Privacy Policy
Table of Contents
- Introduction & Scope
- Data Controller Information
- Information We Collect & Architecture
- Legal Bases for Processing (GDPR Art. 6)
- How We Use Information
- Sharing & Third-Party Sub-Processors
- Cookies, LocalStorage & Tracking Policy
- Data Retention Policy
- Your Rights (GDPR & CCPA/CPRA)
- International Data Transfers
- Children's Privacy (COPPA)
- Data Security Standards
- Changes to This Privacy Policy
- Contact Information
1. Introduction & Scope
Welcome to BusinessCalc.org ("BusinessCalc", "we", "us", or "our"). This Privacy Policy explains in complete detail how we collect, process, secure, and disclose information when you visit and interact with our web platform located at https://businesscalc.org (including all subdirectories, financial calculators, comparison guides, and statutory standards reference pages).
BusinessCalc is dedicated to delivering institutional-grade financial decision engines for Corporate Controllers, Chief Financial Officers, FP&A Managers, Treasury Officers, and Accounting Professionals across FP&A, Record to Report (R2R), Order to Cash (O2C), Procure to Pay (P2P), and Payroll Operations. Because our users enter highly sensitive enterprise figures—such as trial balance subledgers, gross payroll amounts, debt service coverage figures, and inventory valuations—we have designed our technological infrastructure with privacy-by-design principles at its foundation.
By accessing or using BusinessCalc.org, you acknowledge that you have read, understood, and agreed to the practices described in this Privacy Policy. If you do not agree with our policies, please discontinue use of our platform immediately.
2. Data Controller Information
For the purposes of the General Data Protection Regulation (GDPR - Regulation (EU) 2016/679) and applicable data protection legislation in the United Kingdom and global jurisdictions, the Data Controller responsible for your information is:
Data Controller Entity:
Tech Labs FZ LLC
Jurisdiction: United Arab Emirates
Designated Data Protection Contact: sales.team@tech-labs.me
Physical Address: Tech Labs FZ LLC, Free Zone, United Arab Emirates — contact via sales.team@tech-labs.me
3. Information We Collect & Technical Architecture
We believe in radical data minimization. We collect only the absolute minimum amount of information necessary to deliver static financial web tools, ensure system performance, and handle inbound communications.
A. Client-Side Financial Calculation Data (Zero Server Persistence)
When you utilize any of our 116 financial calculators (e.g., EBITDA Calculator, DSCR Calculator, Days Sales Outstanding, EOQ & Safety Stock, Burdened Labor Rate) or 25 side-by-side comparison tools, all mathematical computations occur entirely within your browser's local JavaScript engine. Your numerical entries (revenues, expenses, salaries, interest rates, inventory costs) are processed locally in RAM and are never transmitted to, stored on, or logged by our servers or any third-party infrastructure. No financial calculation payload ever leaves your device.
B. Inbound Contact & Support Inquiries
If you choose to submit a message via our Contact form located at /contact/, we collect the personal data you voluntarily provide:
- Identity Data: Full Name.
- Contact Data: Business Email Address.
- Professional Context: Company Name and Primary Enterprise Resource Planning (ERP) System selected (e.g., NetSuite, SAP, QuickBooks, Xero, Sage).
- Message Content: Technical support requests, feedback, custom calculation model inquiries, or partnership messages.
C. Server & CDN Technical Infrastructure Logs
When your browser requests static assets (HTML files, web fonts, CSS stylesheets, client-side JS bundles) from our CDN edge servers, our infrastructure automatically records technical log entries necessary for system diagnostic security, DDoS mitigation, and server load balancing:
- Internet Protocol (IP) Address (anonymized/truncated where required by law).
- Browser type, version, and operating system (User-Agent string).
- Referring page URL and request timestamps.
- Requested URI path and HTTP status code returned.
D. What We Explicitly DO NOT Collect
- We do NOT create user accounts or maintain member profile databases.
- We do NOT collect credit card numbers, bank account numbers, or payment credentials.
- We do NOT utilize behavioral tracking pixels, cross-site advertising identifiers, or third-party marketing cookies.
- We do NOT sell, rent, or monetize personal data or financial inquiry logs.
4. Legal Bases for Processing (GDPR Art. 6)
Under European and UK data protection frameworks, we process personal data relying on the following lawful legal bases:
- Consent (Art. 6(1)(a) GDPR): When you explicitly submit an inquiry via our contact form, you consent to our processing of your name, email, and message to respond to your request.
- Legitimate Interests (Art. 6(1)(f) GDPR): We process edge CDN server logs to maintain web platform security, prevent unauthorized malicious traffic, optimize load distribution, and safeguard static content delivery.
5. How We Use Information
We strictly limit the use of collected information to legitimate operational purposes:
- To operate, maintain, and serve static HTML5 financial pages and client-side computational scripts.
- To respond to technical inquiries, report calculation edge cases, and deliver technical support requested via our contact channels.
- To monitor network health, audit cybersecurity attacks (such as botnets or brute-force HTTP floods), and ensure uninterrupted global availability via edge caching.
6. Sharing & Third-Party Sub-Processors
We do not share your personal information with third parties except with trusted infrastructure service providers necessary to host and operate our static web platform. All third-party sub-processors are bound by strict data processing agreements:
| Sub-Processor | Service Delivered | Data Privacy Policy Link |
|---|---|---|
| Cloudflare, Inc. | CDN Edge Hosting, Web Application Firewall (WAF), DNS & SSL | Cloudflare Privacy Policy |
| Formspree, Inc. / Cloudflare Worker Forms | Encrypted Contact Form Submission Endpoint Handler | Formspree Privacy Policy |
7. Cookies, LocalStorage & Tracking Policy
BusinessCalc does NOT use advertising cookies, social media tracking pixels, or cross-site behavioral analytics cookies (such as Google Analytics or Meta Pixel). We respect user privacy by default.
Client-Side LocalStorage Usage
Our web platform utilizes standard browser window.localStorage solely for functional client-side features:
- Calculator Preference Persistence: Storing your preferred calculation direction mode (e.g., standard vs. dual-direction mode) or temporary slider settings so your state persists across page refreshes.
- Theme & Accessibility Settings: Storing UI preferences such as font sizing or drawer states.
Data stored in LocalStorage remains strictly inside your local web browser sandbox. It is never transmitted across the network. You can clear LocalStorage at any time via your browser's developer tools or clearing browser cache.
8. Data Retention Policy
We enforce strict data retention windows aligned with data minimization mandates:
- Contact Form Messages: Inbound support inquiries received via email or form handler are retained for a maximum of 24 months to resolve technical follow-ups, after which they are permanently deleted from secure email archives.
- Server Security Logs: Edge CDN access logs (containing anonymized IP addresses) are automatically rotated and purged after 30 days.
- LocalStorage Data: Remains on your local device until manually cleared by you.
9. Your Rights (GDPR & CCPA/CPRA)
A. European Union & UK Resident Rights (GDPR / UK GDPR)
If you reside in the European Economic Area or United Kingdom, you possess the following statutory rights regarding your personal data:
- Right to Access (Art. 15 GDPR): Request copies of personal data held about you.
- Right to Rectification (Art. 16 GDPR): Request correction of inaccurate personal data.
- Right to Erasure / "To Be Forgotten" (Art. 17 GDPR): Request deletion of your contact messages.
- Right to Restriction of Processing (Art. 18 GDPR): Request limitation of data processing.
- Right to Data Portability (Art. 20 GDPR): Request transfer of your data in a structured, machine-readable format.
- Right to Object (Art. 21 GDPR): Object to processing based on legitimate interests.
B. California Consumer Privacy Rights (CCPA / CPRA)
Under the California Consumer Privacy Act as amended by the California Privacy Rights Act, California residents enjoy explicit rights:
- Right to Know & Access: Request disclosure of personal information categories and specific pieces collected.
- Right to Delete: Request deletion of personal information submitted via contact channels.
- Right to Correct: Request correction of inaccurate personal information.
- Right to Opt-Out of Sale or Sharing: We DO NOT sell or share your personal information with third parties for cross-context behavioral advertising. We have never sold personal data.
- Right to Non-Discrimination: We will never discriminate against you for exercising your privacy rights.
To exercise any GDPR or CCPA/CPRA rights, please email our designated privacy team at sales.team@tech-labs.me or visit our Contact Page.
10. International Data Transfers
BusinessCalc operates globally utilizing Cloudflare's distributed edge network. If you access our platform from the EEA, UK, or other regions with laws governing data collection, please note that information submitted via contact forms may be transferred to and processed in the United States or other countries where our sub-processors maintain server infrastructure. All international transfers rely on Standard Contractual Clauses (SCCs) approved by the European Commission.
11. Children's Privacy (COPPA Compliance)
BusinessCalc is an institutional corporate financial platform designed exclusively for business executives, controllers, accountants, and finance professionals. Our platform is not intended for or directed to children under the age of 16. We do not knowingly collect personal information from children under 16 in compliance with the Children's Online Privacy Protection Act (COPPA). If we learn that we have inadvertently collected data from a child under 16, we will delete it immediately.
12. Data Security Standards
We maintain rigorous physical, technical, and organizational security controls to protect our static web platform and contact channels:
- All traffic between your browser and our servers is encrypted in transit using Transport Layer Security (TLS 1.3 / SSL) with HTTPS enforcement.
- Static site hosting eliminates server-side database vulnerabilities (such as SQL injection or remote code execution risks).
- Form submissions are encrypted and routed directly to authorized email endpoints.
13. Changes to This Privacy Policy
We reserve the right to update or modify this Privacy Policy at any time to reflect technological updates, regulatory changes, or operational enhancements. Any changes will be posted on this page with an updated "Last Updated" date at the top of the policy. We encourage users to review this page periodically to remain informed about our privacy standards.
14. Contact Information
If you have any questions, comments, or formal requests regarding this Privacy Policy or our data protection practices, please contact us at:
BusinessCalc Legal & Privacy Office
Entity: Tech Labs FZ LLC
Email: sales.team@tech-labs.me
Web Form: https://businesscalc.org/contact/