Who We Are
Valiotti Data (“we”, “us”, “our”) provides fractional CDO and data strategy consulting services. This Privacy Policy explains how we collect, use, and protect your personal data in compliance with GDPR (EU), CCPA (California), and other applicable regulations.
Data Controller: Nick Valiotti, Valiotti Data
Email: nick@valiotti.com
Website: valiotti.com
Data We Collect
Information You Provide
- Contact forms: Name, email, company name, role, message content
- CDO Healthcheck: Name, email, company, role, revenue range, assessment answers
- Newsletter signup: Email address
- Discovery call booking: Name, email, company, meeting notes (processed on our own infrastructure)
Information Collected Automatically
- Analytics data: Pages visited, time on site, referral source, device type (via Google Analytics 4)
- Cookies: See our Cookie Policy for details
- Server logs: IP address, browser type, access timestamps
How We Use Your Data
| Purpose | Legal Basis (GDPR Art. 6) |
|---|---|
| Respond to your inquiry | Legitimate interest / Contract |
| Deliver CDO Healthcheck results | Consent (you submit the form) |
| Send follow-up email with recommendations | Consent |
| Website analytics and improvement | Legitimate interest |
| Marketing (if you opt in) | Consent |
Data Sharing
We do not sell your personal data. We share data only with:
- Google Analytics (GA4): Website usage analytics — Google Privacy Policy
- Google Tag Manager: Tag management — no personal data stored
- Kit (ConvertKit): Email marketing — Kit Privacy Policy
- Hosting provider (Beget): Server infrastructure within Russia/EU
Data Retention
- Contact form submissions: 24 months, then deleted
- Healthcheck results: 12 months
- Analytics data: 14 months (GA4 default)
- Email subscribers: Until you unsubscribe
Your Rights
Under GDPR and CCPA, you have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate data
- Erasure: Request deletion of your data (“right to be forgotten”)
- Portability: Receive your data in a machine-readable format
- Object: Object to processing based on legitimate interest
- Withdraw consent: At any time, without affecting prior processing
To exercise any of these rights, email nick@valiotti.com. We will respond within 30 days.
California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to know what personal information is collected and how it is used
- Right to delete personal information
- Right to opt-out of the sale of personal information (we do not sell your data)
- Right to non-discrimination for exercising your privacy rights
Security
We protect your data using HTTPS encryption, secure hosting, and access controls. All client engagements are covered by mutual NDAs. We do not store client data on personal devices.
Changes to This Policy
We may update this policy periodically. The latest version is always available at this URL. Last updated: March 2026.
Contact
For privacy-related questions: nick@valiotti.com