Privacy Policy
This policy explains what information Zeph Tech LLC collects through zephtech.net, how we use it, and what rights you may have regarding your personal data.
If you have questions, email contact@zephtech.net.
Last updated:
Who we are
Zeph Tech LLC ("we," "us," or "our") operates zephtech.net. Zeph Tech provides workflow software, ZephCMS-related product and implementation information, technology services and advisory, and public research resources.
This privacy policy applies to website visitors, contact and partnership form users, research readers, and other users of this website. ZephCMS deployments and client services may be governed by separate contracts, data-processing terms, or implementation-specific privacy documentation.
Information we collect
We collect information you provide directly, limited website interaction data collected automatically, and information processed by service providers that support the site.
Information you provide
- Contact and fit-review forms. When you send us a message, we collect the fields you submit, which may include your name, work email, organization, inquiry type, high-level workflow context, and message content. We use this information to review and respond to the request.
- Partnership or sponsorship inquiries. When you use a partnership form, we collect the organization, contact, topic, and message information you choose to submit so we can evaluate and respond.
- Voluntary project details. If you describe records, workflows, systems, security needs, migration constraints, integrations, or implementation goals, we use that information to evaluate and respond to your request unless a separate agreement says otherwise.
Do not submit sensitive contents through public website forms. The contact flow specifically asks users not to include passwords, protected health information, case records, personal data, security secrets, or other sensitive contents.
Information collected automatically
- Google Analytics 4. We use Google Analytics 4 (GA4) to understand site traffic, acquisition sources, page engagement, research readership, downloads, outbound navigation, conversion paths, and other website interactions. Our own event instrumentation is designed so that email addresses, free-text form contents, and private project descriptions are not intentionally sent to GA4.
- Hosting and security logs. Netlify and other infrastructure involved in serving the website may process standard request information such as IP address, browser or user-agent details, requested resources, timestamps, and security or abuse signals according to their services and policies.
Google AdSense review posture
- Site verification. Zeph Tech currently exposes the Google AdSense publisher-account verification metadata needed to associate zephtech.net with its publisher account.
- No current ad serving during re-review. While the site is in its policy re-review posture, actual AdSense serving code is disabled across the rendered site. Product, company, trust, contact, decision-tool, guide, certification, learning, research, quarantined, historical, and utility pages do not currently load Google ad-serving code.
- Future limited advertising. If advertising is re-enabled after review, it will be limited to explicitly approved editorial inventory. Google and other parties involved in ad delivery may then process device, browser, network, page, cookie, web-beacon, IP-address, advertising, and consent information according to their policies and applicable requirements.
How we use your information
We use the information we collect for the following purposes:
- Respond to inquiries. Contact details and message content are used to respond to ZephCMS, workflow, technology, advisory, research, correction, media, or partnership requests.
- Improve the website and services. Aggregate analytics help us understand which research topics, resources, product paths, and site interactions are useful.
- Measure publication and conversion performance. We use interaction data to understand page engagement, reading depth, downloads, referral sources, internal navigation, and movement into decision or contact resources.
- Support future limited editorial advertising. If re-enabled after review, advertising may help support public publishing without placing programmatic ads on product, lead-generation, trust, conversion, or decision-tool surfaces.
- Maintain security and reliability. Hosting and form metadata may be used to detect abuse, spam, unauthorized access attempts, and operational failures.
- Evaluate fit. High-level project details help us determine whether ZephCMS, a technology service, a resource, or another direction is appropriate.
We do not sell, rent, or trade project-inquiry details or contact-form content. We do not intentionally send email addresses, free-text form contents, or private project descriptions to GA4.
Cookies, consent, analytics, and advertising
Google services can use cookies and similar technologies depending on the product, geography, consent state, browser controls, and configuration. Zeph Tech configures Google Consent Mode v2 signals to govern Google tag behavior.
For configured EEA, United Kingdom, Switzerland, and related restricted-region traffic, analytics and advertising storage signals default to denied. Outside those configured restricted regions, analytics storage may be granted for site measurement, while advertising storage, ad-user-data, and ad-personalization remain denied globally during the current AdSense re-review posture.
When a browser exposes Global Privacy Control, the site's Google configuration explicitly keeps advertising storage, ad-user-data, and ad-personalization denied. The current global advertising-denied posture is at least as restrictive as that browser signal.
If Google ad serving is enabled in the future, third parties including Google may place and read cookies on users' browsers or use web beacons, IP addresses, and similar identifiers as a result of serving ads or providing measurement services. Google explains this processing on its How Google uses information from sites or apps that use our services page.
Consent Mode is a technical signal layer; it is not described here as a substitute for a consent-management platform where a platform or applicable requirement calls for one. Google requires a Google-certified CMP integrated with the IAB Transparency and Consent Framework for personalized AdSense advertising in the EEA, UK, and Switzerland. Account-side consent-message or CMP configuration therefore remains part of any future advertising setup, not a claim created solely by this website code.
Data retention
- Form submissions. Contact, fit-review, and partnership form data is retained only as long as needed to respond, maintain appropriate business records, prevent abuse, or manage a prospective relationship.
- Client conversations. If an inquiry becomes a client engagement, retention may be governed by the applicable statement of work, contract, records requirement, or legal obligation.
- Analytics and advertising data. Measurement data, and any future advertising data if ad serving is re-enabled, is retained according to the applicable Google product settings and provider policies.
- Hosting and security logs. Hosting and security logs are retained according to provider practices and operational needs.
Data security
We use reasonable administrative and technical safeguards for website data, including HTTPS, restricted administrative access, multi-factor authentication where available, access controls, and provider security capabilities.
No method of electronic transmission or storage is completely secure. If we become aware of a security incident affecting personal data, we will take steps appropriate to the circumstances and applicable law.
Third-party services and links
The website uses or may interact with services such as Netlify for hosting and form handling and Google Analytics 4 for site measurement. Google AdSense publisher-account verification is present during the current re-review posture, while ad serving is disabled. Research resources may also link to official agencies, standards bodies, vendor documentation, and other external sources. Third-party services process information under their own terms and privacy policies when you use or interact with them.
Children's privacy
Our site is not directed at children under the age of 13, or under 16 where a higher age threshold applies. We do not knowingly collect personal information from children through the website. If you believe a child has provided personal information, contact us so the issue can be reviewed.
Your rights
Depending on where you live and the applicable law, you may have rights to access, correct, delete, restrict, or object to certain processing of personal information. You may also have the right to withdraw consent where processing relies on consent.
To make a privacy request, email contact@zephtech.net. We may need to verify the request before acting on it.
Browser privacy controls, including Global Privacy Control where supported, and Google consent or advertising controls may also affect advertising-related processing.
International data processing
The website and its service providers may process information in the United States or other locations where their infrastructure operates. Provider safeguards and applicable legal mechanisms may govern international transfers.
Changes to this policy
We update this privacy policy when the website, providers, advertising posture, services, or applicable requirements materially change. The date at the top identifies the latest substantive review.
Contact us
If you have questions or concerns about this privacy policy or our website data practices, contact us:
- Email: contact@zephtech.net
- Contact form: zephtech.net/contact
We aim to respond to privacy-related inquiries within a reasonable time and in accordance with applicable requirements.