Loading…
Loading…
Last updated: September 23, 2025
Smart Tech LLC (“we,” “us,” “our”) is a software consulting firm serving regulated sectors (including healthcare, life sciences, defense, and financial services). This Policy describes our handling of personal information as a controller (e.g., website, marketing, recruiting, vendor and client management). When contractually acting as a processor/service provider, we process personal information only on our client’s documented instructions and applicable agreements.
Sources: directly from you; your employer; our vendors (hosting, security, analytics, screening, payments, communications); publicly available sources.
EU/UK legal bases (where applicable): contract, legitimate interests (e.g., security, B2B communications), legal obligation, and consent (e.g., certain cookies/marketing). You may withdraw consent at any time.
We use cookies and similar technologies for site operation, security, and analytics. Where required (e.g., EU/UK), we seek consent via a banner. We honor browser-based universal opt-out mechanisms where laws require (e.g., Colorado CPA Global Privacy Control/UOOM).
We disclose personal information to:
We do not “sell” personal information as defined by applicable laws and do not “share” it for cross-context behavioral advertising. If this changes, we will update this Policy and provide required notices/opt-outs.
When transferring personal information across borders, we use appropriate safeguards, such as EU Standard Contractual Clauses (SCCs) and the UK International Data Transfer Agreement (IDTA) or UK Addendum. Where applicable, we may also rely on adequacy decisions (e.g., the EU-U.S. Data Privacy Framework and the UK-U.S. Data Bridge for certified U.S. recipients).
We maintain administrative, technical, and physical safeguards proportionate to risk, including access controls/least privilege, encryption in transit and at rest where appropriate, network and application security, logging/monitoring, vulnerability management, secure SDLC practices, and vendor risk management. No method is 100% secure; we regularly review and enhance our program.
We retain personal information only for as long as necessary to fulfill the purposes above, meet legal/regulatory/accounting requirements, resolve disputes, and enforce agreements. Contractual retention (e.g., BAA, CUI) controls where applicable.
Depending on your state, you may have rights to access/know, correct, delete, portability, and to opt out of targeted advertising, sale, and certain profiling; some states require an appeals process for denied requests. We will verify and respond within required timelines and honor universal opt-out signals where mandated (e.g., Colorado), and comply with state consumer health data laws where applicable (e.g., Washington’s MHMDA and Nevada SB370).
Under PIPEDA (and substantially similar provincial laws, e.g., Alberta/BC PIPA; Québec’s private-sector law as modernized by Law 25), you may request access and correction, withdraw consent (subject to legal/contractual limits), and lodge complaints with relevant privacy regulators. Québec Law 25 adds obligations such as appointing a privacy officer and assessments for certain processing.
Under GDPR/UK GDPR, you may request access, correction, deletion, restriction, portability, and object to processing (including direct marketing). You may lodge complaints with an EU supervisory authority or the UK ICO.
How to exercise rights / appeal: Email privacy@smarttechks.com
For U.S. states with an appeal right, you may appeal a decision by replying “Appeal” to our response; if denied, you may contact your state Attorney General.
Authorized agents (CA): We accept requests via authorized agents consistent with verification rules.
Our services are for business use and are not directed to children.
Our sites may link to third-party services; their privacy practices are governed by their own policies.
This Policy applies to our controller activities. For client projects where we are a processor/service provider, the client’s instructions and contract control (e.g., including BAAs, DPAs, SCCs/IDTA, and security annexes).
By providing your mobile number through our platform, you consent to receive transactional SMS messages related to healthcare services, including patient referrals, coordination, and notifications.
Message frequency varies depending on activity.
Message and data rates may apply.
You can opt out at any time by replying STOP to any message. For assistance, reply HELP.
We do not send marketing or promotional messages.
We do not sell, rent, or share your mobile number or SMS opt-in data with third parties or affiliates for marketing or promotional purposes. Your information may only be shared with service providers strictly to deliver the services described above.