sbf
SYS:// LEGAL

Legal Documentation

securebyteforge
Corso Asti 34, Frazione Vaccheria
Guarene, Cuneo, Italy
[email protected]

01

Privacy Policy

Last Updated: January 1, 2026

1. Data Controller

securebyteforge, located at Corso Asti 34, Frazione Vaccheria, Guarene, Cuneo, Italy ("Controller", "we", "us"), is the data controller responsible for your personal data collected through our website and services.

2. Data We Collect

We collect the following categories of personal data:

  • Identity Data: Name, organization, job title
  • Contact Data: Email address, phone number, physical address
  • Technical Data: IP address, browser type, operating system, device identifiers
  • Usage Data: Pages visited, time spent, navigation patterns
  • Service Data: Information provided during security assessments and consultations

3. Legal Basis for Processing

We process personal data under the following legal bases as defined by Article 6 of the GDPR:

  • Consent: Where you have given explicit consent for specific purposes
  • Contract Performance: Where processing is necessary for contract fulfillment
  • Legitimate Interest: Where processing is necessary for our legitimate business interests
  • Legal Obligation: Where we must comply with applicable law

4. Data Retention

Personal data is retained only for as long as necessary to fulfill the purposes for which it was collected. Service-related data is retained for the duration of the engagement plus 24 months. Marketing data is retained until consent is withdrawn.

5. Your Rights

Under the GDPR, you have the following rights:

  • Right of access (Article 15)
  • Right to rectification (Article 16)
  • Right to erasure (Article 17)
  • Right to restriction of processing (Article 18)
  • Right to data portability (Article 20)
  • Right to object (Article 21)
  • Right to withdraw consent at any time

6. Data Security

We implement appropriate technical and organizational measures to protect personal data against unauthorized access, alteration, disclosure, or destruction. These measures include encryption, access controls, regular security assessments, and employee training.

7. International Transfers

Where personal data is transferred outside the European Economic Area, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission.

8. Contact

To exercise your rights or for privacy-related inquiries, contact our Data Protection Officer at: [email protected]

02

Terms of Service

Last Updated: January 1, 2026

1. Acceptance of Terms

By accessing or using the services provided by securebyteforge ("Provider"), you agree to be bound by these Terms of Service. If you do not agree, do not use our services.

2. Scope of Services

securebyteforge provides cybersecurity consulting, vulnerability assessments, threat detection, and related security services as described in individual service agreements and proposals.

3. Client Obligations

  • Provide accurate and complete information required for service delivery
  • Grant necessary access to systems and infrastructure as agreed in the scope of work
  • Designate authorized personnel for coordination and communication
  • Comply with all applicable laws and regulations

4. Payment Terms

Payment terms are specified in individual service agreements. Unless otherwise stated, invoices are due within 30 days of issuance. Late payments may incur interest at the rate of 1.5% per month.

5. Confidentiality

Both parties agree to maintain strict confidentiality of all proprietary and sensitive information shared during the engagement. This obligation survives termination of the service agreement for a period of 36 months.

6. Intellectual Property

All deliverables, reports, and documentation produced during service delivery become the property of the Client upon full payment. Provider retains ownership of methodologies, tools, and pre-existing intellectual property.

7. Limitation of Liability

Provider's total liability shall not exceed the total fees paid by the Client for the specific service giving rise to the claim. Provider shall not be liable for indirect, incidental, or consequential damages.

8. Termination

Either party may terminate with 30 days written notice. Early termination fees may apply as specified in the service agreement. Obligations regarding confidentiality and intellectual property survive termination.

9. Governing Law

These terms are governed by the laws of Italy. Any disputes shall be resolved through arbitration in Cuneo, Italy, under the rules of the Italian Arbitration Chamber.

03

Cookies Policy

Last Updated: January 1, 2026

1. What Are Cookies

Cookies are small text files stored on your device when you visit our website. They help us provide essential functionality and improve your experience.

2. Essential Cookies

We use strictly necessary cookies for:

  • Session Management: Maintaining your session state during navigation
  • Security: CSRF protection and authentication verification
  • Cookie Consent: Storing your cookie preferences

3. No Tracking Cookies

securebyteforge does not use analytics cookies, advertising cookies, or third-party tracking cookies. We respect user privacy and do not engage in behavioral tracking or cross-site monitoring.

4. Managing Cookies

You can manage cookie settings through your browser. Disabling essential cookies may affect website functionality. Most browsers allow you to:

  • View stored cookies and delete them individually
  • Block third-party cookies
  • Block cookies from specific sites
  • Block all cookies
  • Delete all cookies when closing the browser

5. Changes to This Policy

We may update this Cookies Policy periodically. Changes will be posted on this page with an updated revision date.

04

Refund Policy

Last Updated: January 1, 2026

1. General Policy

securebyteforge is committed to delivering high-quality cybersecurity services. Refund eligibility is assessed based on the nature of the service and completion status.

2. Pre-Service Cancellation

If a service is cancelled before work has commenced:

  • More than 14 days before start date: Full refund minus administrative fee of 10%
  • 7-14 days before start date: 50% refund
  • Less than 7 days before start date: No refund

3. In-Progress Services

For services currently in progress:

  • Payment for completed milestones is non-refundable
  • Unused prepayments for future milestones may be refunded upon request
  • Partial deliverables completed will be delivered and charged proportionally

4. Completed Services

Services that have been fully delivered are non-refundable. Disputes regarding deliverable quality will be handled through our complaint resolution process.

5. Subscription Services

Monthly subscription services (SOC-as-a-Service, Dark Web Monitoring) can be cancelled with 30 days notice. No partial month refunds are provided.

6. Refund Processing

Approved refunds are processed within 14 business days to the original payment method. Contact [email protected] to initiate a refund request.

7. Dispute Resolution

Refund disputes are first addressed through direct communication. If unresolved, disputes may be escalated to arbitration in Cuneo, Italy.