code/+/trust primary logo full color svg

Legal

Privacy Policy

Last updated: April 2025

Code and Trust LLC ("Code and Trust," "we," "us," or "our") operates codeandtrust.com (the "Site"). This Privacy Policy explains what personal data we collect through the Site, how we use it, who we share it with, and what rights you have over it. By using the Site you agree to the practices described here.

1. What We Collect

Contact form data. When you submit a contact, NDA request, AI Readiness assessment, or similar form on the Site, we collect your name, email address, company name, and the content of your message. This information is stored in our database and used to respond to your inquiry.

Usage analytics. We use PostHog to collect anonymized usage data including page views, session duration, and click patterns. PostHog is configured to respect Do Not Track headers. No cross-site tracking is performed. IP addresses are anonymized before storage.

Server logs. Our hosting provider (Vercel) automatically logs standard HTTP request metadata including IP addresses, user agents, and timestamps. These logs are retained for up to 30 days for security and debugging purposes and are not used for marketing.

2. How We Use Your Data

  • To respond to inquiries and service requests you submit through forms.
  • To send you content you specifically requested (e.g., NDA documents, assessment results, event confirmations).
  • To improve the Site by analyzing aggregated, anonymized usage patterns through PostHog analytics.
  • To comply with legal obligations if we are required to do so by applicable law.

We do not sell your personal data. We do not use contact form submissions for unsolicited marketing without your explicit consent.

3. Third-Party Services

The Site uses the following third-party services that may process your data:

  • PostHog — Product analytics. Data is stored on PostHog's EU-based servers. You can opt out of PostHog tracking by enabling Do Not Track in your browser.
  • Vercel — Site hosting and edge network. Standard request metadata is processed by Vercel infrastructure in the United States. See Vercel's privacy policy at vercel.com/legal/privacy-policy.
  • Neon (PostgreSQL) — Database hosting for form submissions and site content. Data is stored encrypted at rest in AWS US East 2 (Ohio).

4. Data Retention

Form submissions (name, email, company, message) are retained for 2 years from the date of submission. After 2 years, records are deleted unless a project or contractual relationship requires longer retention. Anonymized analytics data (PostHog) is retained indefinitely in aggregate form. You may request early deletion at any time — see Section 5.

5. Your Rights

Depending on your location, you may have rights under CCPA (California), GDPR (EU/UK), or other applicable privacy laws, including the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your data ("right to be forgotten").
  • Object to certain types of processing.

To exercise any of these rights, email us at privacy@codeandtrust.com. We will respond within 30 days.

6. Cookies

The Site uses a minimal number of cookies. PostHog sets a first-party analytics cookie to distinguish unique sessions. No third-party advertising or tracking cookies are set. You can disable cookies in your browser settings; doing so may affect Site functionality.

7. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we update the "Last updated" date at the top of the page. Material changes will be announced on the Site. Continued use of the Site after changes are posted constitutes your acceptance of the updated policy.

8. Contact

For privacy-related questions or data requests, contact:

Code and Trust LLC
Mt Pleasant, SC / Washington, DC
privacy@codeandtrust.com