Privacy Policy
Last updated: September 4, 2026. The responsible handling of your data is a fundamental part of our professional ethics and the trust our clients place in us.
1. Privacy Commitment & Privacy by Design
GENISIS adopts a Privacy by Design philosophy: data protection is not an afterthought — it is a central architectural principle in every system we build. We are in full compliance with the European Union's General Data Protection Regulation (GDPR) and Brazil's General Data Protection Law (LGPD).
2. Responsible Data Collection
We collect only the data strictly necessary to deliver our services: full name, corporate email, phone number (optional), project details, and, in a technical context, operational browsing data (IP address, browser type). We never request sensitive data without an explicit legal and contractual basis.
3. Purpose of Data Processing
Your data is used exclusively for: preparing commercial proposals and quotes; executing and managing contracted projects; technical communication and support; secure payment processing; and complying with applicable legal and tax obligations.
4. Secure Storage, Encryption & Infrastructure
All data is stored on secure servers with TLS 1.3 encryption in transit and AES-256 at rest. We use isolated object storage (private MinIO/S3) with granular per-project access controls. Our systems are proactively monitored against unauthorized access, with well-defined security incident response plans.
5. Non-Commercialization & Minimal Data Sharing
We irrevocably guarantee: your personal and business data is NEVER sold, rented, or shared with third parties for commercial or marketing purposes. Data sharing is limited to strictly necessary technical subcontractors (e.g., Stripe payment processor, transactional email provider), always under contractual confidentiality agreements.
6. Data Subject Rights (GDPR / LGPD)
- access the personal data we hold about you
- request rectification of inaccurate or outdated data
- request permanent deletion of your data ("right to be forgotten")
- receive a portable copy of your data (data portability)
- object to certain processing activities
- withdraw consent at any time, without prejudice to the lawfulness of previous processing.
7. Cookies & Local Storage
We use only essential, technically necessary cookies for the correct functioning of the platform: authentication session cookie (secure, HttpOnly), language preference cookie (NEXT_LOCALE), and theme preference cookie (light/dark). We do not use tracking cookies, behavioral advertising, or third-party analytics without your explicit consent.
8. Data Protection Officer (DPO) Contact
To exercise your privacy rights, request clarification about this policy, or report any concern related to personal data, please contact our Data Protection Officer at [email protected].