Global Privacy Policy for Sid6.com
Effective Date: September 6, 2026
1. Scope, Operational Architecture, and Perpetual Beta Status
This Global Privacy Policy ("Policy") governs the collection, processing, disclosure, and protection of information by Sid6.com ("Sid6," "Platform," "we," "us," or "our") across our web application, digital tools, APIs, and business centralization services (collectively, the "Service").
The Service operates under a continuous deployment and development infrastructure known as PERPETUAL BETA. By accessing or utilizing the Service, you ("User," "Client," or "Data Subject") acknowledge that platform features, optimization protocols, data structures, and system analytics evolve continuously. This Policy is versioned alongside our core Terms of Service to reflect system iterations.
2. STRICT EXCLUSION OF SENSITIVE PERSONAL DATA AND GOVERNMENT IDENTIFIER DOCUMENTS
Sid6 is an enterprise business centralization platform engineered for operational scaling, metrics aggregation, and workflow efficiency. THE PLATFORM IS NOT DESIGNED, INTENDED, OR AUTHORIZED TO PROCESS SENSITIVE PERSONAL DATA OR OFFICIAL GOVERNMENT IDENTITY DOCUMENTS.
Strict Prohibitions: Users are explicitly prohibited from uploading, ingesting, transmitting, or storing any of the following categories of data within the Service:
Official Government Identity Documents or Numbers: Social Security Numbers (SSN), Passport Numbers, Driver’s License Numbers, National Identification Numbers, or State Identity Cards;
Special Categories of Personal Data (GDPR Art. 9 / LGPD Art. 5): Biometric data used for unique identification, genetic data, health or medical records, sexual orientation, trade union membership, religious or philosophical beliefs, or political opinions;
Financial Account Security Data: Unencrypted credit card Primary Account Numbers (PAN), CVVs, or bank account credentials (all financial transactions must route strictly through our authorized payment processors);
Data of Minors: Personal data of individuals under the age of eighteen (18).
Legal Disclaimer and Indemnity: If a User or Client breaches this prohibition and ingests Sensitive Data or Government Documents into the Service, Sid6 reserves the immediate right to purge such data without prior notice. To the maximum extent permitted by applicable law, Sid6 disclaims all liability for unauthorized Sensitive Data ingested by Clients, and Client agrees to fully indemnify Sid6 for any regulatory fines, claims, or damages resulting from such breach.
3. Categories of Data We Process
3.1 Account & B2B Contact Information
When you create an account, request a demo, or subscribe to the Service, we collect B2B contact data, including your name, corporate email address, business phone number, job title, company name, and corporate billing details.
3.2 Service Operations and Optional Browser Analytics
SID6 distinguishes service operations from optional browser behavior measurement. Services record operational events and aggregate counters, including orders, bookings, and other business actions, independently of the analytics preference and without relying on an analytics cookie. Authentication, security, request handling, and diagnostics can still involve personal data, including network and account information needed for the requested service. Cookie independence does not remove purpose limitation, lawful-basis, security, retention, or individual-rights obligations.
Optional browser analytics is off by default and begins only after an explicit analytics grant. It uses SID6 first-party collection with limited page and interaction events and ephemeral visit identifiers held only in the current page runtime. It excludes typed values, visible element text, URL queries and fragments, and authenticated account identifiers. It does not use a persistent analytics identifier in browser cookies or local/session storage. First-party operation and the absence of a persistent identifier do not, by themselves, make browser measurement exempt from consent.
Built-in Google Analytics and Google Tag Manager integrations are retired; built-in usage data is not sent to Google or other third-party analytics providers. Session replay and screen recording are disabled. These statements describe the built-in analytics service and do not characterize every external service a customer may separately enable.
Both acceptance and refusal are remembered for 180 days by the necessary consent-preference cookie and local record. Use Cookie settings in the footer or the equivalent standalone-service control to change or withdraw the choice; GPC overrides an earlier grant. Withdrawal stops future optional browser collection and does not disable the service operations described above. The current analytics service applies a 90-day retention policy with scheduled deletion; this is separate from the 180-day browser-preference lifetime and from retention duties for business, security, financial, or legal records. See the Cookie Policy for the storage register and the limited treatment of strictly necessary third-party security functions.
For consented browser page views, SID6 may derive an approximate country from the connection IP address using a country database held locally on its server. Only the country code, or an unknown value when unavailable, is added to analytics; the IP address is not retained in analytics. The lookup does not send visitor IP addresses to the country-database provider. This is approximate country-level measurement, not precise location or an authenticated identity, and it follows the analytics retention policy.
3.3 Customer Business Data (Processor Capacity)
Operational metrics, workflow data, and internal business records uploaded by Clients into the control panel are processed by Sid6 strictly as a Data Processor (or "Service Provider" under CCPA/CPRA) solely to deliver the centralized services pursuant to Client instructions.
4. Data Monetization Status, Future Transfer Rights, and Aggregated Assets
4.1 Current Non-Sale Declaration
Under current operations, Sid6 DOES NOT SELL personal data to third parties for monetary consideration and DOES NOT SHARE personal data for cross-context behavioral advertising as defined under the California Consumer Privacy Act (CCPA/CPRA) and related US state privacy statutes.
4.2 Reservation of Future Data Monetization & Transfer Rights
Sid6 reserves the right to adapt its commercial business models in the future, which may include the licensing, commercialization, or transfer of certain non-sensitive platform datasets to strategic partners, industry analysts, or acquirers.
In the event Sid6 elects to initiate commercial data sales or cross-context sharing:
Advance Transparency Notice: We will provide users with a clear, conspicuous advance notice at least thirty (30) days prior to the implementation of any commercial data monetization model.
Explicit Opt-Out & Choice Rights: Users will be provided an accessible, friction-free mechanism to exercise their statutory Right to Opt-Out ("Do Not Sell or Share My Personal Information") before any data transfer takes place, in full compliance with CCPA/CPRA, LGPD, and global privacy standards.
4.3 Absolute Ownership of Anonymized and Aggregated Datasets
Notwithstanding anything to the contrary, Sid6 owns all right, title, and interest in system telemetry, metadata, and datasets that have undergone irreversible anonymization and aggregation. Aggregated metrics that cannot reasonably be re-identified or linked to an individual or enterprise are no longer personal data. Sid6 retains a perpetual, worldwide, royalty-free license to utilize, commercialize, license, and publish aggregated benchmark data to optimize system efficiency and deliver industry analytics.
5. Artificial Intelligence (AI) and Zero Model Ingestion Guarantee
Sid6 incorporates advanced machine learning algorithms and predictive analytics to drive workflow centralization.
Zero Public Model Training Guarantee: Sid6 explicitly warrants that non-public Customer Data, proprietary business records, and uploaded Client inputs shall NOT be sold, transferred, or used to train, align, or fine-tune public, commercial, or third-party Artificial Intelligence models (such as public LLMs).
Isolated Execution: All AI-driven analytics executed within sid6.com run inside zero-retention, context-isolated execution pipelines dedicated strictly to serving the Client.
6. Post-Quantum Security and Incident Response Standard
Sid6 deploys Post-Quantum Cryptography (PQC) alongside state-of-the-art encryption protocols to safeguard data in transit (HTTPS/TLS) and at rest.
No security environment is completely immune to vulnerabilities or attacks. SID6 must apply safeguards and incident-response measures appropriate to the processing and applicable law. The use of cryptography or a continuous-development model does not exclude statutory duties, remedies, or liability.
7. Global Privacy Rights and Universal Opt-Out Signals
Depending on your jurisdiction (including the European Economic Area, United Kingdom, Brazil, California, and other US States), you may exercise the following rights regarding your personal data:
Right to Access & Data Portability: Request confirmation of processing and obtain a copy of your personal data.
Right to Correction/Rectification: Request correction of inaccurate or incomplete personal records.
Right to Erasure (Deletion): Request the deletion of personal data, subject to statutory record-retention exceptions.
Right to Opt-Out of Sale/Sharing: Opt-out of any future commercial sale or cross-context behavioral advertising.
Universal Opt-Out Preference Signals: Sid6 honors recognized browser-based universal opt-out signals, such as the Global Privacy Control (GPC). When our systems detect a GPC signal from your browser, optional tracking and profiling scripts are automatically suppressed.
To exercise any privacy right, contact our Data Protection Officer at privacy@sid6.com. Sid6 will not discriminate against any User for exercising their statutory privacy rights.
8. International Data Transfers and DPA Integration
Sid6 operates globally and may store or process data in cloud data centers located in the United States, European Union, and other international nodes. For users in the EU/EEA, UK, or Switzerland, cross-border data transfers are governed by standard contractual clauses (SCCs) or international adequacy frameworks incorporated into our standard Data Processing Addendum (DPA).
9. Limitation of Liability and "AS IS" Standard
TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, THIS PRIVACY POLICY AND ALL DATA PROCESSING OPERATIONS ARE PROVIDED ON AN "AS IS" AND "AS AVAILABLE" BASIS.
SID6 DISCLAIMS ALL IMPLIED WARRANTIES, INCLUDING FITNESS FOR A PARTICULAR PURPOSE OR UNINTERRUPTED AVAILABILITY. IN NO EVENT SHALL SID6, ITS DIRECTORS, OFFICERS, OR AFFILIATES BE LIABLE FOR ANY INDIRECT, CONSEQUENTIAL, PUNITIVE, SPECIAL, OR INCIDENTAL DAMAGES (INCLUDING LOST PROFITS, BUSINESS INTERRUPTION, OR DATA LOSS) ARISING OUT OF OR RELATING TO THIS PRIVACY POLICY OR SYSTEM DATA OPERATIONS. SID6’S TOTAL AGGREGATE FINANCIAL LIABILITY FOR ALL PRIVACY OR DATA PROCESSING CLAIMS SHALL NOT EXCEED THE TOTAL FEES PAID BY CLIENT TO SID6 IN THE TWELVE (12) MONTHS PRECEDING THE CLAIM.
Nothing in this Policy excludes non-waivable privacy rights, compensation rights, supervisory-authority powers, or obligations imposed by applicable law. No provision guarantees immunity from claims, investigations, or liability.
10. Modifications and Governance
SID6 may update this Policy to reflect service or legal changes and will publish an identifiable successor with a revised effective date. Earlier legal versions and acceptance evidence remain in the legal history. Publication, continued use, or legal-document acceptance does not itself grant optional analytics consent; a change requiring fresh consent must be presented before that optional processing begins.
Contact Information & DPO
Data Protection Officer & Privacy Engineering Team
Sid6 Platform Governance
Email: privacy@sid6.com
Web: https://sid6.com/privacy