Privacy Policy

Last Updated: January 22, 2026

ArcLattice ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website arclattice.com, including any other media form, media channel, mobile website, or mobile application related or connected thereto (collectively, the "Site").

Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the Site.

Table of Contents

1. Information We Collect

Personal Data You Provide to Us

We collect information that you voluntarily provide to us when you:

  • Fill out contact forms on our Site
  • Request a demo or consultation
  • Subscribe to our newsletter or communications
  • Register for an account or use our services
  • Contact us directly

The personal information we may collect includes:

  • Contact Information: Name, email address, phone number, company name
  • Professional Information: Job title/role, industry, company size
  • Business Information: Compliance frameworks of interest, current compliance status, desired timeline
  • Communications: Messages, questions, or feedback you provide

Information Automatically Collected

When you visit our Site, we automatically collect certain information about your device and browsing activity:

  • Device Information: IP address, browser type, operating system
  • Usage Data: Pages visited, time spent on pages, click patterns
  • Analytics Data: Information collected through Google Analytics (see Cookies section)
  • Technical Data: Rate limiting data (IP addresses and timestamps for security purposes)

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Service Delivery: To respond to your inquiries, schedule demos, and provide information about our services
  • Communication: To send you updates, newsletters, marketing materials, and other information that may be of interest
  • Improvement: To analyze usage patterns and improve our Site and services
  • Security: To detect, prevent, and address technical issues, fraud, and security concerns
  • Legal Compliance: To comply with legal obligations and enforce our Terms of Service
  • Rate Limiting: To prevent abuse and ensure fair access to our services

Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA), our legal basis for collecting and using your personal information depends on the data and context:

  • Consent: You have given us explicit consent to process your data (e.g., contact forms)
  • Legitimate Interests: Processing is necessary for our legitimate business interests (e.g., analytics, security)
  • Legal Obligation: Processing is necessary to comply with legal requirements

3. Disclosure of Your Information

We may share your information with:

  • Service Providers: Third-party vendors who perform services on our behalf (e.g., Resend for email delivery, Google Analytics for website analytics)
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • Legal Requirements: When required by law, court order, or to protect our rights and safety
  • With Your Consent: When you explicitly authorize us to share your information

We do not sell your personal information to third parties.

4. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to collect and track information about your browsing activity.

Types of Cookies We Use:

  • Necessary Cookies: Essential for Site functionality (e.g., consent preferences)
  • Analytics Cookies: Help us understand how visitors interact with our Site (Google Analytics)
  • Functional Cookies: Remember your preferences and settings

You can control cookies through our cookie consent banner or your browser settings. Note that disabling cookies may affect Site functionality.

5. Third-Party Services

We use the following third-party services:

  • Resend: Email delivery service for contact form submissions
  • Google Analytics: Website analytics and visitor behavior tracking

These services have their own privacy policies governing their use of your information. We recommend reviewing their policies:

6. Data Retention

We retain your personal information only as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law:

  • Contact Form Data: Retained for up to 3 years or until you request deletion
  • Analytics Data: Retained according to Google Analytics' data retention settings (typically 26 months)
  • Rate Limiting Data: IP addresses are stored temporarily (1 hour) for security purposes only

7. Security of Your Information

We implement appropriate technical and organizational security measures to protect your personal information, including:

  • Input sanitization and validation
  • Rate limiting to prevent abuse
  • Spam detection and filtering
  • Secure data transmission (HTTPS)
  • Limited access to personal data

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.

8. Your Rights (GDPR & CCPA)

For EEA Residents (GDPR Rights):

If you are located in the EEA, you have the following rights:

  • Right of Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time (where consent is the legal basis)

For California Residents (CCPA Rights):

If you are a California resident, you have the following rights:

  • Right to Know: Request information about personal data we collect, use, and disclose
  • Right to Delete: Request deletion of your personal data
  • Right to Opt-Out: Opt-out of the sale of personal information (Note: We do not sell personal information)
  • Right to Non-Discrimination: Not receive discriminatory treatment for exercising your rights

To exercise any of these rights, please contact us at privacy@arclattice.com

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that are different from the laws of your country.

We ensure appropriate safeguards are in place for international data transfers, including:

  • Using service providers that comply with international data protection standards
  • Implementing standard contractual clauses approved by regulatory authorities
  • Ensuring adequate data protection measures are in place

10. Children's Privacy

Our Site is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have collected information from a child under 16, please contact us immediately at privacy@arclattice.com

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.

You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when posted on this page.

12. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us: