Privacy
Privacy Notice
This Privacy Notice explains how VantiRisk and its affiliates ("VantiRisk", "we", "our", and "us") collects, uses, discloses and otherwise processes your personal information, also known as personal data, in connection with the use of VantiRisk websites and applications, including software, that link to this Privacy Notice (collectively, the "Sites" and individually, "Websites" or "Applications"), our risk heatmap products and services (the "Platform Services") and in the usual course of business, such as in connection with our events, sales, and marketing activities (collectively, with Sites and Platform Services, "Services"). It also contains information about your choices and privacy rights.
If you are a California resident, the California Consumer Privacy Act ("CCPA") requires us to provide you with additional information regarding your rights with respect to your personal information. This information is described in our Supplemental Privacy Notice to California Residents.
Our Services
We provide the Platform Services to our customers and users (collectively, "Customers") under an agreement with them and solely for their benefit and the benefit of their personnel authorized to access and use the Platform Services ("Authorized Users"). Our processing of Authorized User data is governed by our agreement with the relevant Customer. This Privacy Notice does not apply to (i) data that our Customers and their Authorized Users upload, submit or otherwise make available to the Platform Services and other data that we process on their behalf, as defined in our agreement with the Customer; (ii) any products, services, websites, or content that are offered by third parties or that have their own privacy notice; or (iii) personal information that we collect and process in connection with recruitment activities, which is covered under our Applicant Privacy Notice.
We recommend that you read this Privacy Notice in full to ensure that you are informed.
Information We Collect About You
Information that we collect from or about you includes information you provide, information we collect automatically, for example as you use the Services, and information we receive from other sources.
Information you provide
When using our Services, we may collect certain information, such as identifiers including your name, email address, phone number, postal address and country to administer your account and provide our Services to you.
We may also collect professional or employment-related information, including your job title, role and company name, along with account information if you create an account on the Services.
We collect customer service and other interaction information when you interact and communicate with us, for example when you request information about our Platform Services, interact with our team, contact customer support, complete a survey, provide feedback or comments, register for an event, or take part in marketing activities. We may keep a record of your communications with us and other information disclosed during those communications, which may be stored as an audio file or transcript.
We may also keep records of your history of past purchases and transactions with us and collect information about your designated payment methods, which may be collected by third-party payment and billing service providers.
Information posted in public forums
Certain features of our Services may make it possible for you to post content publicly or viewable by other users through public forums or community spaces. Any information you post openly in these ways may be available for viewing and use by other users of these Services, as well as VantiRisk, and may potentially be accessible through third-party search engines. Please take care when using these features and do not provide personal information that you would not want made available in these ways.
Information we collect automatically
We use standard automated data collection tools, such as cookies, web beacons, tracking pixels, tags, and similar tools, to collect Internet and device activity information about how people use our Sites and interact with our emails.
For example, when you visit our Sites we, or an authorized third party, may collect information about your computer or device, such as operating system, device identifier, browser language, and Internet Protocol (IP) address, as well as information about your activities on our Sites, such as how you came to our Sites, access times, the links you click on, browsing behavior, clicks and cursor movements, and other statistical information. We use this information to better understand how our Sites are used and how to improve them. We may also use web beacons and pixels in our emails to understand whether you click on links in those messages and to improve our communications and Services. We may also use your IP address to derive general location information.
When you use our Platform Services or other Applications, we automatically collect certain information about how you are using those services, referred to as Usage Data. While most Usage Data is not personal information, it may include information about your account, such as user ID, email address, or IP address, information about your device, and information about your activities in connection with the Platform Services and Applications, such as the pages or features you access, time spent on those pages, search terms entered, commands executed, file types or sizes analyzed through the Platform Services, and other statistical information relating to your use of these services. We collect Usage Data to provide, support and operate the Services, for network and information security, to better understand how our Platform Services and Applications are used, and to improve our products and services more generally.
We may also use information we collect automatically, for example IP address and unique device identifiers, to identify the same unique person across Services to provide a more seamless and personalized experience.
The types of data collection tools we use may change over time as technology evolves. You can learn more about our use of cookies and similar tools, as well as how to opt out of certain data collection, by visiting our Cookie Notice when available.
Information we receive from other sources
We may obtain information about you from third-party sources, including resellers, distributors, business partners, event sponsors, security and fraud detection services, social media platforms, and publicly available sources. Examples of information we receive from third parties include marketing and sales information, such as name, email address, phone number and similar contact information, and purchase, support and other information about your interactions with our Sites and Platform Services. We may combine such information with information we receive and collect from and about you in ways consistent with this Privacy Notice.
How We Use Your Information
We use your personal information to provide, maintain, improve and update our Services.
Our purposes for collecting your personal information include providing, maintaining, delivering and updating the Services; creating and maintaining your VantiRisk account; billing, payment, or account management; registering and providing training or onboarding programs; and providing customer service and support.
We may also use your information for sales and marketing activities, including sales calls for training, coaching, quality assurance and administration, and to tailor and send newsletters, emails and other content to promote our products and services in accordance with your preferences and applicable law.
We use your information to communicate with you, including to send notifications about the Services, technical notices, updates, security alerts, administrative messages and invoices, to respond to your questions, comments and requests, to keep in contact with you regarding the products and services you use, and to conduct surveys, receive feedback, conduct audits and perform market research.
We may use your information for online advertising, for personalization and service improvement, including to measure your use of and improve Services, develop new products and services, and generate and analyze statistical information about how our Sites and Platform Services are used in the aggregate.
We also use your information for legal and security purposes, including investigating security issues, preventing fraud, combating illegal or controlled uses of our products and services, and complying with obligations under applicable law, legal process, or government regulation.
We will also use your information for other purposes where you have given consent for such uses. To engage in these uses of your information, we may use tools such as large language models and other forms of artificial intelligence in accordance with applicable law.
We may de-identify or anonymize information we collect so the information cannot reasonably identify you or your device, or we may collect information already in de-identified or anonymized form. Except as otherwise prohibited by applicable law, our use and disclosure of de-identified and anonymized information is not subject to restrictions under this Privacy Notice, and we may use and disclose it to others for any purpose without limitation.
How We Disclose Your Information
We may disclose your personal information to our affiliates and subsidiaries for the purposes described in this Privacy Notice.
We may disclose information to service providers who assist us in providing the Services, such as billing, payment processing, customer support, sales and marketing, data analysis, fraud detection, security monitoring, and the prevention of illegal or malicious behavior, subject to appropriate contractual restrictions on their use of your information.
We may also disclose information to third-party business partners, such as resellers, distributors, referral partners, event organizers, and sponsors, where they are involved in providing content, products or services to prospects or Customers, and where we have a lawful basis to do so, such as consent where required by applicable law.
We may disclose information to online advertising providers that tailor online advertising to your interests based on information they collect about your online activity over time and across different services.
We may disclose information to sponsoring organizations, such as an employer sponsoring a training or certification program you take through the Services, for example to notify them of your registration and course status.
We may disclose information for legal purposes when authorized by law or when we deem necessary in good faith to comply with legal process, to protect and defend the rights or property of VantiRisk or our Customers, including the security of our Sites, products and services, or to protect the personal safety, property or other rights of the public, VantiRisk or our Customers.
We may disclose information with your consent when you instruct us to do so or where you have consented to the disclosure of your information to third parties.
We may also disclose information as part of business transactions involving the sale of assets or parts of our business. If a portion of or all of our assets are transferred to a third party in connection with such a transaction, your information may be among the transferred assets, including in the course of transaction diligence.
International Users and Transfers
VantiRisk may transfer your personal information to countries other than your country of residence. In particular, we may transfer your personal information to Australia, the United States and other countries where our affiliates, business partners and service providers are located. These countries may have different data protection laws from the country where you reside.
Wherever we process your personal information, we take appropriate steps to ensure it is protected in accordance with this Privacy Notice and applicable data protection laws. The safeguards we use may include contractual protections, access controls, operational security measures, and other equivalent measures for cross-border transfers where required.
Information for EU, UK, and Swiss Users
If you are located in the European Economic Area, United Kingdom or Switzerland, the controller of your personal information will be the VantiRisk entity that provides the relevant Services to you or otherwise determines the purposes and means of processing your personal information.
We only collect your personal information if we have a legal basis for doing so. The legal basis we rely on depends on the personal information concerned and the context in which we collect it. Generally, we collect and process your personal information where we need it to enter into or perform a contract with you, where we need to comply with a legal obligation, where you give us your consent, or where we have a legitimate interest such as responding to your requests, ensuring the security of the Services, detecting and preventing fraud, maintaining and improving the Services, promoting VantiRisk and our Services, and defending our interests and rights.
You have a right to lodge a complaint with your local data protection authority regarding our data processing activities.
Your Choices and Rights
We offer you choices regarding the collection, use and disclosure of your personal information and we will respect the choices you make in accordance with applicable law. If you decide not to provide us with certain personal information, you may not be able to access certain features of the Sites or use the Platform Services.
Account information
If you want to correct, update or delete your account information, please log on to your VantiRisk account and update your profile, where that functionality is available.
Opt out of marketing
We may periodically send you marketing communications that promote our products and Services consistent with your choices. You may opt out from receiving such communications by following the unsubscribe instructions in the communication you receive. Please note that it may take some time to process your request in accordance with applicable law, and that we may still send you important service-related communications regarding your account, subscription, service announcements or security information.
Your privacy rights
Depending on your place of residence, you may have rights in relation to your personal information. These may include the right to access or receive a copy of your information, confirmation that we are processing your information, correction or amendment of your information, deletion of your information, transfer of your information to a third party where technically feasible, restriction or objection to certain uses of your information, withdrawal of consent where processing was based on consent, and the right to opt out of profiling in furtherance of decisions that produce legal or similarly significant effects, where applicable.
If you, or an authorized agent acting on your behalf, wish to exercise any of your rights under applicable data protection laws, please contact us using the contact details provided below. We will respond to requests that we receive in accordance with applicable laws. VantiRisk may take certain steps to verify your request using information available to us, such as your email address or other information associated with your account, and if needed we may ask you to provide additional information for verification purposes. Any information you provide for verification purposes will only be used to process and maintain a record of your request.
If you have made a request to access, delete, or correct your personal information and we deny your request, depending on your place of residence you may have the ability to appeal our denial by contacting us using the details provided at the bottom of this Privacy Notice.
As described above, we may also process personal information that has been submitted by a Customer to our Platform Services. If your personal information has been submitted to the Platform Services by or on behalf of a VantiRisk Customer and you wish to exercise your privacy rights, please direct your request to the relevant Customer.
Notice of Right to Opt Out of Data Sales and Targeted Advertising
If you are a U.S. resident and depending on the state in which you live, you may have the right to opt out of the sale of your personal information or the disclosure of your personal information for purposes of online targeted advertising. We do not sell personal information in the traditional sense of exchanging information for monetary payment. However, because the definitions of sale and targeted advertising under applicable law may include the disclosure of your information, including identifiers and Internet and device activity, to certain types of advertising and marketing partners, we provide the right to opt out of these activities where required.
Other Important Information
If you are a California resident, additional information about our practices under California law may be made available in a supplemental California privacy notice.
Our Platform Services are intended to be used by organizations. Where the Platform Services are made available to you through an organization, such as your employer, that organization is the administrator of the Platform Services and is responsible for the accounts and services over which it has control. Please contact your organization or refer to its policies for more information.
VantiRisk retains the personal information described in this Privacy Notice for as long as you use our Services, as may be required by law, as necessary for legitimate business or commercial purposes described in this Privacy Notice, or as otherwise communicated to you.
We are committed to protecting your information. We use a variety of technical, physical, and organizational security measures designed to protect against unauthorized access, alteration, disclosure, or destruction of information. However, no security measures are perfect or impenetrable, and we cannot guarantee the security of your information.
Our Services may contain links to third-party websites, applications, services, or social networks, including co-branded websites or products maintained by business partners. Any information you choose to submit to third-party services is not covered by this Privacy Notice. We encourage you to review the privacy notices of those third-party services before disclosing your information.
The Sites and Platform Services are not directed to children under 18 years of age and VantiRisk does not knowingly collect personal information from children under 18. If we learn that we have collected personal information from children where consent or other legal obligations are required, we will take steps to delete such information. If you are aware that a child has submitted such information, please contact us using the details below.
Changes to this Notice
VantiRisk may change this Privacy Notice from time to time. We will post any changes on this page and, if we make material changes, provide a more prominent notice where appropriate. If you disagree with any changes to this Privacy Notice, you should stop using the Services and deactivate your VantiRisk account where applicable.
How to Contact Us
Please contact us at risktrixau@gmail.com if you have any questions about our privacy practices or this Privacy Notice.
If you interact with VantiRisk through or on behalf of your organization, then your personal information may also be subject to your organization's privacy practices and you should direct any questions to that organization.
Last updated: March 24, 2026