Privacy Policy

NorTech Innovations & Solutions
Effective Date: July 24, 2025
Your privacy is important to us. We believe in straightforward and transparent data handling.
This Privacy Policy explains how NorTech Innovations & Solutions (“Company,” “we,” “us,” or “our”), collects, uses, and protects your personal information. Our commitment to privacy is global, and we handle your information responsibly and in compliance with applicable privacy laws, including Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA), the European Union’s General Data Protection Regulation (GDPR), and the California Consumer Privacy Act (CCPA), where applicable.
By using our website, submitting an inquiry, or utilizing our services, you confirm that you have read, understood, and consented to the collection, use, and disclosure of your personal information as described in this policy.
1. Information We Collect
We collect various types of information to provide and improve our services, depending on how you interact with us:
- Information Collected from Website Forms: When you use our contact form, which is powered by Jetpack Forms, we collect the following information that you provide:
- Contact & Personal Details: Full Name, Email Address, Phone Number (optional), and Company Name (optional).
- Service & Project Details: The urgency of your request, the type of service you are interested in (HomeTech, Business IT, etc.), a detailed description of your needs, your primary concern, and any additional information you provide.
- Logistical Information: Your preferred service method (Remote, In-person, Both), your location within or outside the City of Toronto, and your preferred communication method.
- Referral Information: How you heard about us.
- Information from Direct Communications: If you contact us via email, phone call, or other direct means, we collect your contact information and any details you provide in your communication to help us respond to your inquiry.
- Information from Blog Comments: When you leave a comment on our blog, we collect the name and email address you provide, as well as your comment. Please be aware that any information you post in a blog comment, including the name and comment you entered, will be publicly displayed on the website.
- Technical & Device Information (Browse Data): When you browse our website (which is built on the WordPress platform), we may automatically collect technical information such as your IP address, browser type, operating system, and the pages you visit. This data is collected to improve website functionality and analyze traffic. While IP addresses can be used to infer your general geographical location, they are generally kept confidential except as required for security investigations or legal compliance as outlined in this policy.
- Service-Specific Information: For specialized services like Account Recovery & Digital Damage Control, or during remote troubleshooting sessions, we may require access to sensitive information such as account usernames, passwords, security questions, or personal files to regain access or resolve issues. When providing remote support, we may use third-party tools (e.g., remote access software) which may collect data about your device and session as part of their functionality. This information is handled with the utmost care and is not retained longer than necessary to complete the service.
2. Legal Basis and How We Use Your Information
We process your personal data under the following legal bases:
- Consent: When you give us clear consent to process your data for a specific purpose (e.g., by submitting a form or subscribing to a newsletter).
- Contractual Necessity: When processing is necessary for the performance of a service contract with you (e.g., providing technical support, fulfilling a quote).
- Legitimate Interests: When processing is necessary for our legitimate business interests, provided it does not override your fundamental rights and freedoms (e.g., improving our services, preventing fraud, maintaining website security).
We use the information we collect for the following purposes:
- To Provide Services: This is our primary purpose. We use your information to fulfill service requests, troubleshoot technical issues, set up devices, recover accounts, and provide the services outlined in your inquiry. Your location data helps us determine our on-site service availability.
- To Communicate with You: We use your contact information to respond to your inquiries, send you quotes, schedule appointments, and provide updates about our services or your specific project. We communicate with you using the preferred methods you specify (e.g., email, phone call, video call) to provide assistance and service-related information.
- To Improve Our Services and Website: We may use anonymized or aggregated data from your Browse activity and form submissions to understand how our services are used and to improve our offerings, website functionality, and client support processes.
- For Marketing: With your consent, we may use your contact information to send you updates, promotional materials, or newsletters about our services. You have the right to withdraw this consent at any time.
- For Legal Compliance: We may use and disclose your information to comply with legal obligations, enforce our Terms of Service, resolve disputes, or protect our rights and safety.
3. How We Share Your Information
We do not sell or rent your personal information to third parties. We will only share your information in the following limited circumstances:
- With Your Consent: We will share your information with third parties when you have given us explicit consent to do so (e.g., providing us with your internet provider’s details so we can communicate with them on your behalf).
- With Third-Party Service Providers: We may share your information with trusted third-party service providers who assist us in operating our business and providing our services. Wherever possible, we prioritize the use of open-source software and services due to the transparency and auditable nature of their codebases, which aligns with our commitment to privacy and security. For closed-source commercial tools, we rely on the provider’s stated privacy practices and reputation. These providers include:
- Website Hosting & Functionality Providers (e.g., WordPress and Jetpack): Our website is built on the WordPress platform, and we use Jetpack to provide various services, including our inquiry forms and blog comment spam filtering via Akismet. Jetpack’s parent company, Automattic, takes data privacy and GDPR very seriously. They respect the principles of minimizing data collection, being transparent about data usage, and not retaining data longer than necessary. You can review their privacy policy for more details.
- Communication & Collaboration Platforms (e.g., Google Workspace/Gmail): Your form submissions and direct email communications are sent to our company email, which is hosted by Google. This means your data is subject to Google’s Terms of Service and Privacy Policy while being processed and stored on their platform. We utilize various Google services for internal operations and communication.
- Payment Processors: To securely handle payment transactions.
- Website Analytics Providers: To analyze website usage and traffic.
- Remote Support Tools: When we provide remote assistance, we use third-party software tools designed for secure remote access. We ensure that these providers are obligated to protect your information and only granted access to the data necessary to perform their specific functions.
- For Legal Reasons: We may disclose your information if required to do so by law, in response to a court order, or to protect our rights, property, or safety, or that of our clients or the public. We are committed to notifying you of such requests when legally permitted to do so, before disclosing your personal information.
4. International Data Transfers
As a Canadian-based company, the personal information we collect is stored and processed on servers within Canada and potentially with our third-party service providers located in the United States. If you are a resident of the European Economic Area (EEA), your personal data may be transferred outside the EEA to these locations. We are committed to ensuring that such international transfers of personal data are conducted in compliance with applicable data protection laws. We take steps to ensure that your data is handled with an adequate level of protection as if it were being processed within your home region, including relying on appropriate safeguards recognized by relevant privacy regulations.
5. Your Privacy Rights
Depending on your location and the applicable privacy laws (such as PIPEDA, GDPR, and CCPA), you may have extensive rights regarding your personal data. We are committed to honoring these rights, including:
- Right to Be Informed: The right to receive clear, transparent, and easily understandable information about how we use your data.
- Right to Access: Request access to the personal information we hold about you.
- Right to Rectification: Request that we correct any inaccurate or incomplete personal information we have.
- Right to Erasure (“Right to be Forgotten”): Request the deletion of your personal data under certain circumstances (e.g., when it is no longer necessary for the purposes for which it was collected).
- Right to Restrict Processing: Request that we limit the way we use your personal data under certain conditions.
- Right to Data Portability: Receive your personal data in a structured, commonly used, and machine-readable format to transfer it to another service provider.
- Right to Object: Object to the processing of your personal data based on our legitimate interests or for direct marketing purposes.
- Right to Withdraw Consent: Withdraw your consent to the collection, use, and disclosure of your personal information at any time, subject to legal and contractual restrictions. Withdrawing consent may impact our ability to provide certain services to you.
To exercise these rights, please contact us using the contact information provided below. We may need to verify your identity before fulfilling your request.
6. Data Security
We take reasonable technical, physical, and administrative measures to protect your personal information from unauthorized access, loss, misuse, or alteration. These measures include secure servers, access controls, and data encryption.
Important Note on Electronic Communications: You acknowledge that electronic communications, including email, form submissions, and data transmitted over the internet, carry inherent security risks (e.g., unauthorized access, interception, data corruption). While we employ reasonable security measures, we cannot guarantee the absolute security of data during transmission or against sophisticated cyberattacks.
7. Data Retention
We will retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, including for the purpose of satisfying any legal, accounting, or reporting requirements.
8. Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance your browse activity, analyze website traffic, and improve our services. A cookie is a small text file stored on your device that helps us recognize you and remember your preferences. We use cookies for various purposes, including:
- Strictly Necessary Cookies: Essential for the website to function correctly (e.g., allowing you to navigate the site).
- Analytical/Performance Cookies: Help us understand how visitors interact with our website by collecting information about usage patterns (e.g., which pages are most popular).
- Functionality Cookies: Used to remember choices you make and provide enhanced, more personal features (e.g., remembering your preferences).
You have a variety of tools to control the data collected by cookies. You can configure your internet browser settings to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, some parts of our website may not function properly.
9. Links to Other Websites
Our website may contain links to third-party websites. This Privacy Policy does not apply to those websites. We encourage you to review the privacy policies of any third-party websites you visit. We are not responsible for the privacy practices or content of these external sites.
Furthermore, during the course of providing our services, you may use or interact with various third-party software applications, operating systems, and web services (e.g., Microsoft Windows, Microsoft Office, Apple macOS, Apple iOS, Google Chrome, etc.). Your interaction with these third-party products and services, including their data collection practices, is governed by their respective privacy policies and terms of service, not by this Privacy Policy. We encourage you to review the privacy policies of any software or services you use in conjunction with our assistance.
10. Notice to Organizational Users / Business Clients
If you are an individual accessing our services through an organization (such as your employer or a business entity) that has a contractual relationship with NorTech Innovations & Solutions, your personal data may be subject to your organization’s privacy policies and practices in addition to this Privacy Policy. In such cases, your organization may have control over the data processed in connection with the services provided to them, and you should direct your privacy inquiries, including any requests to exercise your data protection rights, to your organization’s administrator or privacy officer.
11. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will post the updated policy on our website with a new “Effective Date.” We encourage you to review this policy periodically.
12. Contact Us
If you have any questions or concerns about this Privacy Policy or our privacy practices, please contact us by visiting our Contact Us page.
