Legal

Privacy Policy

Last updated: June 9, 2026

This Privacy Policy explains how [Legal Entity Name] ("Enflet," "we," "us," or "our") collects, uses, shares, and safeguards personal information about visitors to this website and people who contact us, book a strategy call, or engage our services.

1. Information we collect

Information you provide

  • Name and business email address
  • Company name, website, and role
  • Approximate Amazon revenue range and category
  • Anything you tell us in messages, intake forms, or on calls
  • Scheduling information when you book a call through our scheduler

Information collected automatically

  • IP address and approximate location (city / region)
  • Browser type, device, operating system, screen size
  • Referring URL, pages viewed, links clicked, time on page
  • Timestamps of visits and interactions

Cookies and similar technologies

We use cookies, local storage, and similar technologies for essential site functionality, analytics, and (where applicable) marketing measurement. You can control cookies through your browser settings. Disabling some cookies may affect site functionality.

2. How we use information

  • Respond to inquiries and schedule strategy calls
  • Assess fit for our services and prepare for conversations
  • Send relevant follow-up communications about our services
  • Operate, maintain, secure, and improve the website
  • Detect and prevent fraud, abuse, and security incidents
  • Comply with legal, regulatory, and tax obligations

If you are in the European Economic Area or the United Kingdom, we process personal data under one or more of the following legal bases:

  • Consent — e.g. marketing communications, non-essential cookies.
  • Legitimate interests — responding to inquiries, securing the site, improving services, prospecting B2B contacts where appropriate.
  • Performance of a contract — delivering services under a signed SOW.
  • Legal obligation — tax, accounting, and regulatory requirements.

4. Sharing & sub-processors

We do not sell personal information. We share it only with vetted service providers who help us run the business, under contracts that require appropriate confidentiality and security. Categories include:

  • Website hosting and infrastructure (e.g. Lovable)
  • Scheduling tools (e.g. Cal.com or Calendly)
  • Email and CRM providers
  • Analytics providers
  • Document, messaging, and collaboration tools (e.g. Notion, Slack, Google Workspace)
  • Payment processors (for paid engagements)
  • Professional advisors (legal, accounting) and authorities when required by law

5. International data transfers

We may transfer personal data outside your country of residence, including to the United States. Where required, we rely on appropriate safeguards such as the European Commission's Standard Contractual Clauses or equivalent mechanisms.

6. Data retention

We retain personal information only as long as necessary for the purposes set out in this Policy, to comply with legal obligations, resolve disputes, and enforce agreements. Inquiry data is typically kept for 24 months; client engagement records for the duration of the engagement plus the period required by applicable tax and commercial law.

7. Your rights

Depending on where you live, you may have the right to:

  • Access the personal information we hold about you
  • Request correction of inaccurate data
  • Request deletion of your data (subject to legal exceptions)
  • Request restriction or object to certain processing
  • Request portability of data you provided to us
  • Withdraw consent at any time (without affecting prior processing)
  • Lodge a complaint with your local data protection authority

California residents have additional rights under the CCPA/CPRA, including the right to know, delete, correct, and opt out of "sharing" for cross-context behavioural advertising. We do not sell personal information.

To exercise any right, email privacy@enflet.com. We will respond within the timeframes required by applicable law.

8. Children's privacy

Our website and services are directed at businesses and are not intended for individuals under 16. We do not knowingly collect personal information from children.

9. Security

We use reasonable technical and organisational measures to protect personal information. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.

10. Cookies & tracking

Essential cookies are required for the site to function. Analytics and marketing cookies are used only with your consent where required by law. You can manage preferences in your browser or via any cookie banner we display. We honour Global Privacy Control (GPC) signals where required.

11. Marketing communications

If you receive marketing email from us, you can unsubscribe at any time using the link in any message, or by emailing privacy@enflet.com. We will still send transactional and service-related communications.

12. Changes to this Policy

We may update this Privacy Policy from time to time. Material changes will be indicated by updating the "Last updated" date and, where appropriate, by additional notice.

13. Contact

[Legal Entity Name]
[Registered address]
Email: privacy@enflet.com

This page is a template for general informational purposes and is not legal advice. Please have it reviewed by a qualified lawyer or DPO in your jurisdiction before publishing.