Privacy policy
Draft, pending legal review. This policy explains what personal data LIVELE collects through this website, why, who receives it and how to use your rights. We collect only what a contact form, a newsletter and basic site analytics need, we do not sell personal information, and analytics run only where your consent settings allow.
Last updated
Draft status
Draft — pending legal review. This text has not been reviewed by counsel. Items marked TODO(owner) are open decisions. Do not treat this page as final until the notice is removed.
Last updated: October 7, 2026.
Who is responsible for your data
The controller (in California terms, the business) is:
- Legal entity: TODO(owner)
- Registered address: TODO(owner)
- Privacy contact email: TODO(owner)
- Data protection officer or EU/UK representative, if required: TODO(owner)
"LIVELE", "we" and "us" mean this entity.
What we collect
Contact and lead forms. Name, work email, brand name, Amazon storefront or website, revenue band, number of ASINs (band), product category, your concerns, urgency, preferred language, your message and your consent. The form also records which form you used (the variant), the page, your language and any campaign (UTM) parameters. Scorecard results are included if you choose to send them. Please do not include passwords, payment card numbers or health information.
Booking. If you book a call, Cal.com receives your name, email and any notes you add. We receive the booking details.
Newsletter. Your email address, language and the date and time you confirmed your subscription (double opt-in).
Analytics (with consent where required). Pages viewed, clicks on key buttons, approximate location derived from your IP address, device and browser type, referring page and a cookie identifier, collected through Google Tag Manager and Google Analytics 4. Google Signals is turned off. We do not use advertising cookies.
Server and security logs. IP address, request time, page requested and user agent, kept for security and troubleshooting. The contact form uses Cloudflare Turnstile and anti-abuse checks (a hidden field, timing and rate limits) to block spam.
Email correspondence. If you write to us, we keep the messages.
Why we use it and our legal bases
For visitors in the European Economic Area (EEA), the United Kingdom and Switzerland, the legal bases under Article 6 of the GDPR (and the UK GDPR) are:
- Replying to your enquiry, preparing for a call and, if you become a client, taking steps to enter a contract: contract or pre-contract steps (Art. 6(1)(b)), and our legitimate interest in running our business (Art. 6(1)(f)).
- Sending LIVELE Policy Watch: your consent (Art. 6(1)(a)), given through double opt-in. You can withdraw it at any time.
- Site analytics and measuring which pages help visitors: your consent (Art. 6(1)(a)) for cookies and similar technologies.
- Security, spam prevention and server logs: legitimate interest (Art. 6(1)(f)).
- Legal obligations, tax and records: Art. 6(1)(c).
We do not make decisions about you based solely on automated processing.
Who receives your data
We use these service providers (processors or service providers) to run the site. They process data on our instructions.
- Brevo (email delivery and the newsletter list).
- Google (Google Tag Manager and Google Analytics 4; Google Workspace for email and calendar).
- Cal.com (call booking).
- Cloudflare (Turnstile spam protection and, if used, CDN and DNS). TODO(owner): confirm which Cloudflare services are active.
- Hosting provider: TODO(owner).
We may also disclose data to professional advisers, to authorities where the law requires it, or to a buyer in a business transfer. We do not sell personal information and we do not share it for cross-context behavioral advertising. TODO(owner): confirm.
International transfers
Our providers may process data in the United States and other countries. For transfers out of the EEA, UK or Switzerland we rely on an adequacy decision (such as the EU-US Data Privacy Framework where the provider is certified) or on standard contractual clauses. Ask us for a copy of the safeguards using the contact details above. TODO(owner): confirm where LIVELE is established and which mechanism applies.
How long we keep it
- Contact and lead form data: 24 months after your last contact, unless you become a client, in which case the client relationship's retention rules apply. TODO(owner): confirm.
- Newsletter: until you unsubscribe, and a minimal record of your consent and unsubscribe for as long as the law requires.
- Analytics: according to our Google Analytics retention setting. TODO(owner): confirm the period.
- Server logs: TODO(owner): confirm, typically 30 to 90 days.
- Booking records: as set in the Cal.com account. TODO(owner).
Your rights if you are in the EEA, UK or Switzerland
You may ask to access, correct or delete your data, restrict or object to its use, receive a copy in a portable format, and withdraw consent at any time without affecting earlier processing. You can also complain to your data protection authority. In Spain that is the Agencia Española de Protección de Datos (AEPD); in the UK, the Information Commissioner's Office (ICO).
We process contact form data to respond to you. Providing it is voluntary, but we cannot reply without a way to reach you.
California notice at collection (CCPA/CPRA)
Categories we collect (last 12 months): identifiers (name, email, IP address, cookie IDs); commercial information you tell us about (revenue band, ASIN band, category); internet activity (pages viewed, clicks); approximate geolocation; and professional information (brand, storefront). We collect them for the purposes in this policy. We keep each category for the periods in the retention section.
Sale and sharing. We do not sell personal information or share it for cross-context behavioral advertising. TODO(owner): confirm. We do not knowingly sell or share the personal information of anyone under 16.
Your rights. California residents may ask to know, access, correct and delete personal information, and not be discriminated against for using these rights. You can opt out of analytics through "Your privacy choices" in the footer. We honor Global Privacy Control as an opt-out preference signal. An authorized agent may submit a request on your behalf.
Sensitive personal information. We do not intentionally collect it. Please do not put it in forms.
Aviso de privacidad for Mexico (LFPDPPP)
This section follows the elements of Mexico's Ley Federal de Protección de Datos Personales en Posesión de los Particulares.
- Identity and address of the controller: see "Who is responsible for your data".
- Personal data processed: as listed under "What we collect". We do not intentionally collect sensitive personal data.
- Primary purposes: answering your enquiry, scheduling and holding a call, and providing our services if you become a client.
- Secondary purposes: sending LIVELE Policy Watch and measuring site use. You can refuse these without affecting the primary purposes, by not subscribing or by declining analytics.
- Transfers: to the service providers listed above, which process data on our behalf.
- ARCO rights: you may Access, Rectify, Cancel or Oppose the use of your data, and revoke your consent. Send your request to the privacy contact above with your name, a way to reach you, a description of the data and the right you want to use. We respond within the legal time limit.
- Changes: we publish changes on this page.
- TODO(owner): counsel to confirm whether a Spanish-language aviso integral is required for Mexican visitors.
How to use your rights
Email TODO(owner) with the right you want to use and the email address you gave us. We may ask you to confirm your identity. We reply within one month (GDPR), 45 days (CCPA) or the period set by Mexican law. You pay nothing for a reasonable request.
To leave the newsletter, use the unsubscribe link in any email.
Children
This site is for businesses. It is not directed at children under 16, and we do not knowingly collect their personal data. If you think a child has sent us data, contact us and we will delete it.
Security
We use HTTPS, access controls, spam protection and trusted providers. No system is completely secure, so please do not send passwords or payment details through the site or by email. If we work together, we use Seller Central roles and the Solution Provider Portal for account access, never shared logins.
Changes to this policy
We will post changes here and update the date. If a change materially affects how we use your data, we will tell you in a way that fits the change, such as a notice on the site.
Contact
Questions about this policy or your data: TODO(owner) (email), TODO(owner) (postal address). Use the contact page for general enquiries.