1. Introduction
SIE Data, Inc. ("SIE Data," "we," "us," or "our") operates the SIE Data, a Compliance-as-a-Service (CaaS) data marketplace. This Privacy Policy explains how we collect, use, disclose, and protect information.
This policy applies to:
- Visitors to our websites
- Buyers using our platform
- Publishers deploying our VI Tag
- Consumers whose data is collected through Publisher websites
2. Information We Collect
2.1 From Buyers and Publishers (Account Holders)
When you register for an account, we collect:
- Contact Information: Name, email, phone, company name
- Business Information: Industry, company size, website URL
- Payment Information: Processed by Stripe (we don't store card numbers)
- Account Credentials: Hashed passwords, API keys
- Usage Data: API calls, purchases, dashboard activity
2.2 From Publisher Websites (Via VI Tag)
When consumers visit Publisher websites with our VI Tag installed, we may collect:
Behavioral Data:
- Page URLs visited
- Time spent on pages (dwell time)
- Scroll depth
- Click interactions
- Form submissions (field presence, not content)
Technical Data:
- IP address (for B2B firmographic resolution)
- Browser type and version
- Device type
- Referring URL
3. How We Use Information
We use collected information to:
- Provide, maintain, and improve our services
- Process transactions and send related information
- Generate intent signals for Buyers
- Comply with legal obligations (including DROP/SB 362)
- Detect and prevent fraud or abuse
- Communicate with you about products, services, and events
4. California Consumer Rights (CCPA/CPRA)
California residents have the right to:
- Know what personal information we collect and how it's used
- Delete personal information we hold about them
- Opt-out of the sale or sharing of personal information
- Non-discrimination for exercising privacy rights
To exercise these rights, email [email protected] or use the California Delete Act DROP platform.
5. DROP Compliance (SB 362)
SIE Data is registered with the California Data Broker Registry and syncs with the DELETE Act (SB 362) DROP platform. When consumers submit deletion requests through DROP, we process them within 45 days.
6. Data Security
We implement appropriate security measures including:
- AES-256-GCM encryption for PII at rest
- TLS 1.3 encryption for data in transit
- SOC 2 controls implemented infrastructure
- Regular security audits and penetration testing
- Access controls and audit logging
7. Contact Us
For privacy-related questions or requests:
- Email: [email protected]
- Mail: SIE Data, Inc., Privacy Team, San Francisco, CA