Legal

Privacy Policy

Last updated: 1 September 2026

1. Who we are

This website (vibexsoft.com) is operated by VibeX LLC, a limited liability company formed in the United States ("VibeX", "we", "us"). Where data protection law applies, VibeX LLC is the controller of the limited personal data described below. You can reach us at contact@vibexsoft.com.

2. The short version

This is a static informational website. It has no accounts, no contact forms, no newsletter, no comments, no payment flow and no user-generated content. It sets no cookies, stores nothing in your browser, runs no analytics and loads no third-party scripts, fonts, pixels, embeds or advertising. There is no tracking here to opt out of.

Two things nevertheless involve data, and we would rather name them than pretend they do not exist: the technical request records kept by our hosting provider, and any email you choose to send us.

3. Server logs

Like any web server, the machine serving this site processes the technical details of each request: IP address, timestamp, requested path, HTTP status code, user-agent string and referrer. This is inherent to delivering a web page. We use it only to keep the site available and to detect abuse. We do not use it to identify individual visitors, do not build profiles from it, and do not combine it with any other data set. Records are kept for a short operational period and then discarded.

4. Email

If you write to contact@vibexsoft.com, we process your email address, whatever name you sign with, and the content of your message — in order to read it and reply. We do not add correspondents to any mailing list, and we do not pass messages to third parties. Business correspondence is kept for as long as the matter it concerns requires, and thereafter where retention is legally required.

5. Legal bases (visitors in the EEA and the UK)

  • Art. 6(1)(f) GDPR — legitimate interests: operating and securing the website (server logs).
  • Art. 6(1)(b) GDPR — pre-contractual steps and contract performance: answering the email you sent us.
  • Art. 6(1)(c) GDPR — legal obligation: where retention is required by law.

We do not rely on consent, because we run no non-essential cookies or trackers.

6. Service providers

The list is deliberately short. The site is served by a commercial hosting provider, and our mailboxes are run by a commercial email provider; both are established in the United States and act on our instructions. We do not sell personal data, do not share it for advertising, and disclose it to no one else except where required by law or necessary to establish or defend legal claims.

7. International transfers

VibeX LLC and its providers are in the United States, so the limited data described above is processed there. Where personal data is transferred out of the EEA or the UK, we rely on the European Commission's Standard Contractual Clauses, and the UK Addendum where applicable, as concluded with those providers.

8. Your rights

Subject to applicable law, you may request access to your personal data, its correction or erasure, restriction of or objection to processing, and portability; and you may complain to your local supervisory authority. If you are a California resident, you also have the rights to know, delete, correct, and opt out of the "sale" or "sharing" of personal information — noting that we do neither — and we will not discriminate against anyone exercising a right.

To exercise any right, email contact@vibexsoft.com. Since we hold almost nothing, the honest answer to most access requests is short. We reply within the statutory deadline (one month under the GDPR, 45 days under the CCPA).

9. Security

The site is served over HTTPS only, with HSTS, a strict Content-Security-Policy that permits no third-party or inline code, and clickjacking, MIME-sniffing and referrer protections. Access to the hosting and mail accounts is restricted and protected by multi-factor authentication. Vulnerability reports are welcome — see /.well-known/security.txt.

10. Children

This site describes a company and its products; it is not directed to children under 16, and we do not knowingly process children's personal data.

11. Changes

If this policy changes, the "last updated" date above changes with it. Anything material will be summarised at the top of this page.