Introduction & Scope
IT Covenant Consulting LLC, a limited liability company incorporated under the laws of the State of California ("ITCC," "we," "us," "our," or "Company"), is committed to protecting and respecting your privacy. This Privacy Policy ("Policy") explains how we collect, use, disclose, retain, and safeguard your personal information in accordance with the California Consumer Privacy Act (CCPA), the California Privacy Rights Act (CPRA), and other applicable California privacy laws. This Policy applies to all personal information we collect through our website (itcovenantconsulting.com), contact forms, consultations, and service engagements. By accessing our website or engaging our services, you acknowledge that you have read and understood this Policy.
Information We Collect
We collect personal information in the following categories:
- Contact Form Data: When you submit a contact or inquiry form on our website, we collect your name, email address, phone number, company name, and any message content you provide.
- Inquiry Details: Information about your specific IT needs, business environment, compliance requirements, technical challenges, and questions you provide during initial consultations or email correspondence.
- Technical and Analytics Data: Information automatically collected when you visit our website, including your browser type, operating system, IP address, pages visited, time spent on pages, referring website, device identifiers, and interaction patterns. This data is collected through web server logs, analytics tools, and similar technologies.
- Client Project Data: For clients engaging our services, we collect information necessary to perform work, including project scope details, network architecture information, user account data, billing information, and communications related to service delivery.
How We Use Your Information
We use the personal information we collect for the following business purposes:
- Service Delivery: To respond to your inquiries, provide consultation services, deliver contracted services, and communicate regarding project status and deliverables.
- Communication: To send service-related updates, invoices, support information, security alerts, and administrative communications.
- Security and Protection: To detect, investigate, and prevent fraudulent transactions, security breaches, and abuse of our services; to protect the rights, property, and safety of ITCC, our clients, and the public.
- Legal Compliance: To comply with applicable laws, regulations, court orders, and lawful government requests; to establish, exercise, or defend legal claims.
- Service Improvement: To analyze website usage patterns, improve our website functionality and user experience, and develop new services and features.
Legal Basis for Processing
We process your personal information based on the following legal grounds:
- Consent: Where you have explicitly provided your consent to our collection and use of your personal information.
- Contract Performance: Where processing is necessary to perform our obligations under a service agreement, statement of work, or other contract with you.
- Legitimate Interests: Where we have a legitimate business interest in processing your information, such as maintaining website security, preventing fraud, improving our services, or analyzing business metrics, balanced against your privacy rights.
Information Sharing & Disclosure
We do not sell, rent, lease, or trade your personal information to third parties for their marketing purposes. We may share your personal information only in the following limited circumstances:
- Service Providers with Confidentiality Agreements: We may share information with trusted third-party service providers (such as web hosting providers, email service providers, payment processors, and analytics platforms) who assist us in operating our website and delivering services. All service providers are contractually obligated to maintain the confidentiality and security of your information and may only use it to provide services to ITCC.
- Legal Requirements: We may disclose personal information when required by law, legal process, or governmental request; to protect our legal rights, privacy, or safety; to enforce our agreements; or to prevent fraud and abuse.
- Business Transfers: In the event of a merger, acquisition, bankruptcy, or sale of substantially all of our assets, your personal information may be transferred as part of that transaction. We will provide notice before your information becomes subject to a different privacy policy.
California Privacy Rights (CCPA & CPRA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act and California Privacy Rights Act:
- Right to Know: You have the right to request that we disclose what personal information we have collected about you, the sources of that information, the purposes for which we use it, and the categories of third parties with whom we share it.
- Right to Delete: You have the right to request deletion of personal information we have collected from you, subject to certain exceptions (such as information necessary to complete requested transactions or comply with legal obligations).
- Right to Opt-Out of Sale of Personal Information: You have the right to opt-out of the sale of your personal information. We do not sell personal information; therefore, no opt-out is necessary.
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights, including by denying services, charging different prices, or providing different quality of service, except where permitted by law.
- Submitting Privacy Requests: To exercise any of these rights, please submit a written request to the contact information below. Include your name, email address, and a detailed description of your request. We will respond to verifiable requests within 45 days. You may authorize an agent to make a request on your behalf by providing written authorization and proof of identity.
Data Security
We implement comprehensive technical, administrative, and physical safeguards designed to protect your personal information against unauthorized access, alteration, disclosure, and destruction:
- Encryption: We use industry-standard SSL/TLS encryption to protect data transmitted between your browser and our website and servers.
- Access Controls: We restrict access to personal information to employees and contractors who have a legitimate need to know and who are bound by confidentiality obligations.
- Secure Transmission: Sensitive data such as payment information is transmitted using secure protocols and is not stored on our public website.
- Incident Response: We maintain procedures to detect and respond to data security incidents. In the event of a breach involving California residents' personal information, we will notify affected individuals as required by California law.
While we employ reasonable security measures, no transmission over the Internet or electronic storage method is completely secure. We cannot guarantee absolute security of your information.
Data Retention
We retain personal information for as long as necessary to fulfill the purposes for which it was collected, to satisfy legal obligations, or as required by law:
- Contact and Inquiry Data: Retained for three years from the last interaction or as required by tax and business record retention laws.
- Client Project Data: Retained for seven years from project completion, to comply with applicable business record and potential liability requirements.
- Website Analytics Data: Typically retained for 12 months unless required for legal proceedings.
- Financial Records: Retained for seven years as required by tax and accounting standards.
Cookies & Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your experience:
- Functional Cookies Only: We use only functional cookies necessary for website operation, such as session management and security. We do not use cookies for advertising, retargeting, or behavioral tracking purposes.
- Analytics: We may use basic analytics to understand website traffic and user behavior for service improvement purposes.
- Browser Controls: You can control cookies through your browser settings. Disabling cookies may impact website functionality.
Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices, content, or security of external websites. We encourage you to review the privacy policies of any third-party site before providing personal information. This Policy applies only to information collected through our website and services.
Children's Privacy
Our website and services are not intended for individuals under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected information from a child under 13 without parental consent, we will promptly delete such information. Parents or guardians who believe their child has provided information to us should contact us immediately using the contact information below.
Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by updating the "Last updated" date at the top of this page and, for significant changes, by posting notice on our website or sending you an email notification. Your continued use of our website and services following the posting of changes constitutes your acceptance of the revised Policy.
Contact Us
If you have questions about this Privacy Policy, wish to exercise your California privacy rights, have concerns about our privacy practices, or would like to report a privacy-related issue, please contact us:
Email: cgomez@itcc.llc
Address: Riverside, CA 92506
Privacy Policy Effective Date: March 1, 2026
Company: IT Covenant Consulting LLC, a California Limited Liability Company