Privacy Policy

Privacy Policy

Last Updated: September 30, 2025

Last Updated: September 30, 2025

Coresium (“Coresium,” “we,” “our,” or “us”) is committed to protecting your privacy and ensuring transparency in how we collect, use, share, and safeguard your information. This Privacy Policy applies to all visitors, users, and customers who access our website coresium.com or use our products and services (collectively, the “Services”).

Coresium (“Coresium,” “we,” “our,” or “us”) is committed to protecting your privacy and ensuring transparency in how we collect, use, share, and safeguard your information. This Privacy Policy applies to all visitors, users, and customers who access our website coresium.com or use our products and services (collectively, the “Services”).

By accessing or using our Services, you acknowledge that you have read and understood this Privacy Policy.

By accessing or using our Services, you acknowledge that you have read and understood this Privacy Policy.

1. Information We Collect

1. Information We Collect

We collect information to deliver and improve our Services. This includes:

We collect information to deliver and improve our Services. This includes:

A. Personal Information

A. Personal Information

Name, email address, phone number, mailing address.

Name, email address, phone number, mailing address.

Account details and login credentials (if applicable).

Account details and login credentials (if applicable).

Billing and payment information (processed via secure third-party providers).

Billing and payment information (processed via secure third-party providers).

Any information you provide when contacting us, scheduling a call, or subscribing to updates.

Any information you provide when contacting us, scheduling a call, or subscribing to updates.

B. Automatically Collected Information

B. Automatically Collected Information

IP address, device identifiers, browser type, operating system.

IP address, device identifiers, browser type, operating system.

Referring/exit URLs, pages viewed, clickstream data.

Referring/exit URLs, pages viewed, clickstream data.

Dates and times of access.

Dates and times of access.

Log files, diagnostics, crash reports, and performance analytics.

Log files, diagnostics, crash reports, and performance analytics.

C. Cookies & Tracking Technologies

C. Cookies & Tracking Technologies

Session cookies, persistent cookies, pixels, beacons, tags, and scripts.

Session cookies, persistent cookies, pixels, beacons, tags, and scripts.

Used for authentication, remembering preferences, analyzing traffic, and personalizing content/ads (where applicable).

Used for authentication, remembering preferences, analyzing traffic, and personalizing content/ads (where applicable).

D. Information from Third Parties

D. Information from Third Parties

If you interact with us via social media, scheduling tools (e.g., Calendly), or partners, we may receive information subject to their privacy practices.

If you interact with us via social media, scheduling tools (e.g., Calendly), or partners, we may receive information subject to their privacy practices.

2. Legal Bases for Processing (GDPR/UK GDPR)

2. Legal Bases for Processing (GDPR/UK GDPR)

We process your information under the following lawful bases:

We process your information under the following lawful bases:

Consent: When you opt in to receive marketing or accept cookies.

Consent: When you opt in to receive marketing or accept cookies.

Contract: To provide Services you request.

Contract: To provide Services you request.

Legal Obligation: To comply with applicable laws and regulations.

Legal Obligation: To comply with applicable laws and regulations.

Legitimate Interests: To improve Services, ensure security, and prevent fraud, unless overridden by your rights.

Legitimate Interests: To improve Services, ensure security, and prevent fraud, unless overridden by your rights.

3. How We Use Your Information

3. How We Use Your Information

We use collected data for purposes including:

We use collected data for purposes including:

Operating, maintaining, and improving our Services.

Operating, maintaining, and improving our Services.

Responding to inquiries, support requests, and feedback.

Responding to inquiries, support requests, and feedback.

Sending transactional messages, newsletters, and promotional communications (with opt-out rights).

Sending transactional messages, newsletters, and promotional communications (with opt-out rights).

Monitoring activity to detect, investigate, and prevent fraud, abuse, and security risks.

Monitoring activity to detect, investigate, and prevent fraud, abuse, and security risks.

Enforcing our Terms of Service.

Enforcing our Terms of Service.

Complying with legal and regulatory requirements.

Complying with legal and regulatory requirements.

4. How We Share Information

4. How We Share Information

We do not sell personal information. We may share data in these limited circumstances:

We do not sell personal information. We may share data in these limited circumstances:

Service Providers & Vendors: With trusted providers offering hosting, analytics, marketing, billing, cloud storage, communication, and security.

Service Providers & Vendors: With trusted providers offering hosting, analytics, marketing, billing, cloud storage, communication, and security.

Business Transfers: In case of merger, acquisition, reorganization, or sale of assets.

Business Transfers: In case of merger, acquisition, reorganization, or sale of assets.

Legal Compliance & Protection: When required by law, regulation, subpoena, or to defend rights, property, and safety.

Legal Compliance & Protection: When required by law, regulation, subpoena, or to defend rights, property, and safety.

With Your Consent: When you explicitly authorize sharing.

With Your Consent: When you explicitly authorize sharing.

5. International Data Transfers

5. International Data Transfers

Coresium operates globally. Your information may be transferred to and processed in countries outside your jurisdiction. Where required, we implement appropriate safeguards (e.g., EU Standard Contractual Clauses, UK Addenda, adequacy decisions) to protect your information.

Coresium operates globally. Your information may be transferred to and processed in countries outside your jurisdiction. Where required, we implement appropriate safeguards (e.g., EU Standard Contractual Clauses, UK Addenda, adequacy decisions) to protect your information.

6. Data Retention

6. Data Retention

We retain personal data only as long as necessary to:

We retain personal data only as long as necessary to:

Fulfill the purposes outlined in this Policy.

Fulfill the purposes outlined in this Policy.

Comply with legal, tax, and regulatory obligations.

Comply with legal, tax, and regulatory obligations.

Resolve disputes and enforce agreements.

Resolve disputes and enforce agreements.

When no longer needed, data is securely deleted or anonymized.

When no longer needed, data is securely deleted or anonymized.

7. Your Rights

7. Your Rights

Depending on your jurisdiction (e.g., GDPR, CCPA/CPRA, UK GDPR, LGPD), you may have the following rights:

Depending on your jurisdiction (e.g., GDPR, CCPA/CPRA, UK GDPR, LGPD), you may have the following rights:

Right of Access: Request a copy of personal data we hold about you.

Right of Access: Request a copy of personal data we hold about you.

Right to Rectification: Correct incomplete or inaccurate data.

Right to Rectification: Correct incomplete or inaccurate data.

Right to Erasure: Request deletion of your data (“Right to be Forgotten”).

Right to Erasure: Request deletion of your data (“Right to be Forgotten”).

Right to Restrict Processing: Limit how we process your data.

Right to Restrict Processing: Limit how we process your data.

Right to Data Portability: Obtain a machine-readable copy of your data.

Right to Data Portability: Obtain a machine-readable copy of your data.

Right to Object: Opt out of certain processing, including marketing.

Right to Object: Opt out of certain processing, including marketing.

Right to Withdraw Consent: At any time, where processing is based on consent.

Right to Withdraw Consent: At any time, where processing is based on consent.

Do Not Sell or Share (California): You may opt out of the sale or sharing of personal information for targeted advertising.

Do Not Sell or Share (California): You may opt out of the sale or sharing of personal information for targeted advertising.

To exercise these rights, contact us at privacy@coresium.com. We will verify your identity before fulfilling requests.

To exercise these rights, contact us at privacy@coresium.com. We will verify your identity before fulfilling requests.

8. Cookies & Tracking Choices

8. Cookies & Tracking Choices

You can control cookies through your browser settings.

You can control cookies through your browser settings.

You may also opt out of targeted advertising networks (e.g., via YourAdChoices).

You may also opt out of targeted advertising networks (e.g., via YourAdChoices).

If required by law, we will request explicit consent for non-essential cookies.

If required by law, we will request explicit consent for non-essential cookies.

9. Data Security

9. Data Security

We implement appropriate technical, organizational, and administrative safeguards, including:

We implement appropriate technical, organizational, and administrative safeguards, including:

Encryption in transit and at rest.

Encryption in transit and at rest.

Access controls and authentication.

Access controls and authentication.

Regular monitoring and penetration testing.

Regular monitoring and penetration testing.

No method of transmission or storage is 100% secure, but we continuously work to protect your information.

No method of transmission or storage is 100% secure, but we continuously work to protect your information.

10. Children’s Privacy

10. Children’s Privacy

Our Services are not directed to individuals under 13 (or the age of digital consent in your jurisdiction). We do not knowingly collect personal data from children. If we learn that we have inadvertently collected data from a child, we will delete it promptly.

Our Services are not directed to individuals under 13 (or the age of digital consent in your jurisdiction). We do not knowingly collect personal data from children. If we learn that we have inadvertently collected data from a child, we will delete it promptly.

11. Third-Party Services & Links

11. Third-Party Services & Links

Our Services may link to third-party websites or integrations. We are not responsible for the privacy practices of these entities. Please review their policies before providing personal data.

Our Services may link to third-party websites or integrations. We are not responsible for the privacy practices of these entities. Please review their policies before providing personal data.

12. Changes to This Policy

12. Changes to This Policy

We may update this Privacy Policy to reflect operational, legal, or regulatory changes. Updates will be posted with a new “Last Updated” date. In cases of material changes, we will provide additional notice (e.g., email or prominent website banner).

We may update this Privacy Policy to reflect operational, legal, or regulatory changes. Updates will be posted with a new “Last Updated” date. In cases of material changes, we will provide additional notice (e.g., email or prominent website banner).

13. Contact Us

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy, contact us at:

If you have any questions, concerns, or requests regarding this Privacy Policy, contact us at:

Coresium Privacy Office
Email: privacy@coresium.com
Address: 007 N. Orange St., 4th Floor, Wilmington, DE 19801

Coresium Privacy Office
Email: privacy@coresium.com
Address: 007 N. Orange St., 4th Floor, Wilmington, DE 19801

14. Region-Specific Disclosures

14. Region-Specific Disclosures

A. California Residents (CCPA/CPRA)

A. California Residents (CCPA/CPRA)

Categories of personal information collected in the past 12 months: identifiers, commercial information, internet activity, geolocation, inferences.

Categories of personal information collected in the past 12 months: identifiers, commercial information, internet activity, geolocation, inferences.

We do not sell personal data, but we may “share” information for cross-context behavioral advertising. You may opt out at any time.

We do not sell personal data, but we may “share” information for cross-context behavioral advertising. You may opt out at any time.

Authorized agents may make requests on your behalf.

Authorized agents may make requests on your behalf.

B. European Economic Area (EEA) & UK Residents

B. European Economic Area (EEA) & UK Residents

Our Data Protection Officer (DPO) can be reached at dpo@coresium.com.

Our Data Protection Officer (DPO) can be reached at dpo@coresium.com.

You may lodge complaints with your local supervisory authority (e.g., ICO in the UK).

You may lodge complaints with your local supervisory authority (e.g., ICO in the UK).

C. Brazil (LGPD)

C. Brazil (LGPD)

You may request confirmation of processing, correction, anonymization, or portability.

You may request confirmation of processing, correction, anonymization, or portability.

D. Canada (PIPEDA)

D. Canada (PIPEDA)

You may withdraw consent at any time, subject to legal or contractual restrictions.

You may withdraw consent at any time, subject to legal or contractual restrictions.