1. Scope
This policy applies to ashishgiri.com, its portfolio pages, legal pages and website inquiry form. It does not control the privacy practices of external websites such as LinkedIn, BookedOnMute, displayed client websites or other third-party links.
2. Information collected
When you submit a website request or general message, the website may collect your name, email address, optional phone number, business or organization, current website, requested project type, estimated budget, timeline, message, contact consent and related form details.
The form also stores the submission time, page path and time zone. The website does not intentionally save an IP address or browser user-agent with an inquiry. Firebase and Google infrastructure may create ordinary security and service logs under their own policies.
3. How information is used
- Review and respond to website requests or general messages.
- Prepare project conversations, estimates, scopes or follow-up questions.
- Prevent spam, abuse, excessive submissions, fraud and security incidents.
- Maintain business, legal, tax, dispute and operational records where reasonably necessary.
4. Service providers and data processors
The website uses Firebase and Google Cloud for hosting, Firestore storage, optional App Check and related infrastructure. Google Analytics is not enabled. The inquiry form does not automatically send an email or SMS notification to Ashish or to the person submitting it.
These providers process information on behalf of the website under their own terms, security practices and privacy documentation. A provider receives only the information reasonably needed for the feature being used.
7. Retention
Inquiry records are generally retained for up to 24 months after the most recent meaningful communication, unless a longer period is reasonably required for an active project, contract, accounting, legal obligation or dispute. The one-minute browser cooldown remains only in that browser until it is replaced or cleared. Provider logs and backups may follow the provider’s normal retention schedule.
8. Security
Reasonable safeguards include HTTPS, strict Firestore create-only validation, denial of public reads, updates and deletes, an anti-bot field, a one-minute browser cooldown, restricted Firebase access, optional Firebase App Check and security headers. The browser cooldown is a convenience control, not a guarantee against a determined attacker.
No internet service can guarantee absolute security. Do not submit passwords, payment card numbers, government identifiers, medical records or other highly sensitive information through the inquiry form.
9. Your privacy choices and requests
You may request access, correction or deletion of personal information associated with your inquiry, subject to identity verification and lawful retention requirements. You may clear local browser storage at any time to remove the one-minute cooldown value stored on your device.
Depending on where you live, additional privacy rights may apply. The website will not discriminate against you for making a valid privacy request.
10. Children’s privacy
This website is intended for business and portfolio inquiries and is not directed to children under 13. It does not knowingly request personal information from children under 13. A parent or guardian who believes a child submitted information may request deletion.
11. United States and international processing
The website is operated from Pennsylvania, United States. Information may be processed in the United States or other locations where service providers maintain infrastructure. Privacy protections and government access rules may differ from those in your location.
12. Changes to this policy
This policy may be updated when website features, service providers, security practices or legal requirements change. The effective date will be revised when a material update is posted.
13. Contact
Privacy requests and questions may be sent to ashish@ashishgiri.com. Include enough information to identify the inquiry, but do not email sensitive identification documents unless specifically requested through a secure method.