Privacy Policy

Effective Date: 2025-08-08

ABLAZE.DIGITAL is committed to protecting your privacy. This Privacy Policy outlines how we collect, use, and safeguard your personal information.

Overview

ABLAZE.DIGITAL respects privacy and protects personal data for Clients, website visitors, application users, social media followers, candidates, and employees. This Privacy Policy explains what personal data we collect, how we use and share it, the legal bases for processing, your rights, retention and transfer practices, security measures, cookie and tracking use, and how to contact us.

Applicability and Legal Bases

This Policy applies to personal data processed by ABLAZE.DIGITAL when delivering digital, creative, and technical services and when users interact with our websites, applications, portals, and social media channels.

Processing is justified where necessary to perform contracts and Statements of Work, comply with legal obligations including PIPEDA, CASL, LMIA and IRPR recordkeeping, tax law, and IFRS financial recordkeeping, protect legitimate interests such as security and fraud prevention, or based on consent for marketing and tracking under GDPR and CCPA contexts.

Data Collected

  • Client contact and account data: name, title, organization, billing address, payment metadata, contract and project records.
  • Project and SOW materials: SOW designs, implementations, optimizations, strategies, suggestions, project plans, configuration and infrastructure details.
  • Content and creative assets: branding assets, media, campaign creative, marketing lists, communications, engagement materials.
  • Operational and technical data: infrastructure metadata, usage data, service logs, testing records, audit logs, error reports, system metrics.
  • Performance and analytics: metrics, analytics, reports, A/B test results, engagement and conversion data, campaign and product performance.
  • Communications and collaboration: emails, messages, meeting notes, proposal drafts, feedback and suggested changes.
  • Website, application, and social media data: cookies, IP address, device and browser metadata, app usage logs, social interaction metadata, page analytics.
  • Employment candidate and employee data: CVs, background check data, payroll and benefits information processed per HR policy.
  • Sensitive data: processed only when explicitly instructed by a Client and with appropriate safeguards.

How Data Is Used

  • • To provide Services, deliverables, technical support, hosting, billing, and analytics.
  • • To design, implement, optimize, and report on strategies, campaigns, products, and infrastructure.
  • • To secure systems, monitor activity, detect and prevent fraud, and enforce contractual and legal obligations.
  • • To communicate about projects, inquiries, and account matters.
  • • To send marketing and business relationship communications with prior consent where required.
  • • To meet LMIA and IRPR obligations for temporary foreign workers and to maintain financial records for IFRS-compliant audits.

Sharing, Disclosure and Transfers

  • • We do not sell personal data.
  • • We share data with subprocessors, vendors, hosting providers, payment processors, analytics providers, and professional advisors only to the extent necessary to provide Services. Subprocessors are contractually required to maintain protections equivalent to applicable privacy laws.
  • • We may disclose data to respond to legal process, enforce agreements, or protect rights, safety, and property.
  • • Personal data may be transferred across borders. We use standard contractual safeguards, SCCs, explicit consent, or other lawful mechanisms as required.

Retention and Deletion

  • • Retention periods are driven by contractual obligations, legal requirements, and business needs. Financial and tax records are retained in accordance with IFRS and tax law. Default business record retention is up to seven years unless a Client-specific schedule is set in the SOW or a Data Processing Agreement.
  • • You may request access, correction, restriction, portability, or deletion of your personal data and may withdraw consent where applicable. Requests will be handled within applicable statutory timelines.

Security Measures

We apply administrative, technical, and physical safeguards including encryption, multi-factor authentication, access controls, logging, secure servers, firewalls, and tested backup procedures to protect personal data.

Cookies and Tracking

We use cookies and similar technologies for site and application functionality, analytics, and marketing. Non-essential cookies require consent via our cookie banner. Users can manage cookie preferences at any time through the banner or browser settings.

Children

Our services, websites, applications, and social media are not directed to children below applicable minimum ages. We do not knowingly collect personal data from minors without parental consent.

Contact and Data Protection Officer

Direct privacy requests, data subject rights requests, or complaints to our Privacy Contact at action@ablaze.digital . We investigate complaints and escalate them to our Data Protection Officer or Legal as required.

Changes to This Policy

We may update this Policy periodically. Material changes will be communicated to Clients, application users, and website or social media followers and the updated effective date will be posted here.

Last updated: 2025-08-08