Vecta Standards

European privacy

Privacy Policy

A clear account of what we collect, why we use it, and the choices available to you.

Last updated: June 11, 2026

Scope and privacy contact

This policy applies to the Vecta Standards certification consultancy websites at vectastandards.com and europe.vectastandards.com, including their quote and contact journeys. Send privacy questions or rights requests to our designated privacy contact at info@vectastandards.com.

If a client engagement identifies a different contracting or data-controlling party, the relevant proposal, contract, or direct communication will provide the applicable details.

Information we collect

  • Contact and professional details you submit, including your name, corporate email address, phone number, company, role, and message.
  • Campaign attribution details included in the page URL, such as UTM parameters, advertising click identifiers, and the referring page, when you submit an enquiry.
  • Certification-scoping information, including the standard, industry, company size, target timeline, and operational context you provide.
  • Technical and security information such as IP-derived security identifiers, browser or device information, referring page, and server logs.
  • Analytics information about page and quote-journey use only when optional analytics has been accepted.

How we use information

  • Respond to quote requests, assess certification scope, and communicate about requested certification services.
  • Operate, secure, troubleshoot, and improve our websites and lead-handling systems.
  • Measure website and quote-journey performance where analytics consent has been granted.
  • Maintain business records, protect legal rights, prevent abuse, and meet applicable legal obligations.

Who receives information

We use service providers that support hosting, database operations, email delivery, security, and consented analytics. Current core providers include Vercel, Neon, Resend, Google Workspace, and, when enabled with consent, Google Analytics. Providers may process information only for the contracted service and under their applicable safeguards.

Retention and security

We retain personal information only for as long as reasonably necessary for the request, business relationship, security, legal claims, and applicable recordkeeping duties. Retention is reviewed according to the purpose, sensitivity, risk, and legal requirements.

We apply proportionate technical and organisational safeguards, but no internet transmission or storage system can be guaranteed completely secure.

Legal bases and European rights

Depending on the activity, we process personal data to take steps requested before a contract, perform a contract, pursue legitimate interests in responding to business enquiries and securing our services, comply with legal obligations, or on the basis of consent for optional analytics and consent-based communications.

  • Where the GDPR or UK GDPR applies, rights may include access, rectification, erasure, restriction, objection, portability, and withdrawal of consent.
  • You may lodge a complaint with the competent data protection authority in your country.
  • Where information is processed outside the EEA or United Kingdom, we rely on applicable transfer mechanisms and provider safeguards.

Your choices

  • You may request access, correction, deletion, or restriction where applicable.
  • You may withdraw consent for future contact or optional analytics at any time.
  • You may reopen Cookie settings from the site footer.
  • We do not sell personal information. We do not use submitted lead details for automated decisions that produce legal or similarly significant effects.

Contact and updates

Send privacy questions or requests to info@vectastandards.com. We may need to verify your identity before fulfilling a request.

We may update this policy when our services, providers, or legal obligations change. The current version and update date will remain available on this page.

Privacy Policy | Vecta Standards EU