Skip to main content
DATA PROTECTION & GDPR COMPLIANCE

Privacy Policy & Data Security

This Privacy Policy outlines how Abinos collects, encrypts, processes, and safeguards personal data, telemetry, and enterprise information across our platform and services.

Document Version: 3.1Effective Date: January 1, 2026GDPR & CCPA Compliant

1. Executive Data Protection Commitment

At Abinos ("Abinos", "we", "us", or "our"), data privacy and security are foundational to our enterprise software engineering, AI platform development, and client advisory practices. We process personal and technical data strictly in compliance with global regulations, including the European Union General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and international data protection laws.

2. Information We Collect

We collect data to provide, optimize, and secure our software engineering services:

  • Account & Contact Information: Name, professional email address, company name, telephone number, job title, and project requirements submitted via contact forms or booking calendars.
  • Technical Telemetry & Analytics: IP address, browser architecture, operating system, referrer URL, device identifiers, and page interaction metadata collected automatically via secure telemetry protocols.
  • Client Data & Source Repositories: Technical specifications, source code, credentials, or databases shared under non-disclosure agreements (NDAs) for service delivery.

3. Purpose & Legal Basis of Processing

We process personal data based on legitimate business interests, contractual performance, legal compliance, and explicit consent:

Contractual Execution

Delivering customized software solutions, AI agent runtimes, motion assets, and executing client Statements of Work (SOWs).

Security & Protection

Detecting system intrusions, preventing malicious attacks, auditing API abuse, and enforcing platform access controls.

4. Data Encryption & Security Safeguards

All data in transit is encrypted using TLS 1.3 protocols, and static database entries are encrypted using AES-256 zero-trust storage standards. Access to production environments is strictly restricted via multi-factor biometric authentication, role-based access control (RBAC), and continuous threat monitoring.

5. Third-Party Data Processors

We never sell or monetize user data to third parties or advertising networks. Data is shared exclusively with trusted infrastructure sub-processors under binding Data Processing Addendums (DPAs), including cloud edge nodes (AWS, Cloudflare, Vercel) and transactional notification systems.

6. Your Rights (GDPR & International Laws)

Under applicable global data protection laws, you possess the right to:

Request access to your stored personal records
Request immediate correction of inaccurate data
Request permanent erasure ('Right to be Forgotten')
Restrict or object to specific processing channels
Request structured data portability exports
Withdraw consent at any time without penalty

Data Protection Officer (DPO) Contact

For questions regarding data processing, privacy rights requests, or security audits, contact our Data Protection Officer: