Privacy Policy

Last Updated: January 17, 2026

Our Approach to Privacy

IntraWeb Technologies LLC ("IntraWeb," "we," "us," or "our") operates as an embedded operations consulting firm. We take data privacy seriously because trust is foundational to our client partnerships. This policy explains what information we collect, how we use it, and your rights regarding that information.

If you have questions about this policy, email us at privacy@intrawebtech.com.

Who This Policy Applies To

This privacy policy applies to:

  • Visitors to our website (intrawebtech.com)
  • Prospective clients who engage with our sales process
  • Active client organizations and their employees
  • Users of our Workant platform (when launched)

Different data practices apply to each category, detailed below.

Information We Collect

1. Website Visitors

Automatically Collected:

  • IP address and approximate location (city/region)
  • Browser type, device type, operating system
  • Pages visited, time spent, referral source
  • Cookie identifiers (see Cookie Policy below)

Tools We Use:

  • Google Analytics (anonymized IP tracking)
  • HubSpot (forms, chat, CRM tracking)
  • Vercel Analytics (performance monitoring)

Voluntarily Provided:

  • Name, email, company name (via contact forms)
  • Phone number (if you provide it)
  • Any information you share via email or chat

2. Prospective Clients

During our sales process, we collect:

  • Contact information (name, email, phone, company)
  • Job title and role
  • Company size and industry
  • Information about operational challenges (via discovery calls)
  • Communication history (emails, meeting notes, proposal feedback)

Storage: This information is stored in HubSpot CRM and Google Workspace.

3. Active Clients

For client engagements, we collect and process:

  • Employee contact information (for users involved in workflow redesign)
  • Process documentation and workflow data
  • System access credentials (stored in encrypted password managers)
  • Communication records (email, Slack, project management tools)
  • Engagement metrics (time recovered, automation performance)

Legal Basis: Client data processing is governed by our Master Services Agreement and specific engagement contracts, which include data processing addendums as needed.

4. Workant Platform Users (Future)

When Workant launches, we will collect:

  • Account information (name, email, organization)
  • Usage data (workflows created, automation performance)
  • Integration credentials (encrypted, never stored in plain text)
  • Billing information (processed via Stripe, not stored on our servers)

A separate privacy policy specific to Workant will be published prior to launch.

How We Use Your Information

Website Visitors

  • Understand site traffic and improve user experience
  • Track marketing campaign effectiveness
  • Respond to contact form inquiries
  • Send occasional product updates (if you opt in)

Prospective Clients

  • Evaluate fit for our services
  • Prepare proposals and engagement scopes
  • Follow up on conversations and proposals
  • Maintain records of business development activities

Active Clients

  • Deliver contracted services
  • Document workflow improvements and automation implementations
  • Track engagement success metrics
  • Provide ongoing support and optimization
  • Invoice for services rendered

All Categories

  • Comply with legal obligations
  • Protect against fraud or security threats
  • Enforce our terms of service
  • Improve our service offerings

Data Sharing and Third Parties

We do not sell your data. Ever.

We share data only in these limited circumstances:

Service Providers

We use third-party tools to operate our business:

  • Google Workspace: Email, document storage, calendar
  • HubSpot: CRM and marketing automation
  • Vercel: Website hosting and analytics
  • Stripe: Payment processing (Workant, when launched)
  • n8n Cloud: Workflow automation orchestration
  • Slack: Team communication and client collaboration

These providers access data only as needed to provide their services and are bound by confidentiality agreements.

Legal Requirements

We may disclose information if required by law, court order, or government request, or to protect our legal rights.

Business Transfers

If IntraWeb is acquired or merged with another company, your information may be transferred as part of that transaction. We will notify you via email and provide options regarding your data.

Client Authorization

For active client engagements, we may share process documentation or implementation details with your designated team members or authorized third-party systems as directed by you.

Data Retention

Website Visitors: Analytics data is retained for 26 months (Google Analytics default). Contact form submissions are retained indefinitely unless you request deletion.

Prospective Clients: CRM records are retained indefinitely for business development purposes. You may request deletion at any time.

Active Clients: Engagement data is retained for 7 years after contract completion for legal, tax, and operational purposes. Process documentation may be retained longer if it informs our methodology development.

Workant Users: Account data will be retained as long as your account is active, plus 90 days after cancellation. Backup data is purged after 30 days.

Your Rights

Depending on your location, you may have the following rights:

All Users

  • Access: Request a copy of the data we hold about you
  • Correction: Request corrections to inaccurate information
  • Deletion: Request deletion of your data (subject to legal retention requirements)
  • Objection: Object to certain types of data processing
  • Portability: Request your data in a machine-readable format (where applicable)

Marketing Opt-Out

You can unsubscribe from marketing emails using the link in any email footer, or by emailing privacy@intrawebtech.com.

Cookies

You can control cookies through your browser settings. Note that disabling cookies may limit website functionality.

Exercising Your Rights

To exercise any privacy rights, email privacy@intrawebtech.com with your request. We will respond within 30 days (or as required by applicable law).

Security Measures

We implement reasonable security measures to protect your data:

  • Encryption: HTTPS for website traffic, encrypted storage for sensitive client data
  • Access Controls: Role-based access, multi-factor authentication for critical systems
  • Password Management: 1Password for credential storage
  • Regular Audits: Periodic security reviews and access log monitoring
  • Vendor Standards: We select service providers with strong security practices

However, no system is completely secure. If you become aware of a security issue, please report it to security@intrawebtech.com immediately.

International Data Transfers

IntraWeb is based in New Jersey, USA. If you are located outside the United States, your information will be transferred to and processed in the US. By using our services, you consent to this transfer.

For clients in the European Union or UK, we will execute Standard Contractual Clauses or rely on other appropriate transfer mechanisms as required by GDPR.

Children's Privacy

Our services are not directed to individuals under 18. We do not knowingly collect data from children. If you believe we have inadvertently collected information from a minor, contact us immediately at privacy@intrawebtech.com.

Cookie Policy

What We Use Cookies For

  • Essential: Website functionality, security, user authentication
  • Analytics: Google Analytics, Vercel Analytics (performance monitoring)
  • Marketing: HubSpot tracking (forms, chat, page views)

Cookie Types

  • Session Cookies: Deleted when you close your browser
  • Persistent Cookies: Remain until expiration or manual deletion

Managing Cookies

Most browsers allow you to refuse cookies or delete existing ones. Visit your browser's help documentation for instructions. Disabling cookies may limit site functionality.

California Privacy Rights (CCPA)

If you are a California resident, you have additional rights:

  • Right to Know: Request disclosure of data collected, sold, or shared
  • Right to Delete: Request deletion of personal information
  • Right to Opt-Out: Opt out of sale of personal information (we do not sell data)
  • Non-Discrimination: We will not discriminate against you for exercising your rights

To exercise these rights, email privacy@intrawebtech.com or call (555) 123-4567.

Authorized Agent: You may designate an authorized agent to make requests on your behalf. We will require proof of authorization.

European Privacy Rights (GDPR)

If you are located in the European Economic Area or UK, you have rights under GDPR:

  • Lawful Basis: We process data based on consent, contract performance, legal obligation, or legitimate business interests
  • Data Protection Officer: For GDPR inquiries, contact privacy@intrawebtech.com
  • Supervisory Authority: You have the right to lodge a complaint with your local data protection authority

Changes to This Policy

We may update this privacy policy periodically to reflect changes in our practices or legal requirements. We will post the updated policy on this page with a revised "Last Updated" date.

For material changes, we will provide notice via email (if we have your email address) or a prominent notice on our website.

Third-Party Links

Our website may contain links to third-party websites. We are not responsible for the privacy practices of those sites. We encourage you to review their privacy policies before providing any information.

Business Contact Information

IntraWeb Technologies LLC
Fairfield, New Jersey, United States

General Inquiries: info@intrawebtech.com
Privacy Inquiries: privacy@intrawebtech.com
Security Issues: security@intrawebtech.com
Phone: (555) 123-4567

Consent

By using our website or services, you acknowledge that you have read and understood this privacy policy and consent to our data practices as described.

If you do not agree with this policy, please discontinue use of our website and services.

Effective Date: January 17, 2026

Appendix: Data Processing Details for Client Engagements

For transparency, here's what we typically access during client engagements:

Diagnostic Phase:

  • Process documentation you provide
  • Sample workflow data (anonymized when possible)
  • Communication patterns (email volume, meeting frequency)

Implementation Phase:

  • System credentials (encrypted storage, access limited to necessary personnel)
  • Workflow automation configurations
  • Integration API keys (encrypted, stored in secure vaults)

Ongoing Partnership:

  • Performance metrics (time saved, automation success rates)
  • Support tickets and communication logs
  • Optimization recommendations and implementation notes

Data Minimization: We request only the data necessary to deliver services. We do not access customer data, financial records, or proprietary business information unless explicitly required for the engagement scope and authorized by you in writing.

Client Control: You retain ownership of all your data. We act as a data processor under your direction. You may request data export or deletion at any time, subject to contractual retention requirements.

We use cookies to improve your experience. By clicking "Accept All", you consent to non-essential cookies. You can .