1. Controller and scope
Dathelyn Technologies, Inc. (“Dathelyn”, “we”, “us”, or “our”) is the controller of personal information collected through https://dathelyn.com and related business communications (inquiries, proposals, career applications, and client delivery correspondence).
This Privacy Policy applies to our public website and to personal information we process as a business. When we process personal data solely on a client’s instructions under a services agreement, we typically act as a processor (or service provider). In those cases, the client’s privacy notice and our data-processing terms govern that processing.
Privacy contact: privacy@dathelyn.com. General business contact: contact@dathelyn.com.
2. Information we collect
We collect information you provide, information generated through ordinary use of our site, and limited information from service providers that help us operate.
- Identity and contact data — name, email address, company, role, and message content when you contact us or apply.
- Business and project data — briefs, requirements, files, and commercial details you share for proposals, contracts, or delivery.
- Career data — résumé/CV, portfolio links, work history, and interview notes you choose to submit.
- Technical and usage data — IP address, approximate location derived from IP, browser and device type, referring URL, pages viewed, timestamps, and diagnostic logs.
- Cookie and similar technology data — as described in our Cookie Policy (including consent preferences stored locally).
- Communication metadata — email headers and delivery status when we correspond with you.
3. Sources of information
- Directly from you — forms, email, and conversations.
- Automatically — through cookies, logs, and similar technologies when you visit our site.
- Service providers — hosting, email, and (if enabled) analytics providers that process data on our behalf.
- Public or professional sources — limited publicly available professional information when relevant to a business opportunity, consistent with applicable law.
4. How we use information
We use personal information only for legitimate business purposes, including:
- Responding to inquiries, preparing proposals, and managing client relationships.
- Recruiting and evaluating candidates for studio roles or engagements.
- Delivering contracted Team-as-a-Service, engineering, and consulting work.
- Operating, securing, troubleshooting, and improving our website and internal tools.
- Preventing abuse, fraud, and security incidents.
- Complying with legal, tax, accounting, and regulatory obligations.
- Sending service messages (e.g., replies to your request). Marketing messages are sent only where permitted; you may opt out at any time.
5. Legal bases (EEA / UK / similar regimes)
Where the GDPR, UK GDPR, or similar laws apply, we rely on one or more of the following bases:
- Contract — steps prior to entering a contract, or performance of a contract with you or your organization.
- Legitimate interests — securing our systems, improving the site, responding to business inquiries, and running a remote engineering studio, balanced against your rights.
- Consent — where required (for example, certain cookies or optional marketing).
- Legal obligation — where we must retain or disclose information to comply with law.
6. Sharing and disclosures
We do not sell personal information, and we do not share personal information for cross-context behavioral advertising as those terms are commonly defined under U.S. state privacy laws.
We may disclose personal information to:
- Service providers / processors — hosting, email delivery, collaboration, security, and analytics vendors bound by confidentiality and data-protection terms.
- Professional advisors — lawyers, accountants, and insurers under confidentiality obligations.
- Corporate transactions — in connection with a merger, acquisition, financing, or sale of assets, subject to appropriate safeguards.
- Legal and safety — when required by law, legal process, or to protect the rights, safety, and property of Dathelyn, our clients, or others.
7. International transfers
Dathelyn is a globally distributed studio. Personal information may be processed in the United States and in other countries where our team members or vendors operate. Those countries may have different data-protection laws than your home country.
Where required, we use appropriate safeguards for cross-border transfers, such as Standard Contractual Clauses or equivalent contractual protections, and we assess vendor locations as part of our security review.
8. Retention
We retain personal information only as long as reasonably necessary for the purposes described in this Policy, including to meet legal, accounting, dispute-resolution, and security requirements.
- Website inquiry correspondence — typically up to 24 months after the last meaningful contact, unless a longer period is needed for an active opportunity or legal hold.
- Client engagement records — for the life of the contract plus a commercially reasonable period (often up to 7 years) for accounting and legal retention.
- Candidate materials — typically up to 24 months unless you ask us to delete sooner or a longer period is required for an open role.
- Security and server logs — shorter rolling windows unless needed to investigate an incident.
9. Security
We maintain administrative, technical, and organizational measures designed to protect personal information against unauthorized access, loss, misuse, or alteration. Measures include access controls, encryption in transit, least-privilege practices, and vendor review. No method of transmission or storage is perfectly secure.
If we become aware of a personal-data incident that requires notice under applicable law, we will notify affected individuals and regulators as required. See also our Security page for how we approach secure delivery.
10. Your rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or object to certain processing; to portability; to withdraw consent; and to lodge a complaint with a supervisory authority. Details and request instructions are in Your Privacy Rights.
11. Children
Our website and services are directed to businesses and working professionals. We do not knowingly collect personal information from children under 16. If you believe a child has provided us personal information, contact us and we will take appropriate steps to delete it.
12. Automated decision-making
We do not use automated decision-making, including profiling, that produces legal or similarly significant effects about website visitors. AI-assisted tools may be used internally to draft or organize work; human judgment remains responsible for hiring and commercial decisions.
13. Changes to this Policy
We may update this Privacy Policy from time to time. The “Last updated” date at the top reflects the latest revision. Material changes will be indicated on this page or communicated by other reasonable means. Continued use of the site after an update constitutes acknowledgment of the revised Policy where permitted by law.