Privacy Policy
Bonelli Systems respects your privacy and is committed to protecting personal information and business information provided through our website, communications, forms, assessments, consulting engagements, managed IT services, cybersecurity services, compliance-supporting services, cloud services, and Applied AI Engineering services.
Contact: Bonelli Systems, 18383 Preston Road, Dallas, TX 75252, US · 469-518-6987 · office@bonellisystems.com.
1. Scope of This Policy
This Privacy Policy explains how we collect, use, disclose, retain, and protect information when you visit our website, submit a form, contact us, or engage with our services. Client-specific data handling may also be governed by a signed agreement, statement of work, data processing addendum, business associate agreement, confidentiality agreement, or security schedule.
2. Information We Collect
Information you provide
- Contact and lead information, such as name, company, email address, phone number, job title, business address, and message contents.
- Inquiry, scheduling, and communications information, including emails, call notes, SMS/text consent or opt-out records, meeting details, and service interests.
- Support or service information, such as ticket contents, troubleshooting details, screenshots or files you choose to provide, and information needed to respond to a request.
- Business and technical environment information, such as Microsoft 365 or Azure details, domain names, tenant or platform information, device and user counts, backup/security posture, compliance requirements, and similar information you choose to provide.
- Payment and billing information if you transact directly with us or through an approved client portal or processor.
Information collected automatically
- IP address, browser type, device type, operating system, pages visited, referring and exit pages, timestamps, session metadata, and approximate location derived from network data.
- Cookies, pixels, tags, local storage, and similar technologies used for essential site operation, analytics, security, form attribution, accessibility preferences, and marketing measurement where applicable.
Information from third parties
We may receive limited information from business directories, referral partners, vendors, CRM or form providers, analytics providers, security tools, public sources, or client-authorized integrations to respond to inquiries, provide services, improve operations, and maintain accurate business records.
3. Applied AI Engineering and Client Data
For Applied AI Engineering, model evaluation, private AI, autonomous operations, or AI product engineering engagements, we may process datasets, prompts, documents, transcripts, telemetry, embeddings, model outputs, benchmark results, configuration data, logs, and evaluation records provided by or generated for a client.
We use such information only to perform the services, evaluate models or architectures, build and operate agreed systems, test performance and safety, troubleshoot, maintain security and auditability, and fulfill contractual or legal obligations. We do not use client confidential information or client data to train public AI models or publish client-identifying results unless expressly authorized in writing.
Where a client authorizes use of a third-party AI model, API, cloud service, or hosted platform, data may be processed by that provider according to the approved architecture, provider terms, and applicable statement of work. For private, local, tenant-isolated, or air-gapped AI deployments, the intended data boundary should be described in the applicable statement of work or security schedule.
4. How We Use Information
- To respond to inquiries, schedule calls, and communicate about services.
- To provide, operate, secure, troubleshoot, and improve our website and services.
- To perform assessments, consulting, managed IT, cybersecurity, cloud, compliance-supporting, and Applied AI Engineering engagements.
- To manage client relationships, quotes, orders, projects, billing, support, and reporting.
- To send service notices, security notices, administrative messages, and marketing communications where permitted. You may opt out of marketing communications.
- To detect, prevent, investigate, and respond to security incidents, abuse, fraud, spam, unauthorized access, or technical issues.
- To comply with legal obligations, enforce agreements, preserve business records, and protect our rights and the rights of our clients or users.
5. Cookies, Analytics, Tags, Forms, Maps, and Website Tools
We use cookies and similar technologies for essential functionality, website performance, analytics, security, accessibility preferences, form attribution, and marketing measurement where applicable. Our website may use service providers such as tag-management or analytics providers, CRM/form-processing providers, map/location providers, accessibility-widget providers, hosting/security providers, and similar vendors.
You can control cookies through your browser settings and, where a consent banner or preference tool is available, through that tool. Some features may not work correctly if essential cookies are disabled.
6. SMS/Text Messages and Communications
If you provide a phone number and consent to SMS/text communications, we may use that number to respond to your inquiry, schedule meetings, provide service-related updates, or send related business communications. Message and data rates may apply. Message frequency varies. You may opt out of marketing texts at any time by replying STOP, request help by replying HELP, or contact us at office@bonellisystems.com. We do not sell phone numbers or SMS consent records.
7. How We Share Information
We do not sell personal information for money. We may disclose information as described below:
- Service providers and vendors: hosting, security, analytics, CRM, form processing, communications, email, SMS, payment, cloud, accessibility, support, professional-services, and IT/security tooling providers.
- Client-authorized integrations: platforms, vendors, or systems authorized by a client or necessary for an agreed service.
- Affiliates, contractors, and subcontractors: only as needed to operate our business or provide services, subject to appropriate obligations.
- Legal and safety disclosures: when required by law, subpoena, court order, governmental request, or when reasonably necessary to protect rights, safety, security, or property.
- Business transactions: in connection with a merger, acquisition, financing, restructuring, or sale of assets, subject to appropriate protections.
If analytics or advertising activity is considered a “sale,” “sharing,” or targeted advertising under an applicable privacy law, we will provide the required opt-out mechanism when that law applies to us.
8. Sensitive and Regulated Information
Do not submit protected health information, payment-card data, government identifiers, privileged legal materials, export-controlled data, or other sensitive regulated information through public website forms unless we specifically request it through an approved secure channel. If an engagement requires us to process regulated or sensitive client data, additional contractual terms such as a data processing addendum, business associate agreement, confidentiality agreement, or statement of work may apply.
9. Data Retention
We retain information for as long as reasonably necessary for the purposes described in this Policy, including providing services, maintaining business and tax records, complying with legal obligations, resolving disputes, enforcing agreements, maintaining security logs, and preserving evidence of consent or service activity. Retention periods vary by data type and context. When information is no longer needed, we delete, anonymize, or securely dispose of it according to our retention practices and legal obligations.
10. Security
We use reasonable administrative, technical, and physical safeguards designed to protect information, including access controls, least-privilege practices, encryption where appropriate, monitoring, employee training, vendor controls, and incident-response procedures. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
11. Privacy Rights
Depending on your state or country of residence and subject to applicable exceptions, you may have rights to request access to personal information, correction of inaccurate information, deletion, portability, information about certain sharing practices, restriction or objection to certain processing, and opt-out of certain targeted advertising, sale, sharing, profiling, or marketing uses.
For Texas residents and other U.S. state residents, privacy rights may include rights to access, correct, delete, obtain a copy of personal information, and opt out of certain uses where applicable law provides those rights. For California residents, rights may include the right to know/access, delete, correct, opt out of sale or sharing, limit use/disclosure of sensitive personal information where applicable, and not be discriminated against for exercising privacy rights. For EU/UK visitors, our legal bases may include consent, contractual necessity, legal obligation, and legitimate interests.
To exercise a privacy right, contact us at office@bonellisystems.com. We may need to verify your identity and, if you submit a request on behalf of another person or organization, proof of authorization.
12. International Transfers
Bonelli Systems is based in the United States. If you access our website or services from outside the United States, your information may be transferred to, stored in, or processed in the United States or other locations where our service providers operate. Where required, we use appropriate safeguards for international transfers.
13. Children’s Privacy
Our website and services are intended for businesses and are not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child provided personal information to us, contact us so we can take appropriate action.
14. Third-Party Links and Tools
Our website may link to third-party websites, tools, maps, forms, calendars, portals, videos, or resources. We are not responsible for third-party content, terms, privacy practices, availability, or security.
15. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated date. Changes apply prospectively unless otherwise stated or required by law.
16. Contact Us
Questions or requests may be sent to Bonelli Systems at 18383 Preston Road, Dallas, TX 75252, US, by phone at 469-518-6987, or by email at office@bonellisystems.com.
