Privacy Policy
1. Introduction and Scope
This Privacy Policy describes how Cdf Dynamic Holdings Ltd. (referred to as CDF Dynamic, we, us, or the Company) collects, uses, discloses, and protects the personal information of individuals who interact with our website, our services, and our business operations. We are a computer systems design and technology consulting firm headquartered at M048-1460 The Queensway, Etobicoke, Ontario, M8Z 1S4, Canada. The protection of your personal data is fundamental to our business ethics. We have designed this policy to be transparent, comprehensive, and compliant with applicable Canadian privacy legislation, including the Personal Information Protection and Electronic Documents Act (PIPEDA), as well as other relevant provincial and international privacy frameworks that may apply to our operations.
This policy applies to all personal information we collect through our website located at www.cdfdynamic.buzz, through our services, during consultations, through email communications, and through any other interaction with CDF Dynamic. By accessing our website or using our services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with any part of this policy, you should discontinue use of our website and services immediately. This policy forms part of our overall commitment to responsible data stewardship and aligns with our professional obligations as a provider of computer integrated systems design services. We take the handling of personal data as seriously as we take the engineering of technical systems — with precision, care, and a deep sense of responsibility.
2. Information We Collect
In the course of operating our business and providing computer systems design and consulting services, we collect several categories of information. The types of personal information we may collect include, but are not limited to, the following: (a) Contact Information, such as your full name, email address, phone number, company name, job title, and physical mailing address; (b) Professional Information, including details about your organization, your role, the nature of your business, and your technology requirements; (c) Communication Data, comprising the content of messages you send to us through our contact forms, email correspondence, phone conversations, and any attachments or supporting documentation you provide; (d) Technical Data, which may include your Internet Protocol (IP) address, browser type and version, device type, operating system, referring URLs, time zone settings, and general location data derived from your IP address; (e) Usage Data, including information about how you navigate and interact with our website, which pages you visit, the duration of your visits, and the actions you take; (f) Service Data, encompassing any information you or your organization provide to us in the course of a consulting engagement, systems audit, or technical project, which may include infrastructure diagrams, access credentials (handled with strict confidentiality protocols), and business process documentation.
We collect this information through various methods: directly from you when you fill out a contact form, subscribe to communications, or engage us for services; automatically through cookies and similar tracking technologies when you browse our website; from third-party sources such as analytics providers, advertising networks, and publicly available business databases; and through our service delivery processes, where information is generated or collected in the course of designing, implementing, and supporting technology systems for our clients. We limit our collection to information that is necessary and relevant for the purposes identified in this policy, consistent with the principle of data minimization.
3. How We Use Collected Information
The personal information we collect serves specific, legitimate business purposes. We use the information we gather to: (1) provide, operate, and maintain our computer systems design and consulting services in accordance with the terms of our engagement agreements; (2) respond to your inquiries, requests, and communications in a timely and professional manner; (3) evaluate and assess your technology needs so that we may propose appropriate solutions and prepare accurate project scopes and proposals; (4) fulfill our contractual obligations to clients, including ongoing support, system monitoring, and maintenance services; (5) communicate with you about our services, industry insights, and relevant updates, where you have consented to receive such communications; (6) improve and optimize our website, services, and user experience through analysis of usage patterns and feedback; (7) detect, prevent, and address technical issues, security vulnerabilities, and fraudulent or unauthorized activities that may compromise our systems or those of our clients; (8) comply with applicable laws, regulations, legal processes, and enforceable governmental requests; (9) enforce our Terms of Service and other agreements, including investigation of potential violations; and (10) pursue our legitimate business interests in a manner that does not override your fundamental privacy rights and freedoms.
We do not use automated decision-making or profiling that produces legal effects or similarly significant impacts on individuals. Any use of your information beyond the purposes outlined above will be communicated to you at the point of collection, and we will seek your consent where required by law.
4. How We Share Information
CDF Dynamic does not sell, trade, or rent personal information to third parties for their marketing purposes. We may share your information in the following limited circumstances: (a) With Service Providers and Subcontractors: We engage trusted third-party companies and individuals to facilitate our services, provide services on our behalf, perform website-related functions, and assist us in analyzing how our services are used. These parties have access to personal information solely to perform these tasks on our behalf and are contractually obligated to protect it, to not disclose it, and to not use it for any other purpose. Examples include cloud hosting providers, email service platforms, analytics services, and professional advisors such as legal counsel and auditors; (b) With Clients and Business Partners: In the context of joint projects, subcontracting arrangements, or collaborative consulting engagements, we may share relevant information with the primary client organization or partner entity, subject to confidentiality agreements and only to the extent necessary for project delivery; (c) For Legal Compliance and Protection: We may disclose information where we believe in good faith that disclosure is necessary to comply with a legal obligation, to protect and defend our rights or property, to prevent or investigate possible wrongdoing in connection with our services, to protect the personal safety of our users or the public, or to protect against legal liability; (d) In Corporate Transactions: If CDF Dynamic is involved in a merger, acquisition, asset sale, or other corporate reorganization, your information may be transferred as part of that transaction. We will provide notice before your information becomes subject to a different privacy policy.
5. Data Security Measures
We implement and maintain robust administrative, technical, and physical security measures designed to protect your personal information from unauthorized access, alteration, disclosure, or destruction. Our security framework includes: industry-standard encryption protocols for data in transit (TLS 1.3) and data at rest (AES-256), multi-factor authentication for all administrative access to our systems, regular security audits and penetration testing conducted by qualified third-party assessors, strict access control policies that limit data access to personnel with a legitimate business need and require unique credentials for each user, continuous network monitoring and intrusion detection systems, regular employee training on data protection and cybersecurity best practices, comprehensive incident response and data breach notification procedures, secure development practices including code reviews and vulnerability scanning, and physical security controls at our office location at M048-1460 The Queensway, Etobicoke. While we strive to use commercially acceptable means to protect personal information, no method of transmission over the Internet or method of electronic storage is absolutely secure. We cannot guarantee the absolute security of your data, but we commit to prompt notification in the event of a breach, in accordance with applicable legal requirements.
6. Data Retention Policies
We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, or as required or permitted by applicable law. Our retention periods are guided by the following principles: (a) Contact and inquiry information is retained for a maximum of three years from the date of your last interaction with us, unless a longer retention period is required for ongoing service delivery or legal compliance; (b) Client engagement records, including project documentation, contracts, and deliverables, are retained for a period of seven years following the completion of the engagement, in accordance with standard business record-keeping practices and applicable statutes of limitation; (c) Financial and billing records are retained for a minimum of seven years to comply with Canadian tax and corporate regulatory requirements; (d) Website usage data and analytics are retained in aggregate form indefinitely, and in individual form for a maximum of 26 months; (e) Security logs and access records are retained for a minimum of one year for audit and security purposes. Upon expiry of the applicable retention period, personal information is securely deleted, anonymized, or destroyed using methods appropriate to the sensitivity of the information. You may request earlier deletion of your personal information at any time, subject to any legal or contractual obligations that require us to retain certain data.
7. Your Rights and Choices
We respect and uphold your rights regarding your personal information. Depending on your jurisdiction, you may have the right to: (i) Access your personal data and obtain a copy of the information we hold about you; (ii) Request correction or rectification of inaccurate or incomplete personal information; (iii) Request deletion or erasure of your personal information, subject to our retention obligations; (iv) Restrict or object to the processing of your personal information under certain circumstances; (v) Data portability, meaning you may request that we transfer your data to another organization or directly to you in a structured, commonly used, machine-readable format; (vi) Withdraw your consent to the processing of your personal data at any time, where processing is based on consent; (vii) Lodge a complaint with a supervisory authority, such as the Office of the Privacy Commissioner of Canada, if you believe our processing of your data violates applicable law.
To exercise any of these rights, please contact us using the information provided in the Contact Information section of this policy. We will respond to your request within the timeframe required by applicable law, typically 30 days. We may require verification of your identity before processing certain requests. We do not discriminate against individuals who exercise their privacy rights.
8. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browsing experience, analyze website traffic, and understand where our visitors come from. Cookies are small text files that are stored on your device by your web browser. We use the following categories of cookies: (a) Essential Cookies: These are necessary for the website to function properly and cannot be disabled in our systems. They are usually set in response to actions you take, such as setting your privacy preferences or filling in forms; (b) Analytics Cookies: These allow us to count visits and traffic sources so we can measure and improve the performance of our site. We use Google Analytics and similar tools to understand how visitors interact with our content; (c) Functional Cookies: These enable the website to provide enhanced functionality and personalization, such as remembering your preferences; (d) Marketing Cookies: These may be set through our site by our advertising partners to build a profile of your interests and show you relevant advertisements on other sites.
You can control and manage cookies through your browser settings. Most browsers allow you to refuse cookies, delete cookies, or alert you when cookies are being set. Please note that disabling certain cookies may affect the functionality of our website. You can also opt out of targeted advertising through industry self-regulatory programs such as the Digital Advertising Alliance or the Network Advertising Initiative. By continuing to use our website without adjusting your settings, you consent to our use of cookies as described in this policy.
9. Third-Party Links and Services
Our website may contain links to third-party websites, plugins, and applications that are not owned or controlled by CDF Dynamic. Additionally, our services may integrate with third-party platforms and tools as part of system design and implementation projects. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and services and are not responsible for their privacy practices or content. When you leave our website or interact with a third-party service, we encourage you to read the privacy policy of every website and service you visit. This Privacy Policy applies solely to information collected by CDF Dynamic through our own channels. We recommend that you exercise caution and review the applicable privacy policies of any third-party services before providing them with your personal information.
We may also use social media features, such as the ability to share content through platforms like LinkedIn or Twitter. These features may collect your IP address, which page you are visiting on our site, and may set a cookie to enable the feature to function properly. Your interactions with these features are governed by the privacy policy of the company providing them.
10. International Data Transfers
Your information, including personal data, may be transferred to and maintained on computers and servers located outside of your province, country, or other governmental jurisdiction, where the data protection laws may differ from those in your jurisdiction. If you are located outside Canada and choose to provide information to us, please note that we transfer and process the data, including personal information, in Canada. Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.
We take all reasonably necessary steps to ensure that your data is treated securely and in accordance with this Privacy Policy, and no transfer of your personal information will take place to any organization or country unless there are adequate controls in place, including the security of your data and other personal information. For transfers from the European Economic Area, the United Kingdom, or Switzerland, we rely on appropriate safeguards such as Standard Contractual Clauses where applicable.
11. Privacy for Children
Our services are not directed to individuals under the age of 16. We do not knowingly collect, use, or disclose personal information from children under 16 without verifiable parental consent. If we become aware that a child under 16 has provided us with personal information without parental consent, we will take immediate steps to delete such information from our servers. If you are a parent or guardian and you believe your child has provided us with personal information, please contact us immediately using the information below so that we can take appropriate action. We take the protection of the privacy of children with utmost seriousness and comply with applicable legal requirements, including the United States provisions under the Childrens Online Privacy Protection Act (COPPA) and similar international regulations.
In the course of our professional services, we may encounter information about minors through our clients systems or databases. In such cases, we handle that information strictly in accordance with our client agreements and we require our clients to warrant that they have obtained all necessary consents for the processing of any data relating to minors.
12. Data Breach Notification
In the unlikely event of a data breach involving your personal information, we have established protocols to promptly investigate, contain, and remediate the incident. We maintain an incident response plan that is tested and updated regularly. If we determine that a breach poses a real risk of significant harm to affected individuals, we will notify you and the relevant supervisory authorities without undue delay, in accordance with our obligations under PIPEDA and other applicable laws. Our notification will describe the nature of the breach, the types of information involved, the steps we have taken to contain and remediate the breach, the steps you can take to protect yourself, and our contact information for further inquiries. We maintain detailed records of all data breaches, regardless of whether notification is required, for compliance and learning purposes.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or for other operational reasons. When we make changes, we will revise the Last Updated date at the top of this page. We will also notify you of material changes through a prominent notice on our website or, where appropriate, through direct communication to the contact information we have on file. We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information. Your continued use of our website and services after any changes to this Privacy Policy constitutes your acceptance of the updated policy. If you do not agree with the revised policy, you should discontinue use of our services and contact us to discuss your concerns. This version of the policy supersedes all previous versions.
We maintain a historical archive of previous versions of this Privacy Policy, which are available upon request. Should we make any change that would permit the collection, use, or disclosure of your personal information in a materially different manner from that described at the time of collection, we will obtain your consent before applying the change to your previously collected data.
14. Contact Information and Data Controller
CDF Dynamic, operating under the legal entity Cdf Dynamic Holdings Ltd., is the data controller responsible for your personal information. This website and our consulting services are developed and maintained by the CDF Dynamic development team. If you have any questions, concerns, or requests regarding this Privacy Policy, your personal data, or our privacy practices in general, we encourage you to contact us through the following channels:
Mailing Address:
Cdf Dynamic Holdings Ltd.
M048-1460 The Queensway
Etobicoke, Ontario, M8Z 1S4
Canada
Email: chat@cdfdynamic.buzz
Phone: +1 930 993 9283
Website: www.cdfdynamic.buzz
We are committed to resolving any privacy concerns you may have. If you are not satisfied with our response, you have the right to lodge a complaint with the Office of the Privacy Commissioner of Canada at www.priv.gc.ca or with your local data protection authority. We would, however, appreciate the opportunity to address your concerns directly before you escalate the matter to a regulatory body.
15. Your Consent
By using our website and services, you consent to the collection, use, and disclosure of your personal information as described in this Privacy Policy. Where we rely on consent as the legal basis for processing your information, you have the right to withdraw that consent at any time. Withdrawal of consent will not affect the lawfulness of processing carried out before the withdrawal. Please note that withdrawing consent may affect our ability to provide certain services to you, and we will inform you of any such implications at the time of your withdrawal request. For information that is necessary for the performance of a contract or compliance with a legal obligation, we process such data under those alternative legal bases rather than consent. This policy is governed by the laws of Canada and the Province of Ontario, without regard to conflict of law principles.