Legal
Privacy Policy
Draft for review — not effective.
This draft explains how Fleming Data Group LLC handles information across its public website, client portal, and delivery of professional services.
Website inquiries
When you submit the contact form, we send your name, email, topic, message, and email opt-in choice to our team through Amazon SES. The notification includes the submission time, sending time, source IP address, and approximate region when our hosting service supplies it. IP-based location is approximate and may reflect a network or VPN location.
We compare your email address and eligible business email domain with portal customer/contact records and prior website inquiries to recognize an existing relationship. We keep a hashed email reference, eligible business domain, and submission timestamp for that purpose. Public email providers are excluded from domain matching. We do not include authentication cookies or session tokens in contact notifications.
Information we receive
We receive information you choose to provide when you contact us, request services, or use an authorized portal, including contact details, organization information, messages, documents, and activity needed to deliver the requested service.
Our hosting and security systems record technical information such as IP address, browser type, requested pages, timestamps, and security events. The portal receives identity and session information through Amazon Cognito and the configured sign-in provider.
How we use information
We use information to respond to requests, prepare and perform agreed work, authenticate users, provide and revoke access to documents and demonstrations, operate and secure systems, troubleshoot, maintain audit records, and meet legal obligations. We do not sell personal information.
Service providers and disclosure
We share information with providers that support hosting, identity, communications, and delivery only as needed for their role. We may also disclose information when required by law or reasonably necessary to protect users, clients, Fleming Data Group, or others.
Storage and retention
The public website can remember an appearance choice in browser local storage. The portal uses temporary browser storage during PKCE sign-in and a first-party session cookie after authentication. Portal documents, access records, and audit events are handled as part of the relevant client service.
We retain information for the service, security, contractual, and legal purposes that apply to it. A specific retention period may be set by a signed client agreement or service configuration.
Your choices
You can clear browser storage and cookies through your browser. You may contact us to request access, correction, or deletion, subject to identity verification and information we must retain for legal, security, or contractual reasons. Additional rights may apply based on where you live.
Children, changes, and contact
Our business services are not directed to children under 13. We may update this policy as our services change and will show an effective date when it is published. Privacy questions may be sent to info@flemingdatagroup.com.
