Privacy Policy
Effective Date: February 2, 2026 | Last Updated: February 2, 2026
1. Introduction
Boldarc Advisors, LLC ("we," "us," or "our") is committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, store, and protect your personal information in accordance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
This policy applies to all personal data we process through our website, services, and business operations.
2. Data Controller Information
- Company Name: Boldarc Advisors, LLC
- Address: Spring Hill, Tennessee, United States
- Email: swilt@bold-arc.com
- Phone: 630-258-1381
- Website: bold-arc.com
For data protection inquiries, please contact us at the above contact information.
3. Legal Basis for Processing Personal Data
We process your personal data based on one or more of the following legal bases as required by GDPR Article 6:
- Consent (Article 6(1)(a)): You have given clear, explicit consent for us to process your personal data for specific purposes.
- Contract Performance (Article 6(1)(b)): Processing is necessary to fulfill our contractual obligations to you or to take steps at your request before entering into a contract.
- Legal Obligation (Article 6(1)(c)): Processing is necessary to comply with legal or regulatory requirements.
- Legitimate Interests (Article 6(1)(f)): Processing is necessary for our legitimate business interests, provided these do not override your fundamental rights and freedoms.
4. Types of Personal Data We Collect
We may collect and process the following categories of personal data:
4.1 Information You Provide Directly
- Contact Information: Name, email address, phone number, business address, job title, and company name
- Account Information: Username, password (encrypted), and account preferences
- Business Information: Company details, industry sector, business needs, and project requirements
- Communication Data: Content of emails, messages, and other communications with us
- Payment Information: Billing address and payment method details (processed securely through third-party payment processors)
- Professional Information: LinkedIn profile data, professional background, and work history when relevant to our services
4.2 Information Collected Automatically
- Technical Data: IP address, browser type and version, device type, operating system, time zone setting, and location data
- Usage Data: Information about how you use our website, products, and services
- Cookies and Similar Technologies: Data collected through cookies, web beacons, and similar tracking technologies
- Analytics Data: Aggregated data about website performance and user behavior patterns
4.3 Information from Third-Party Sources
- Publicly available information from business directories and professional networking sites
- Information from business partners, vendors, and service providers
- Information from marketing and analytics platforms
5. How We Use Your Personal Data
5.1 Service Delivery and Contract Performance
- Providing consulting services, strategic planning, and AI transformation solutions
- Managing client relationships and project delivery
- Communicating about services, projects, and business matters
- Processing payments and managing billing
- Providing customer support and responding to inquiries
5.2 Business Operations and Legitimate Interests
- Improving and optimizing our website, services, and user experience
- Conducting business analytics and developing insights
- Managing our business operations and internal administration
- Protecting against fraud, security threats, and legal liability
- Enforcing our terms of service and legal agreements
5.3 Marketing and Communications (With Consent)
- Sending marketing communications about our services and offerings
- Providing newsletters, industry insights, and thought leadership content
- Conducting market research and gathering feedback
- Personalizing content and recommendations based on your interests
6. Data Sharing and Disclosure
We may share your personal data with the following categories of recipients:
- Service Providers: Cloud hosting, payment processors, CRM platforms, email services, analytics platforms
- Business Partners: When necessary to deliver services or fulfill contractual obligations
- Legal Authorities: When required by law, regulation, or legal process
- Business Transfers: In the event of a merger, acquisition, or sale of assets
7. International Data Transfers
We are based in the United States and may transfer personal data to countries outside the European Economic Area (EEA). When we transfer data internationally, we implement appropriate safeguards including Standard Contractual Clauses (SCCs) and supplementary measures.
8. Data Retention
We retain your personal data only for as long as necessary:
- Client Data: Duration of business relationship plus 7 years
- Marketing Data: Until consent withdrawal or 3 years from last engagement
- Website Analytics: 24-38 months
- Financial Records: 7 years for tax and accounting purposes
9. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies. Types include:
- Strictly Necessary Cookies: Essential for website operation (no consent required)
- Performance Cookies: Collect usage information (requires consent)
- Functional Cookies: Remember preferences (requires consent)
- Marketing Cookies: Track browsing for advertising (requires consent)
10. Your Data Protection Rights Under GDPR
Under the GDPR, you have the following rights:
- Right of Access: Request confirmation and copies of your data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data
- Right to Restriction: Request restriction of processing
- Right to Data Portability: Receive data in machine-readable format
- Right to Object: Object to processing for certain purposes
- Right to Withdraw Consent: Withdraw consent at any time
- Right to Lodge a Complaint: File a complaint with a supervisory authority
11. How to Exercise Your Rights
To exercise any of your data protection rights, please contact us using the information provided in Section 2. We will respond to your request within one month.
12. Data Security Measures
We implement appropriate technical and organizational measures to protect personal data:
- Encryption of data in transit (SSL/TLS) and at rest
- Secure password policies and two-factor authentication
- Regular security assessments and vulnerability testing
- Access controls and employee training
13. Contact Us
For any questions about this Privacy Policy or our data practices, please contact us:
- Email: swilt@bold-arc.com
- Phone: 630-258-1381
- Address: Spring Hill, Tennessee, United States
