Privacy Policy & Client Data Protection.
Transparent guidelines on how Szene Studio safeguards client intellectual property, project communications, and technical assets across our freelance and agency commissions.
Strict Client Confidentiality
All project briefs, proprietary source code, wireframes, and business ideas are protected with strict confidentiality and NDA-grade safeguards.
Zero AI Model Training
Client data and project materials are never used to train public or foundation AI models. We enforce zero-data-retention APIs where available.
Full Code & IP Transfer
Upon full settlement of commissions, intellectual property and deliverable source code transfer completely to the client as defined in our service agreements.
Minimal Data Footprint
We collect only what is strictly necessary to plan, engineer, and support your digital systems. We never sell, rent, or trade your data.
1. Introduction & Overview
Welcome to SZENE Studio ("we," "our," or "the Studio"). We operate as an independent digital design, engineering, and consulting practice delivering high-performance web applications, cloud infrastructure, SaaS/ERP solutions, and applied AI systems for international clients, startups, and founders.
This Privacy Policy explains how we collect, handle, protect, and process information when you visit our website (szenestudio.com), contact us for project inquiries, or engage our studio for bespoke freelance and agency services.
2. Information We Collect
We collect information in three distinct contexts depending on how you interact with the Studio:
A. Prospective & Client Inquiries
When you submit an inquiry via our contact form or email, we collect your name, email address, optional phone number, organization/company name, project brief details, estimated budgets, and project timelines.
B. Client Engagement & Project Artifacts
During an active client commission, we may temporarily access staging environments, API keys, design files (Figma), database credentials, and GitHub repositories necessary to engineer and deploy your deliverables.
C. Technical & Diagnostic Logs
Minimal technical metrics including your IP address, browser type, referring URL, and interaction timestamps are collected via secure server logs solely for performance monitoring and DDoS prevention.
3. How We Use Your Information
We process information strictly for legitimate commercial and engineering purposes:
- Reviewing and responding to project briefs, feasibility inquiries, and proposals.
- Architecting, coding, testing, and deploying commissioned web apps, AI workflows, and software systems.
- Invoicing, processing milestone payments, and executing formal client master services agreements.
- Delivering studio dispatches and project updates (only if you opt-in; you can unsubscribe at any time).
- Ensuring the security, uptime, and integrity of our digital infrastructure.
4. Client Confidentiality, NDAs & Code Ownership
As a professional engineering studio and freelance partner, we hold client trust as paramount.
Our Core Confidentiality Commitments
- • Non-Disclosure Agreements (NDAs): We gladly sign standard mutual NDAs prior to reviewing proprietary materials or sensitive codebase access.
- • Intellectual Property: All custom code, design systems, assets, and documentation created specifically for your commission become 100% your property upon final settlement.
- • No Data Resale: We never sell, rent, monetize, or broker any client data or visitor contact information under any circumstance.
- • Credential Sanitization: Once a project is completed and handed over, all temporary API tokens, SSH keys, and staging access credentials provided to us are deleted or rotated.
5. AI & LLM Processing Standards
When building AI features (such as automated voice agents, LLM integrations, or RAG indexing) for client projects:
- No Public Model Training: We explicitly configure vendor enterprise APIs (OpenAI, Anthropic, Google Vertex AI, AWS Bedrock) to ensure client data is excluded from public model training datasets.
- Encrypted Telemetry: All vector database queries, voice audio streams, and automated pipeline payloads utilize TLS 1.3 encryption in transit and AES-256 encryption at rest.
6. Subprocessors & Third-Party Infrastructure
To deliver modern cloud-native solutions, we work with industry-standard, SOC2/ISO 27001 compliant infrastructure providers. These include:
7. Your Rights & Data Choices
Under international privacy frameworks (including GDPR, CCPA, and applicable global standards), you hold the following rights:
- Right of Access: Request a copy of the personal information we hold about you.
- Right to Rectification: Request correction of inaccurate or incomplete contact records.
- Right to Erasure ("Right to be Forgotten"): Request the permanent deletion of your inquiry details and contact records, subject to legal accounting retention requirements.
- Right to Withdraw Consent: Opt out of communications or dispatch newsletters instantly at any time.
8. Contact & Privacy Inquiries
If you have questions regarding this Privacy Policy, wish to exercise your data rights, or request an executed NDA prior to sharing project briefs, please contact our team directly: