Gray Matter Group

Privacy Policy

Last updated 24 August 2026

This site is a brochure and a contact form. We do not run advertising, we do not use tracking cookies, and we do not sell or share anyone's information. This page explains the small amount of data that does change hands.

Who we are

Gray Matter Group LLC is a California limited liability company providing independent technology advisory services. For anything in this policy, write to [email protected].

What we collect

WhatWhenWhy
Name, email address, company name, and whatever you write in the message box Only when you submit the contact form So we can read your enquiry and reply to it
Your IP address and country Attached to a form submission To spot and discard automated spam
Standard server logs (IP, time, page, browser) held by our host Every visit Security and keeping the site online. We do not build profiles from these.
A single browser storage entry, gmg-theme Only if you use the light/dark toggle Remembers your choice. It never leaves your browser and is not a tracking cookie.

We do not ask for and do not want sensitive personal information through this form. Please do not send confidential client data, credentials, or contract documents until we have a signed agreement and a proper channel for it.

Who else sees it

We keep the list of processors deliberately short:

That is the whole list. No analytics platform, no advertising network, no data broker, no CRM. We have never sold personal information and have no plans to.

How long we keep it

Enquiries that do not become work are deleted within about twelve months. If we do work together, correspondence is kept for as long as the engagement and our record-keeping obligations require, then deleted. Ask us to delete yours sooner and we will.

Your choices

Email [email protected] and we will, without charging you or making it difficult:

California residents have these rights under the CCPA as amended by the CPRA. We extend the same treatment to everyone who contacts us, wherever you live, because maintaining two standards would be worse than maintaining one.

Security

The site is served over HTTPS only. The form endpoint sends over an encrypted connection and our email is protected by multi-factor authentication. No system is perfect; if we ever learn of a breach affecting your information, we will tell you directly rather than burying a notice on this page.

Children

This is a business-to-business service. It is not directed at children and we do not knowingly collect information from anyone under 18.

Changes

If this policy changes we will update the date at the top. Material changes to what we collect or who we share it with will be called out in plain language, not slipped in.