At Krypha LTD ('we', 'us', or 'our'), we value your privacy as much as we value clean code. This policy explains how we handle your personal data when you visit our website (krypha.com), use our services, or communicate with our team.
We operate under the data protection laws of the United Kingdom (UK GDPR & Data Protection Act 2018).
1. Who We Are
We are Krypha LTD, a limited company registered in Northern Ireland.
- Company Number: NI736623
- Registered Office: Office 1502, 92 Castle Street, Belfast, BT1 1HE.
- Data Controller: Iris R. (Founder)
2. The Data We Collect
We limit data collection to what is strictly necessary for business operations:
- Identity Data: First name, last name, username or similar identifier.
- Contact Data: Email address and telephone numbers (collected via contact forms or Calendly).
- Technical Data: IP address, browser type, time zone setting, and operating system (via server logs and analytics).
- Usage Data: Information about how you use our website.
3. How We Use Your Data
We will only use your personal data when the law allows us to. Most commonly, we use your personal data in the following circumstances:
Service Delivery
To register you as a new client and process your project requirements.
Legitimate Interests
To manage our business relationship and keep our records updated.
Legal Compliance
To comply with legal or regulatory obligations (e.g., tax reporting).
Communication
To respond to your inquiries regarding our services.
4. Cookies & Analytics
We adopt a 'Privacy by Design' approach. We do not use intrusive advertising trackers. We use an internal analytics solution to understand website usage.
Our measurement tool:
- Self-Hosted Analytics (Umami): An open-source solution hosted on our own secure infrastructure. All data is anonymized (no full IP collection) and is never shared with third parties like Google or Facebook.
You retain full control. If you decline tracking via our banner, no measurement scripts will be loaded on your device.
5. International Transfers
Krypha operates with a hybrid structure. While our legal entity is in the UK, our engineering operations center is located in Madagascar.
When you share data with us, it may be accessed by our internal team in Madagascar for the purpose of service delivery. We ensure your data remains protected by implementing Standard Contractual Clauses (SCCs) and strict internal data protection policies that align with UK GDPR standards.
6. Data Security
We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way. We limit access to your personal data to those employees, agents, contractors, and other third parties who have a business need to know.
7. Your Legal Rights
Under certain circumstances, you have rights under data protection laws in relation to your personal data, including:
- Request access to your personal data.
- Request correction of your personal data.
- Request erasure of your personal data.
- Object to processing of your personal data.
- Request restriction of processing your personal data.
8. Contact Us
If you have any questions about this privacy policy or our privacy practices, please contact us at: [email protected]