Privacy

Privacy

This site collects almost nothing. Where it does, this page says exactly what, why, who handles it and how long it lasts.

The short version

No cookies

This site sets no cookies at all — not for analytics, not for advertising, not for anything.

No tracking

There is no analytics, no advertising pixel and no third-party script. Nothing on this site reports your visit to anyone.

One form

The contact form is the only place we collect personal data, and only what you type into it.

Last updated 31 July 2026

Who is responsible

North Vulnerability Intelligence LLC, trading as North Information Security, decides why and how the data described here is handled. It is the data controller for the purposes of the GDPR and the controlador for the purposes of the LGPD. You can reach us about anything on this page at contato@northinfosec.com.

What we collect, and why

Only what you submit through the contact form: your name, your email address, your company if you give one, the service you selected, and your message. We use it for one purpose — to read your enquiry and reply to it. Nothing on this site collects data in the background.

Why we are allowed to hold it

You sent us a message asking us to get in touch, so handling it is necessary to take steps at your request before entering into a contract, and rests on our legitimate interest in answering people who contact us. Under the LGPD the equivalent bases are preliminary procedures related to a contract and legitimate interest.

Who else sees it

The form is delivered by Web3Forms, which receives your submission and forwards it to our inbox. They act on our instructions as a processor. Beyond that, your enquiry stays in our email — it is not copied into a CRM, added to a mailing list, shared with partners or sold to anyone. Ever.

Booking a call

The "book a call" links take you to our scheduling page on Calendly, a separate company. Nothing is embedded here, so simply reading this site contacts them not at all — but once you follow the link you are on their platform, and whatever you enter to book a time is handled by them under their own privacy policy, not this one. If you would rather not use it, the contact form and contato@northinfosec.com reach us just as well.

How long we keep it

Until your enquiry is closed. When the conversation ends — because the work is done, or because it is clear there is no work to do — we delete the thread. We do not keep enquiries indefinitely on the chance they become useful later.

What is stored on your device

One item, in your browser's local storage, under the key north.locale. It holds either "en" or "pt" and remembers which language you last chose. It is not an identifier, it is never sent to us, and clearing your browser data removes it. Fonts are served from this site rather than a third party, so simply reading these pages contacts nobody but us.

Your rights

Whether you are in Brazil, the EU, the UK or elsewhere, you can ask us to:

  • confirm whether we hold anything about you, and give you a copy
  • correct anything that is wrong or incomplete
  • delete what we hold
  • restrict or object to how we are using it
  • provide it in a portable, machine-readable form
  • explain the basis on which we hold it

Email contato@northinfosec.com and we will answer within one month. There is no charge. If you are unhappy with how we respond, you can complain to your national data protection authority — the ANPD in Brazil, or your member state's supervisory authority in the EU.

Where the data goes

We are a United States company, and our email and the form provider are hosted in the United States. If you write to us from Brazil or the EU, your message travels there. We handle it under the terms on this page wherever it sits.

Changes

If this policy changes materially, the date at the top changes with it. We will not quietly widen what we collect and leave this page describing the old behaviour.

Contact

Questions about this policy, or about anything we hold, go to contato@northinfosec.com.