Legal

Privacy Policy

What we collect, why we collect it, and the control you keep over it.

Effective 8 September 2026

Who we are

Corvus Watch LLC (“Corvus Watch”, “we”, “us”) is an AI, cyber security and business risk consultancy based in Oakland Park, Fort Lauderdale, Florida 33334, United States.

This policy explains what personal information we collect through corvus.watch, how we use it, and the choices you have. Questions can be sent to hello@corvus.watch.

Information we collect

  • Contact details you submit — name, business email, company, role and the content of your enquiry.
  • AI Readiness Check responses — your organisation profile, your answers, the resulting score and whether you asked for the weekly briefing.
  • Technical and usage data — anonymous session identifiers, pages viewed, approximate location derived from IP address, browser and device type.
  • Correspondence — emails and messages you exchange with us.

How we use it

  • To respond to enquiries and deliver the assessment results and report you requested.
  • To send The Corvus Watch Weekly briefing and occasional service updates, where you have provided your email through the assessment or subscribed.
  • To operate, secure, measure and improve the website and our assessments.
  • To meet legal, accounting and regulatory obligations.

Legal bases

Where the UK GDPR or EU GDPR applies, we rely on your consent (marketing emails and optional cookies), the performance of a contract or steps taken at your request (responding to enquiries and delivering assessment reports), our legitimate interests (site security, service improvement, business development), and legal obligation where required.

Sharing

We do not sell personal information. We share it only with service providers who process it on our behalf under contract — our hosting and database platform, our transactional email provider, and analytics tooling — and with professional advisers or authorities where the law requires it.

Some of these providers operate in the United States. Where personal data is transferred internationally, we rely on appropriate safeguards such as Standard Contractual Clauses.

Retention

Enquiries and assessment records are kept for as long as needed to provide the service and to maintain business records, and are then deleted or anonymised. Anonymous usage data is retained in aggregate form.

Your rights

Depending on where you live, you may have the right to access, correct, delete or receive a copy of your personal information, to object to or restrict processing, to withdraw consent, and to opt out of marketing at any time. Residents of California and other US states with privacy laws have equivalent rights, including the right not to be discriminated against for exercising them.

To exercise any right, email hello@corvus.watch. We will respond within the period required by applicable law. Every marketing email also contains an unsubscribe link.

Security

Assessment and enquiry records are stored in an access-controlled database. Records are written and read only by trusted server-side code — they are not readable from the browser. We use encryption in transit, least-privilege access and monitoring. No system is perfectly secure, so we encourage you not to send sensitive details through web forms.

Children

This site is intended for business use. We do not knowingly collect personal information from anyone under 16.

Changes

We may update this policy to reflect changes in our practices or the law. The effective date below always shows the current version.