Legal
Privacy Policy
Last updated: August 30, 2026
This Privacy Policy explains how Cipher01 LLC (“Cipher01,” “we,” “us”) collects, uses, discloses, and safeguards information when you visit https://cipher01.com, contact us, or engage us for services. Cipher01 is a US-based entity located in Sheridan, Wyoming, USA.
1. Information we collect
Information you provide. When you submit our contact form, we collect your name, email address, company, and the contents of your message. If you engage us, we may also collect billing and contractual details.
Client engagement data. Delivering our services requires us to handle sensitive material, which may include penetration test reports, vulnerability findings, system and network information, configuration data, logs, and forensic evidence. This data is governed by the engagement contract and the additional safeguards described below.
Automatically collected data. Our hosting and analytics infrastructure may log IP address, browser type, pages visited, and similar technical data. We use reCAPTCHA on our contact form to reduce spam and abuse; your use of reCAPTCHA is subject to Google's privacy policy and terms.
2. How we use information
- To respond to enquiries and provide requested information;
- To scope, deliver, and support engagements;
- To produce and deliver reports and findings to authorized client recipients;
- To meet legal, tax, accounting, and regulatory obligations;
- To protect the security and integrity of our systems and our clients' data.
We do not sell personal information, and we do not use client engagement data for marketing or to train third-party services.
3. Handling of sensitive client security data
- Access is restricted to Cipher01 personnel assigned to the engagement, on a need-to-know basis;
- Reports, findings, and evidence are encrypted in transit and at rest;
- Engagement data is stored only for as long as needed to deliver the service, meet contractual retention terms, or comply with law, after which it is securely deleted or returned;
- Findings are shared only with recipients the client designates in writing;
- Personnel are bound by confidentiality obligations, and engagements are covered by a mutual non-disclosure agreement where requested.
4. Disclosure of information
We may disclose information to service providers who support our operations (for example, hosting, email, and form processing such as Formspree), each bound by confidentiality and data-protection obligations; to professional advisors; in connection with a corporate transaction; or where required by law, subpoena, or to protect rights and safety. Client engagement data is disclosed only as permitted by the engagement contract.
5. Data retention
We retain personal information from enquiries for up to 24 months unless a longer period is required. Engagement records are retained according to the relevant contract and applicable legal requirements, then securely disposed of.
6. Your rights
Depending on your location, you may have the right to access, correct, delete, or restrict processing of your personal information, or to object to certain processing. To exercise these rights, contact us through our contact page. We will respond as required by applicable law.
7. Security
We maintain administrative, technical, and physical safeguards designed to protect information. No method of transmission or storage is completely secure, but we work to protect information consistent with the sensitivity of the data we handle.
8. International transfers
We are based in the United States and serve international clients. Information may be processed in the United States and other countries where we or our service providers operate. Where required, we put appropriate transfer mechanisms in place.
9. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be reflected by the “Last updated” date above.
10. Contact
Cipher01 LLC
Sheridan, Wyoming, USA
cipher01.com/contact
This document is provided as general information and does not constitute legal advice.