Privacy Policy
This Privacy Policy explains how Grythena Systems collects, uses, stores, and discloses information when you visit this website, submit a project request, ask for technical support, or engage the company for IT services.
1. Scope
This Policy applies to information handled through this website and during communications about IT assessment, network configuration, cloud workspace setup, cybersecurity support, software integration, maintenance, and troubleshooting. A separate written service agreement, statement of work, or client security requirement may add terms for a specific engagement. If a project document provides stronger privacy or security requirements, those project-specific requirements will govern that engagement to the extent of any conflict.
2. Information We Collect
We may collect information you submit directly, including your name, business name, work email address, phone number, business address, selected service, project notes, preferred timing, device or user counts, and any files or technical details you choose to provide. During service delivery, we may also receive business contact information, system inventories, network diagrams, account identifiers, configuration records, support history, device information, log extracts, and other technical data needed to understand or resolve the requested work.
When you use the website, standard technical data may be generated automatically, such as IP address, browser type, device type, operating system, approximate region, referring page, pages viewed, and timestamps. The site may use essential cookies or comparable browser storage where needed for basic operation, security, accessibility, and user preferences. Details appear in the Cookie Policy.
3. How We Use Information
Information is used to review inquiries, prepare estimates and scopes, communicate about requested services, schedule work, provide and document technical services, secure company systems, maintain business records, process authorized transactions, meet legal obligations, and improve service quality. Technical information is used only to the extent reasonably necessary to diagnose an issue, configure a system, validate a change, or support the agreed service.
We do not sell personal information. We do not use information submitted through a project request to send unrelated promotional messages without an appropriate basis or permission. We may use aggregated or de-identified operational information to understand common service needs, provided that it cannot reasonably identify a client or individual.
4. Legal Bases and Business Purposes
Depending on the location and context, processing may be based on steps requested before entering an agreement, performance of an agreement, compliance with law, consent, or legitimate business interests such as responding to inquiries, preventing fraud, maintaining security, and keeping accurate records. Where consent is the applicable basis, you may withdraw it for future processing, although withdrawal does not affect processing already completed lawfully.
5. Sharing and Service Providers
Information may be shared with vendors that support hosting, cloud storage, business communications, accounting, payment administration, scheduling, security, or professional advice. These providers receive only the information reasonably needed for their function and are expected to protect it under applicable terms. Information may also be disclosed when required by law, legal process, insurance requirements, or a good-faith need to protect rights, systems, clients, or the public.
Many IT projects involve third-party platforms selected by the client, including cloud, identity, security, productivity, hardware, and software providers. Those providers process information under their own terms and privacy notices. Grythena Systems does not control their independent practices.
6. Access Credentials and Sensitive Technical Data
Clients should not place passwords, private keys, recovery codes, payment card numbers, government identifiers, or other highly sensitive secrets in a general website form. When credentials or privileged access are needed for approved work, the parties should use an agreed secure method and limit access by role, time, and purpose. Credentials should be rotated or revoked after the relevant work when appropriate.
7. Retention
Inquiry information is retained for as long as reasonably needed to respond, prepare a scope, keep required business records, and manage follow-up. Client and project records may be retained during the engagement and afterward for operational continuity, legal compliance, accounting, security investigation, insurance, and dispute management. Retention periods vary by record type, contractual obligation, and applicable law. Information that is no longer needed is deleted, anonymized, or securely isolated where practical.
8. Security
Reasonable administrative, technical, and physical safeguards are used to protect information against unauthorized access, alteration, loss, and disclosure. Measures may include access controls, multi-factor authentication, encryption where appropriate, device protections, secure configuration, backup controls, and vendor review. No internet transmission, platform, or storage method is guaranteed to be completely secure, and users should avoid sending unnecessary sensitive information.
9. Your Choices and Rights
Subject to applicable law, you may request access to personal information, correction of inaccurate information, deletion, restriction, objection, portability, or information about disclosures. Some records may need to be retained for legal, security, accounting, contractual, or dispute-related reasons. Requests must include enough information to verify identity and locate the relevant records. An authorized agent may submit a request where permitted, but proof of authority and identity may be required.
10. Children
The website and services are intended for businesses and adults. They are not directed to children under 13, and Grythena Systems does not knowingly collect personal information from children through this website. If such information is identified, contact us so it can be reviewed and removed where appropriate.
11. Interstate and International Processing
Information may be processed in the United States and in other locations where approved service providers operate. Privacy rules can differ between jurisdictions. When legally required, reasonable contractual or organizational measures will be used for relevant transfers.
12. Changes to This Policy
This Policy may be updated when services, vendors, legal requirements, or operating practices change. The date at the top identifies the latest version. Material changes may also be communicated through the website or directly when appropriate.
Contact
Questions or privacy requests should include a clear description of the request and enough information to identify the related communication or project.
EMAIL: operations@grythenasystems.comADDRESS: 408 Highland Ct, Iowa City, IA 52240
PHONE: +1 702 707 6679