What we collect, why we keep it, and how long it stays. Short and specific. We don't sell data, and we don't run analytics that profile individuals.
This policy describes how Trends Media & Technology (Trends Technology LLC, "TrendsMT", "we", "us") handles information from visitors to trendsmt.com and from clients during an engagement. If a written agreement covers a specific data practice, that agreement controls over this policy.
From the site: the contact details you choose to share through the contact form or email, and the standard server logs our hosting provider records (IP address, request path, user agent, timestamp).
From an engagement: whatever the client shares to do the work — source code, system access, credentials, data sets, and internal documentation.
Contact details are used to reply to inquiries and to maintain a record of who reached out. We do not add you to a mailing list for asking a question.
Server logs are used to operate the site, diagnose issues, and detect abuse. They are not used to profile visitors or build advertising audiences.
Engagement data is used to deliver the work in the SOW and nothing else.
We don't sell or rent personal data. We don't run third-party advertising trackers. We don't deploy client-side analytics that follow individuals across pages or sites. We don't use your data to train models.
Contact inquiries are kept for as long as the conversation is active, then archived for up to two years in case the work resumes, then deleted.
Server logs are kept for thirty days, then rotated.
Engagement data is kept for the duration of the engagement and returned or deleted on termination, unless a written agreement says otherwise. We retain what is required to comply with tax, legal, and accounting obligations.
Access to inquiries is limited to the engineers who would lead the work. Access to engagement data is limited to the engineers on the engagement. We do not share data with third parties except where required by law or where a sub-processor is needed to deliver the work and the client has been told.
We use standard infrastructure providers (hosting, source control, email) to operate the site and our practice. Each one is under a contract that limits their use of the data to providing the service. The current list is available on request.
We use HTTPS for the site, scoped credentials for client systems, and least-privilege access internally. Engagement data is stored on the client's systems wherever possible. We disclose and remediate confirmed security incidents to affected clients without undue delay.
You can ask what we hold about you, ask us to correct it, or ask us to delete it where we have no legal basis to retain it. Send the request to [email protected] and we will respond within thirty days.
Where the GDPR, CCPA, or a similar regime applies, this policy is intended to meet its transparency obligations. We do not process data in ways that would require offering an opt-out on profiling, because we don't profile.
The site uses a single first-party session cookie for basic operation where needed. No third-party cookies. No consent banner, because there is nothing to consent to.
The site is not directed at children under sixteen, and we do not knowingly collect their personal information. If you believe we have, contact us and we will delete it.
We are based in California. If you reach us from outside the United States, your information may be transferred here. We use standard contractual safeguards where applicable and limit access to what the engagement requires.
We may update this policy. The effective date above reflects the current version. Material changes apply to information collected after the change takes effect.
Questions about this policy or a data request go to [email protected]. We reply within one business day.