Privacy Policy

Effective Date: 02/06/2025
Last Updated: 07/21/2026

KRD LLC, a Wyoming limited liability company operating under the CorpifyInc brand ("CorpifyInc," "Company," "we," "our," or "us"), is committed to safeguarding the privacy and security of your personal data. This Privacy Policy explains how we collect, use, store, and disclose information and how we address applicable U.S. and international privacy obligations. We also maintain payment-security controls appropriate to the services we provide.

This Privacy Policy is a notice about our practices, not a request for blanket consent. When applicable law requires consent for a particular activity, we request it separately and allow you to withdraw it as described below.


Definitions

For the purposes of this Privacy Policy, the following definitions apply:

  • Personal Data: Any information relating to an identified or identifiable natural person.
  • Processing: Any operation or set of operations performed on personal data, whether or not by automated means.
  • Controller: The entity that determines the purposes and means of processing personal data.
  • Processor: The entity that processes personal data on behalf of the controller.

1. Legal Basis for Data Collection

We collect and process your personal data only when legally justified, including:

  • Performance of a contract – When processing is necessary to fulfill contractual obligations.
  • Legitimate interest – When processing is required for business purposes without overriding your rights and freedoms.
  • Legal compliance – When required to collect or retain data under applicable laws or regulations.
  • Consent – When you voluntarily agree to data processing, which you may withdraw at any time as described in this Policy.

2. Information We Collect

We collect the following types of information:

2.1 Personally Identifiable Information (PII)

  • Full name
  • Email address
  • Contact information (e.g., phone number, mailing address)
  • Government identifiers, including a Social Security number, only when a filing or service you request requires it
  • Payment details (processed through third-party providers in compliance with PCI DSS).
    Note: We do not store full payment card numbers or CVV codes on our own servers.

2.2 Technical & Usage Data

  • IP address
  • Device type and operating system
  • Browser version
  • Referring website or service
  • Website interaction data (e.g., pages visited, session duration), when you enable the applicable optional category

2.3 Cookies & Tracking Technologies

We use cookies and similar technologies for:

  • User authentication
  • Site security and fraud prevention
  • Site analytics, only after you enable that optional category
  • Advertising and conversion measurement, only after you separately enable that optional category
  • Experience insights, only after you separately enable that optional category
  • Customer support storage, used to keep support available and maintain conversations

Essential authentication and security storage is used when needed to provide the service. Site analytics, Advertising, and Experience insights are separate optional choices and remain inactive until you select Allow or save them as enabled in Settings. For a visitor without a saved choice, Settings initially displays those optional controls as enabled; opening Settings alone does not activate them. Necessary remains locked on, while Necessary only turns off and locks all optional controls before saving. Saved choices can be changed later without losing access to core site functions. Customer support operates independently of those choices. For more details, please refer to our Cookie Policy.

2.4 Sensitive Data

Some business filings require a government identifier such as a Social Security number. We collect it only after an explicit in-product request, encrypt it before storage, and restrict access to authorized personnel who need it to deliver the requested service. We do not automatically send government identifiers, payment credentials, passwords, authentication or password-reset tokens, document contents, or private dashboard activity to analytics, marketing-measurement, or session-replay providers. Session replay is limited to public informational pages, and available privacy controls are used to reduce the collection of form, URL, console, and network data. Controlled marketing measurement on application and services-checkout pages uses a sanitized page location without query strings or fragments. The always-available customer-support service receives technical context needed to operate, including the current page address, and any content you choose to submit. Do not put sensitive personal data in page-address parameters, and do not send passwords, full payment-card details or CVV codes, Social Security numbers, or other government identifiers through support chat. Please do not submit unrelated sensitive categories such as health, biometric, racial or ethnic-origin, religious, or philosophical information through our Services.


3. Purposes of Data Processing

We use your information for:

  • Service provision: Processing transactions, keeping customer support available, and handling inquiries. Message content is sent when you intentionally start a support interaction.
  • Security & fraud prevention: Detecting, preventing, and responding to potential cyber threats or illegal activities.
  • Legal compliance: Fulfilling legal and regulatory obligations (tax, accounting, record-keeping).
  • Site analytics: Understanding public-site performance and use only after you enable Site analytics.
  • Advertising: Measuring advertising interactions and conversions only after you enable Advertising.
  • Experience insights: Diagnosing usability and performance issues on public informational pages only after you separately enable Experience insights.
  • Payment processing: Ensuring secure processing of payment information through trusted third-party providers compliant with PCI DSS.

We do not engage in automated decision-making that has legal or similarly significant effects on you without your explicit consent.


4. Disclosure of Information

We do not sell, rent, or trade personal data for profit. However, we may share data in these scenarios:

4.1 Third-Party Service Providers

We work with trusted service providers who assist with:

  • Payment processing services
  • Cloud hosting & security infrastructure
  • Customer support solutions
  • Analytics & performance monitoring (only after you enable Site analytics; combined measurement runs only when all optional categories are enabled)
  • Email marketing & communication services
  • Advertising & conversion measurement services (only after you enable Advertising)
  • Privacy-protected session replay (only after you enable Experience insights; combined replay measurement runs only when all optional categories are enabled)

We require service providers to handle personal data for authorized purposes and with safeguards appropriate to their role. Some recipients may act independently under their own legal obligations and privacy notices.

4.2 Legal & Regulatory Disclosures

We may disclose personal data:

  • To comply with legal obligations (e.g., tax reporting, audits).
  • In response to lawful requests from authorities, including subpoenas or court orders.
  • To prevent fraud, security threats, or imminent harm to any individual or to protect our legal rights.

4.3 Corporate Transactions

In case of mergers, acquisitions, or asset sales, data may be transferred to the acquiring entity under appropriate safeguards. We will notify you if your data becomes subject to a different Privacy Policy.


5. Data Retention Policy

We retain personal data as long as necessary to meet the following obligations:

  • Account-related data: Held while the account remains active.
  • Payment records: Retained to satisfy financial and tax regulations.
  • Marketing data: Retained until you opt out or withdraw consent.
  • Support conversations: Retained only as long as reasonably needed to respond, maintain service history, resolve disputes, or meet legal obligations.

Server logs containing technical data (such as IP addresses, browser information) are retained only as long as needed for security, typically no longer than 12 months, unless required by law.

After the retention period, data is securely deleted, anonymized, or pseudonymized where appropriate.


6. International Data Transfers

We may transfer data to countries outside your jurisdiction. Where applicable law restricts a transfer, we use an available lawful mechanism, such as an adequacy decision or Standard Contractual Clauses, together with appropriate technical and organizational safeguards. Ordinary use of our Services is not treated as consent to a transfer where another legal mechanism is required.


7. Your Rights Under Data Protection Laws

Depending on your jurisdiction (e.g., California, EU/EEA, Virginia, Colorado, Connecticut, Utah, etc.), you may have the following rights:

  • Right to Access – Request a copy of your data.
  • Right to Rectification – Correct inaccurate data.
  • Right to Deletion – Request removal of your data.
  • Right to Restrict Processing – Limit how your data is used.
  • Right to Data Portability – Transfer your data to another provider.
  • Right to Object – Oppose data processing, including for marketing.
  • Right to Withdraw Consent – You may withdraw your consent at any time by contacting [email protected].
  • Right to Opt-Out of Sale – Although we do not sell personal data, you can still contact us if you wish to formally opt out of any future sales should our practices ever change.

If you are located in the EU/EEA, you also have the right to lodge a complaint with your local supervisory authority if you believe we are processing your personal data unlawfully.

We respond within the period required by the law that applies to your request. For example, GDPR requests are generally answered within one month and may be extended by up to two additional months where permitted and after notice; U.S. state-law periods vary.

To exercise your rights, contact [email protected].


8. Data Security Measures

We employ industry-standard security practices:

  • SSL/TLS encryption to secure data in transit.
  • Encryption at rest on our servers where feasible.
  • Strict access controls limiting sensitive data access to authorized personnel.
  • Security monitoring and testing appropriate to the nature and risk of the Services.
  • Payment-card controls provided by payment partners responsible for handling card data under applicable PCI DSS requirements.
  • Data anonymization/pseudonymization where possible to reduce privacy risks.
  • Incident response program to handle data breaches, including user notification as required by law.

While we strive to protect your data, no system is 100% secure. We advise users to:

  • Use strong, unique passwords.
  • Be cautious of phishing attempts.

9. Children’s Privacy

Our Services are intended for adults and are not directed to anyone under 18. We do not knowingly collect personal data from children through the Services. If we learn that a child has submitted personal data, we will investigate and delete it where required by law.

If you believe we have collected a minor’s data, please contact [email protected].


10. Third-Party Links & Integrations

Our website may contain links to third-party services (e.g., social media platforms, payment gateways, advertising networks). We do not control these external sites and are not responsible for their privacy practices or content.

We encourage you to review third-party privacy policies before sharing any personal data.


11. “Do Not Track” Signals

When a supported browser sends a "Do Not Track" signal or enables Global Privacy Control, we keep optional analytics, marketing measurement, and session replay disabled while that signal is active. The browser signal takes precedence over a previously saved website preference.


12. Updates to This Policy

We may update this Privacy Policy to reflect:

  • Legal or regulatory changes
  • Security enhancements
  • Adjustments to data collection or usage

Significant updates will be communicated via email or prominent notices on our website where appropriate. If a change requires consent under applicable law, we will request that consent separately.


13. Contact Information & Compliance Requests

For privacy-related inquiries or compliance requests, please contact us:

📧 Email: [email protected]
🌍 Website: www.CorpifyInc.com

We are committed to addressing your privacy concerns and ensuring transparent data practices.


14. Data Breach Notification

In the event of a data breach that compromises your personal data, we will notify you and any applicable regulators as required by law. Notifications may include:

  • Description of the breach
  • Type of data involved
  • Steps taken to mitigate harm
  • Contact details for further information

15. Additional State-Specific Privacy Rights

Residents of certain U.S. states (e.g., California, Virginia, Colorado, Connecticut, Utah) may have enhanced privacy rights. If you reside in one of these states, you can:

  • Request specific disclosures about your data (including categories of personal information collected, sources of that information, and any sharing practices).
  • Opt out of “sale” or “sharing” of personal data if applicable under your state’s law.
  • Appeal any decision we make in relation to your rights request if your request is denied.

For more details on how to exercise these rights, please email us at [email protected].


16. Legal Disclaimer & Liability

This Privacy Policy describes the Company’s data practices and does not provide legal advice to users or create warranties beyond those required by applicable law.

Security & Liability:
While we employ safeguards to protect personal data, no internet service can guarantee absolute security. Liability relating to the Services is governed by our Terms of Use and applicable law. Nothing in this Policy excludes or limits responsibility that cannot lawfully be excluded or limited.

International Users:
Privacy rights and requirements vary by jurisdiction. Any mandatory rights available where you live remain unaffected by this Policy.