Introduction
This Privacy Policy describes how Cairn collects, uses, handles, and protects information associated with visitors and people who submit information through cairn's website.
In this policy, "Cairn," "we," "us," and "our" refer to the Cairn website and the business operating through it. "You" refers to a visitor, prospective client, client, or other person interacting with the site.
This policy applies to information collected through the public-facing website and its related contact and service-request interfaces. Additional privacy terms may apply to a specific client engagement where a separate written agreement exists.
Cairn is designed to collect the information reasonably needed to understand a technical request, communicate with the person making it, and operate the business. The website is not intended to function as a general-purpose data collection platform.
Information You Provide
When you use a Cairn form, contact page, project-request interface, or other interactive part of the website, you may voluntarily provide information such as:
The exact information requested may vary depending on the form or service involved. You are not required to provide information beyond what is reasonably necessary for the particular request.
Public website forms should not be used to submit passwords, private keys, API keys, authentication tokens, payment-card numbers, secret access credentials, or other sensitive security information. Cairn will determine separately, through an appropriate channel and project process, what technical credentials are required for an actual engagement.
Automatic Information
Like most websites, Cairn may necessarily process limited technical information when a browser requests and loads a web page. Depending on the hosting, security, delivery, and infrastructure configuration in use, this can include information such as an IP address, request information, browser information, timestamps, or other basic technical details associated with delivering and securing the site.
Cairn does not state in this policy that it collects analytics, advertising identifiers, behavioral profiles, device fingerprints, or similar categories unless such systems are actually implemented on the site.
Third-party infrastructure providers may independently process technical information as part of providing hosting, security, delivery, communications, or other services. Their own privacy terms govern their separate processing activities.
How We Use Information
Cairn generally uses submitted information for purposes connected to the request or business relationship that caused the information to be provided.
-
01
Review and understand technical service inquiries.
-
02
Determine whether a requested service is within Cairn's scope.
-
03
Communicate with prospective or existing clients about requests, projects, pricing, scope, and delivery.
-
04
Maintain reasonable business, operational, accounting, security, and administrative records.
-
05
Protect the website, systems, users, and business against abuse, unauthorized activity, fraud, or security incidents.
-
06
Comply with applicable legal obligations where required.
Cairn does not use project-request information for unrelated purposes simply because the information was submitted. Where information must be used for another legitimate business or legal purpose, the relevant circumstances control.
Form Processing
When a visitor submits a Cairn website form, the information may pass through Cairn's form-intake infrastructure before it is reviewed by Cairn.
Depending on the current implementation, internal notifications associated with a submitted form may be forwarded to a private internal Telegram chat used by Cairn for operational notification and review.
Telegram is a separate service operated by Telegram. Information processed by Telegram is also subject to Telegram's applicable terms and privacy documentation.
Third-Party Services
Cairn may rely on third-party technology providers to operate, secure, deliver, communicate through, or otherwise support the website and its business systems.
Third-party providers may process information under their own terms and privacy policies. Cairn does not control the independent privacy practices of services it does not operate.
The presence of a third-party provider does not by itself mean that Cairn sells personal information to that provider.
Data Retention
Cairn does not apply a single arbitrary retention period to every category of information.
Information may be retained for different periods depending on why it was collected. For example, an inquiry may need to be retained long enough to understand, respond to, and administratively close the request, while information associated with an actual client engagement may need to remain available for operational, contractual, accounting, security, or other legitimate business purposes.
When information is no longer reasonably needed for the purpose for which it is retained, Cairn may delete it, anonymize it, or otherwise discontinue active retention, subject to legal obligations, security requirements, backups, or legitimate recordkeeping needs.
Cairn's intent is to retain information because there is a legitimate operational, contractual, legal, or security reason to do so—not simply because the data exists.
Security
Cairn takes reasonable technical and organizational steps to protect information against unauthorized access, misuse, alteration, disclosure, or destruction.
Security practices may include restricting access to internal systems, protecting configuration secrets, limiting access to submitted information, separating public website code from private service credentials, and using security features provided by the infrastructure on which Cairn operates.
For example, credentials required by a server-side service should not be exposed in public client-side website code. Operational secrets may instead be stored in protected server-side configuration or environment variables.
No website, network, storage system, or transmission method can be guaranteed to be completely secure. Cairn does not describe its security as infallible, impenetrable, or risk-free.
Your Choices
Depending on the circumstances and applicable law, you may contact Cairn to ask about information associated with a previous inquiry or business interaction.
-
01
Ask what personal information Cairn may hold about a specific inquiry or interaction.
-
02
Ask that inaccurate information be corrected.
-
03
Ask that information be deleted where deletion is appropriate and permitted.
-
04
Ask questions about how information associated with a request was handled.
Cairn may need to retain certain information where it is reasonably required for legal compliance, security, accounting, contractual records, dispute resolution, or other legitimate purposes.
Children
Cairn is intended to serve businesses, organizations, professionals, and other users seeking technical services.
The website is not designed as a service directed toward children and Cairn does not knowingly seek personal information from children through its business inquiry forms.
If information was submitted by a child without appropriate authorization, contact Cairn through the website so the circumstances can be reviewed.
Changes to This Policy
Cairn may update this Privacy Policy when its website, technology stack, business practices, legal obligations, or information handling practices change.
When this policy changes, the "Last Updated" date at the top of the page may be changed to reflect the most recent revision.
Continued use of the website after an updated policy is published means that the updated policy will govern future use of the site, subject to applicable law.
Contact
Questions about this Privacy Policy or a request concerning information submitted through the Cairn website can be directed through the Cairn contact page.
Please include enough context to identify the relevant request without sending passwords, API keys, private keys, or other security credentials.
CONTACT CAIRN ↗