Legal

Privacy Policy

Last updated: May 8, 2026

This Privacy Policy explains, in plain language, how Tech Cense Squad Inc. collects, uses, protects, and shares your personal information across our website and services — and the choices you have over it.

Tech Cense Squad Inc. ("we", "us", "our", or "the Company") is a corporation registered in Ontario, Canada. We deliver managed IT services, cloud solutions, network infrastructure, cybersecurity support, and technology consulting to businesses across Canada and internationally.

We believe that privacy is a fundamental right, not an afterthought. This Privacy Policy describes, in plain language, how we collect, use, protect, and share your personal information — and what choices you have over it.

This Policy governs personal information collected through:

  • Our website at www.techcensesquad.com (the "Site")
  • Direct client service engagements and communications
  • Our general business operations

It has been drafted in compliance with the following:

LegislationJurisdiction
Personal Information Protection and Electronic Documents Act (PIPEDA)Canada (Federal)
General Data Protection Regulation (GDPR)EU / UK (where applicable)
Freedom of Information and Protection of Privacy Act (FIPPA)Ontario, Canada
Canada's Anti-Spam Legislation (CASL)Canada (Federal)

By accessing our Site or engaging our services, you confirm that you have read and understood this Policy.

Who this Policy applies to:

  • Visitors browsing our website
  • Individuals submitting inquiries or contact forms
  • Current, prospective, and former clients
  • Vendors, subcontractors, and business partners
  • Job applicants and employment candidates

What this Policy covers: Personal information collected directly from you, automatically through your use of our Site, or received from third-party sources — including how we store, use, share, and protect it.

What this Policy does not cover: Third-party websites or platforms linked from our Site. Where we act as a data processor for a client, the applicable data processing agreement governs.

3.1 Information You Provide Directly

  • Identity: Full name, job title, professional role
  • Contact: Email, phone, mailing address
  • Business: Company name, size, industry
  • Communication: Messages, inquiries, support tickets
  • Service: Technical requirements, project specifications
  • Financial: Billing information (payment card details handled by PCI-DSS compliant processors only)

3.2 Information Collected Automatically — IP address, browser, OS, device identifiers; pages visited, time spent, navigation patterns; cookies and tracking technologies (see Section 9).

3.3 Information from Third Parties — referrals, public professional platforms (e.g. LinkedIn), analytics providers, background verification (with consent).

3.4 Sensitive Personal Information — We do not intentionally collect special categories of sensitive data. Please do not submit such information unless required for a service we are delivering.

Service Delivery: Respond to inquiries, deliver and manage IT services, onboard clients, process invoices.

Business Operations: Manage client and vendor relationships, due diligence, regulatory compliance, business records.

Website & Service Improvement: Understand usage, test features, diagnose performance issues.

Marketing & Communications: Service updates and newsletters where opted in or lawful under CASL.

Legal & Compliance: Comply with laws and orders, defend legal claims, prevent fraud.

We will never sell, rent, or trade your personal information to third parties for their own commercial purposes.

Service Providers: Cloud hosting (Microsoft Azure, AWS, Google Cloud), CRM, email, payment processors, analytics — bound by data processing agreements.

Professional Advisors: Legal counsel, accountants, auditors, insurers — under confidentiality.

Regulatory and Legal Authorities: Where required by law, court order, or to protect rights, safety, or property.

Business Transfers: In a merger or sale of business assets, with prior notice and equivalent privacy protections.

Some of our service providers operate outside Canada. When personal information is transferred internationally, we use:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequacy determinations by relevant data protection authorities
  • Supplementary technical and organizational safeguards

We retain personal information only as long as necessary or required by law:

Data CategoryRetention Period
Client service and engagement records7 years from end of engagement
Contact form and inquiry submissions2 years from date received
Website analytics data26 months
Marketing consent recordsUntil consent withdrawn + 3 years
Unsuccessful job applicant data12 months from application date
Financial and billing records7 years (CRA requirement)

Once no longer required, data is securely deleted or irreversibly anonymized.

Our Site uses cookies to support operation, analyse usage, and assist with marketing. Strictly necessary cookies cannot be disabled; analytics, preference, and marketing cookies are optional. See our Cookie Policy for full details.

Technical Safeguards:

  • TLS 1.2 / 1.3 encryption in transit
  • AES-256 encryption at rest
  • Multi-factor authentication (MFA)
  • Role-based access controls (RBAC)
  • Regular vulnerability assessments and penetration testing
  • Endpoint detection and response (EDR), continuous monitoring
  • Secure backups and tested disaster recovery

Organizational Safeguards: Privacy training, documented procedures, NDAs, vendor due diligence, incident response plan.

Breach Notification: Where PIPEDA applies, we notify the Office of the Privacy Commissioner of Canada and affected individuals where there is a real risk of significant harm. Where GDPR applies, we notify the supervisory authority within 72 hours.

Under PIPEDA — All Canadian Residents: Access, Correction, Withdrawal of consent, Complaint to the Privacy Commissioner.

Additional Rights Under GDPR — EEA & UK Residents: Erasure, Restriction, Portability, Objection, protection from solely automated decision-making.

How to Exercise Your Rights: Email info@techcensesquad.com or write to our office. We acknowledge within 5 business days and respond within 30 calendar days (extensions possible for complex requests).

We send commercial electronic messages only with your express or implied consent under CASL. Each message identifies us, includes our contact details, and provides an unsubscribe mechanism processed within 10 business days.

To opt out: click "Unsubscribe" in any marketing email, or email us at info@techcensesquad.com with "Unsubscribe" in the subject.

Our services are designed for business professionals. We do not knowingly collect personal information from individuals under the age of 16. Contact us if you believe we hold such information.

When we make material changes, we will:

  • Update the "Last Updated" date
  • Post a notice on our Site for at least 30 days
  • Notify you directly by email where the change is significant and we hold your contact information

Canada: Office of the Privacy Commissioner of Canada — priv.gc.ca · 1-800-282-1376

EEA: Your local Data Protection Authority — edpb.europa.eu

UK: Information Commissioner's Office — ico.org.uk · 0303 123 1113

We always appreciate the opportunity to address your concern directly first.

Tech Cense Squad Inc. is the data controller responsible for the personal information covered by this Policy.

Tech Cense Squad Inc.
3050 Pharmacy Avenue, Suite 214
Toronto, ON, M1W 2N7, Canada
info@techcensesquad.com · +1 (437) 245-6655
Monday – Friday, 9:00 AM – 6:00 PM EST

Questions about this policy?

Our team responds to every legal and privacy inquiry personally — usually within one business day.