Privacy Policy

Last Updated: November 25, 2025

NetRunSecurity (the "Company", "we", "us") is committed to protecting the privacy and security of the personal information we collect from our clients, prospective clients, and website visitors. As a cybersecurity consultancy based in Quebec, Canada, with a focus on offensive security, we understand the paramount importance of data confidentiality and security. This policy outlines how we handle your information in compliance with applicable Canadian and international laws.

1. Information We Collect

We collect two types of information:

Personal Information (PI)

This is information that can identify you directly and is provided knowingly:

Technical Data & Analytics

This data is collected automatically to ensure website functionality and performance:

2. How We Use Your Information

Your information is used strictly for legitimate business purposes necessary for providing our security services and content:

3. Data Security & Client Confidentiality (Our Commitment)

Given our expertise in offensive security, we apply high standards of security to protect your data:

Encryption in Transit

All data transmitted between your browser and our servers is secured using mandatory TLS 1.3+ encryption protocols.

Encryption at Rest

Where PI or sensitive client engagement data is stored, it is encrypted using industry-standard, strong algorithms (e.g., AES-256).

Access Control & Zero Trust

We enforce strict access controls and zero-trust principles, limiting internal access to data only to personnel who require it to perform their professional duties.

Secure Report Delivery

Penetration testing reports and audit findings—which contain highly sensitive information—are always encrypted and delivered exclusively via secure, vetted channels.

4. Third-Party Services

We minimize third-party data processors but use the following essential services:

We do not sell your personal information to any third parties.

5. Cookies & Tracking Technologies

We use minimal cookies for essential website operation and anonymous performance analysis:

We do not employ third-party advertising or intrusive tracking cookies. You may control or disable cookies through your browser settings.

6. Data Retention

7. Legal Compliance & Governing Law

NetRunSecurity is committed to high standards of privacy compliance:

8. Your Rights

Depending on your location, you have rights regarding your Personal Information. Specifically, under Law 25 and GDPR, you may have the right to:

9. Contact Us (Data Protection Officer)

For any privacy-related questions, to exercise your rights, or to file a complaint, please contact our designated Privacy Officer:

Email: privacy[at]netrunsecurity[dot]com

We will respond to all legitimate requests within 30 days. We may require confirmation of your identity before processing certain requests.

10. Changes to This Policy

We may update this policy periodically to reflect changes in our practices or legal requirements. Changes will be posted on this page with an updated "Last Updated" revision date. Continued use of our services after any changes constitutes your acceptance of the updated policy.