Privacy Policy
Last updated: March 7, 2026
At BoldFolio, your privacy is not an afterthought — it is central to how we build and run our business. This policy describes in plain language what data we collect, why we collect it, and exactly how we keep it safe.
Who we are
BoldFolio is a trading name of Landim IT Tecnologia e Educacao Ltda, a company registered in Brazil (CNPJ holder), with its registered office at ST SHIN CA 09, Bloco A, Torre 3, Sala 105, Brasilia — DF, 71503-509, Brazil.
We operate the website theboldfolio.com and provide consulting to validate your project. When this policy refers to “we”, “us”, or “our”, it means BoldFolio / Landim IT.
What we collect
Information you give us
When you create an account, submit a project request, or get in touch, you may provide:
- Identity & contact details — name, email address, phone number, company name, and job title.
- Billing information— payment card details and billing address. These are processed directly by Stripe; we never see or store your full card number.
- Project materials— descriptions, attachments, mockups, and any other files you upload through our platform.
Information collected automatically
When you browse our website, we collect standard technical data to keep the site running smoothly and to understand how people use it:
- IP address, browser type, and operating system.
- Pages visited, time on page, and referring URL.
- Device type and screen resolution (for responsive design testing).
- Cookies and similar identifiers — see our Cookie Policy for details.
Why we use your data
Every piece of data we collect serves a clear purpose:
- Delivering your project— we need your contact details and project materials to do the work you hired us for.
- Processing payments— billing information is required to complete transactions securely.
- Communicating with you— project updates, account notifications, and support responses.
- Improving our services— aggregated analytics help us understand what works and where to invest effort.
- Marketing— only with your explicit consent. You can unsubscribe at any time with a single click.
- Legal compliance— tax records, fraud prevention, and responding to lawful requests.
Who we share data with
We do not sell your personal data. Ever.
We share information only in these limited situations:
- Service providers— trusted partners that help us operate (Stripe for payments, cloud hosting providers, analytics tools). Each provider is bound by contract to protect your data.
- Legal requirements— if required by law, court order, or to protect our legal rights.
- With your consent— any other sharing only happens when you explicitly agree to it.
How long we keep your data
We retain your data only as long as it is needed for the purpose it was collected:
- Account data— kept while your account is active. Deleted within 30 days of an account closure request.
- Project data— retained for 12 months after project delivery so you can access deliverables, then permanently removed unless you request otherwise.
- Financial records— kept for the period required by applicable tax law (typically 5–7 years).
- Analytics data— aggregated and anonymised; individual identifiers are deleted after 26 months.
How we protect your data
Security is built into every layer of our platform:
- All data is encrypted in transit (TLS 1.2+) and at rest.
- Access to personal data is limited to team members who need it to do their job.
- We conduct regular security reviews and follow industry best practices.
- Payment processing is handled entirely by Stripe, a PCI DSS Level 1 certified provider.
No system is 100% secure. If a breach ever occurs, we will notify affected users and the relevant authorities in line with our GDPR obligations.
Your rights
Regardless of where you are located, you can:
- Access the personal data we hold about you.
- Correct any information that is inaccurate or incomplete.
- Delete your data when it is no longer needed.
- Restrict how we process your data in certain circumstances.
- Port your data to another service in a machine-readable format.
- Withdraw consent at any time for consent-based processing.
If you are in the EU/EEA, you have additional protections under the GDPR. See our GDPR Compliance page for the full breakdown.
Third-party links
Our website may link to external sites that we do not operate. We are not responsible for their privacy practices and encourage you to review their policies independently.
Children
Our services are designed for businesses and professionals. We do not knowingly collect data from anyone under the age of 16. If you believe a child has provided us with personal information, please contact us so we can remove it immediately.
Updates to this policy
When we make changes, we will update the date at the top of this page. For significant changes, we will also notify you by email. We recommend reviewing this page periodically.
Get in touch
Questions, concerns, or data requests? Reach us at:
- Email: contact@theboldfolio.com
- Address:ST SHIN CA 09, Bloco A, Torre 3, Sala 105, Brasilia — DF, 71503-509, Brazil
We aim to respond within two business days.