Effective Date: 01/03/2023 Last Updated: 04/03/2025
1. Purpose
This Secure Data Policy outlines how Do & Talk, LLC. collects, stores, accesses, and protects client data. It ensures that all data handled by our team remains confidential, secure, and used only for authorized purposes.
2. Scope
This policy applies to all employees, contractors, and subcontractors who manage or have access to client data.
We collect only the data necessary to perform agreed-upon services. Types of data include:
Contact information
Schedules and calendars
Business documents
Financial data (if provided)
Login credentials (only when explicitly authorized)
Data is collected through secure platforms.
Client data is stored using the following standards:
Cloud Storage: Encrypted cloud platforms
Local Devices: Protected with up-to-date antivirus, firewalls, and strong password protection
Access Control: Data is only accessible by authorized personnel
All data transfers are encrypted using HTTPS, VPN, or encrypted file-sharing tools. Email attachments are sent with password protection or secure links.
All team members sign confidentiality and non-disclosure agreements. No client information is shared or sold to third parties.
Data is retained only as long as necessary:
Files are reviewed every 6 months
Upon client request or end of contract, data is permanently deleted from all systems within 14 business days
If a data breach occurs:
Clients are notified within 72 hours of discovery
Steps will be taken immediately to mitigate damage and prevent future breaches
Clients must:
Provide accurate and up-to-date information
Notify us of any unauthorized access
Use secure platforms for communication when possible
We may update this policy as needed. Clients will be notified via email of major changes.