data's privacy
Note: This paragraph is very simple on purpose. No lawyer terms, no tricky language, we have simple and strict rules regarding client data.
We do not want to see your sensitive data. We do not request access to your customer list, client credit card numbers, client financial records, medical records or any information that is sensitive to your business. We might request a database access with “example items”, and we suggest you always provide one with all sensitive information removed. If it is absolutely necessary to work on a live environment with real information, we follow a strict policy:
We do not touch your data beyond what is necessary to complete the project
We do not make copies of it
If we agreed that making copies of it is necessary (e.g. Off-site backup), we make sure your data is always protected.
We never distribute any of your data
On-site
In case we are working on-site, we might need our equipment with us. Laptops, PDA devices and even phones can be used to access and store information. We are very strict on this, so please read this section carefully.
Make sure someone is on-site with us, and unless previously agreed as a necessity; never allow us to connect data storage devices to your database servers, backup devices, or anything that contains your sensitive information.
We will let you know what we need to carry, and if we have access devices (very often) we will require safe storage for them (e.g. Parking with your guard or a locker).
We will most likely need at least a laptop and Internet access (wired or wireless), and we suggest to have that available on different subnets and/or outside your firewall.
We will have you sign a printed document stating that our employee had constant supervision around your data storages. NO EXCEPTIONS.
There is no searching on our devices. NO EXCEPTIONS. Your employee (and maybe your guards) will be with us all the time and watch what we are doing.
If you do not agree with any of the above, please ask us not to bring any electronics and we will not.
Spikes, seeds
We encourage you to seed your data if it is unavoidable for us to get in contact with it. Seeding is a technology where you insert your own information into a live user database multiple times. In case the the database is compromised and someone contacts your clients, you get contacted as well. We can explain the technique in detail if needed.
A word on your program code
Purchased software: we do not make copies of your software, unless you agree and this is legally acceptable (e.g. You can lend us a copy of a developer tool we do not have if licensing permits, but we won't make a copy of the CMS system you paid for.)
Custom software: we do not make copies of your custom developed programs without permission. They are your intellectual property and we respect that.
Software licenses
We are not the software police or related to any anti piracy agency, we however respect the law. We will not sell, offer, trade, copy pirated software to you, nor will we find you registration codes. NO EXCEPTIONS.
We will install any software provided by you to us no matter on what media, and enter the registration code you provide. We do not ask for original media, printed manual – we trust you that your software is from legal source. We can also buy you software at authorized resellers if you need that.