At Border LLC ("Border", "we", "us", "our"), privacy is a core architectural principle. This Privacy Policy governs your use of borderux.com (the "Website") and details how we collect, process, secure, and disclose your personal data, alongside the choices and rights available to you under the GDPR, CCPA/CPRA, and other modern data protection frameworks.
Our Privacy Ethos
We believe in digital autonomy, data minimization, and absolute transparency in how we manage visitor information.
- We collect only the absolute minimum amount of personal data necessary to securely deliver our services and respond to inquiries.
- We never sell, rent, lease, trade, or share your personal data with third-party data brokers, advertising networks, or marketing companies.
- We utilize trusted, standard analytics and security integrations (specifically Google Tag Manager, Google Analytics, Ahrefs, and Google reCAPTCHA v2) under strict administrative safeguards to measure site engagement and secure our forms.
Information We Collect
Information You Provide Directly:
- Contact & Inquiry Forms: When you submit project inquiries or messages through our contact channels, we collect the details you choose to share. This includes your name, company name, email address, phone number, and custom message body.
- Newsletter Subscription: If you subscribe to our design essay publications, we collect your email address. You may opt out of these updates at any time by utilizing the single-click 'unsubscribe' link.
Information Collected Automatically:
- Google Analytics & Ahrefs: To analyze traffic patterns and optimize site navigation, we collect anonymized device specifications, IP addresses (which are anonymized), browser types, referring pages, and interaction duration.
- Form Security & Anti-Spam (Google reCAPTCHA v2): To protect our systems from malicious bot abuse and automated form spam, we utilize Google reCAPTCHA v2. This service evaluates device and browser characteristics to run risk-assessment algorithms.
How We Process Your Information
We process your personal data for specific, lawful purposes aligned with our core business operations:
- Communication & Inquiry Resolution: To respond directly to your project requests, schedule scoping calls, and manage client onboarding.
- Newsletter Delivery: To send you articles, engineering updates, and insights if you have explicitly opted in to receive our publications.
- Performance Optimization: To analyze aggregate, anonymized usage patterns to optimize Website speeds, navigation structures, and content layouts.
- Security & Spam Prevention: To protect our digital assets and forms against automated spam, denial-of-service attacks, and bot abuse.
Legal Bases for Data Processing (GDPR/EEA Users)
If you reside in the European Economic Area (EEA) or United Kingdom (UK), we process your personal data under the following legal bases designated by the GDPR:
- Consent: For subscribing to our newsletter or receiving promotional content. You can withdraw this consent at any time.
- Contractual Necessity: For processing inquiries, developing scoping briefs, and executing agreements to provide professional services.
- Legitimate Interests: For monitoring site performance metrics, optimizing web speed, and securing our contact forms against spam.
- Legal Obligation: For complying with tax, corporate governance, or regulatory disclosure requirements.
Third-Party Sharing & Disclosures
We do not sell or monetize your personal data. We share information only under the limited circumstances described below:
- Trusted Infrastructure Providers: We share data with reliable hosting, cloud storage, and email delivery platforms under strict data processing agreements. These processors are contractually prohibited from using your data for any other purpose.
- Analytics & Security Services: Anonymized metrics and form risk-assessment data are processed by Google's and Ahrefs' secure servers in accordance with their respective privacy policies.
- Legal Mandates: We may disclose personal data if required to do so by a binding subpoena, court order, or to satisfy legal or regulatory investigations.
Cookies and Tracking Technologies
We utilize Google Analytics, Google Tag Manager, and Ahrefs cookies to measure how users interact with our content and to ensure secure form submissions. We do not use cross-site retargeting or advertising cookies.
For more details about the specific cookies we set and how you can manage or block them, please review our comprehensive Cookie Policy: https://www.borderux.com/legal/cookies.
International Data Transfers & Security
Border LLC is headquartered in the United States. Personal data collected via direct communications or form submissions will be processed and stored on secure servers located within the United States.
For users in the EEA or UK, we ensure that cross-border data transfers are governed by EU-approved Standard Contractual Clauses (SCCs) to ensure equivalent data protection.
We employ strict administrative, technical, and physical security measures. All data transmitted to and from our Website is protected by secure socket layer (HTTPS/TLS) encryption to safeguard information from interception, unauthorized access, or loss.
Your Rights and Choices (GDPR & US State Rights)
Depending on your jurisdiction (such as California, other US states, or the EEA/UK), you possess robust legal rights regarding your personal information:
- Right to Access & Know: You have the right to request a disclosure of what personal data we have collected and process about you.
- Right to Deletion & Erasure: You have the right to request that we delete and permanently purge all of your personal data, subject to standard legal retention exemptions.
- Right to Correction: You have the right to request that we correct any inaccurate, incomplete, or out-of-date personal information.
- Right to Object & Restrict: You have the right to object to our processing of your data, or request that we restrict how it is processed.
- Right to Non-Discrimination: You have the right to exercise your privacy choices without facing discriminatory treatment, pricing increases, or service changes.
- Right to Opt-Out: We do not sell your personal data or share it with third parties for cross-context behavioral advertising; therefore, opt-out mechanisms for data sales are not necessary.
Do-Not-Track (DNT) & Minor Policy
Do-Not-Track (DNT): While there is currently no universal consensus or standard for DNT signal recognition, we respect user privacy. We do not track your browsing activities across third-party websites for advertising purposes.
Minors Policy: Our Services are intended exclusively for professionals and individuals who are at least 18 years old. We do not knowingly solicit, collect, or maintain personal data from minors under the age of 18.
Data Retention & How to Exercise Your Rights
Retention Period: We retain contact form messages and corresponding data only as long as necessary to fully resolve and complete your request or manage our professional client engagement. Newsletter emails are retained until you choose to unsubscribe.
Exercise Your Rights: To submit a data request, review, update, or delete your personal data, please contact our designated privacy officer at privacy@borderux.com. We respond to all verified requests within thirty (30) days.