Privacy
Collect only what is needed to respond.
The free-audit form is designed for a business enquiry, not for building a personal profile.
Audit form data
The form asks for your name, institution name, phone or WhatsApp number, an optional website or Google listing, and an optional short concern. It also records limited campaign attribution such as UTM values, the landing path and referring hostname when your browser provides them.
Why it is used
The information is used to review the institution’s public website presence, respond to the audit request, understand which outreach or campaign led to the enquiry, and manage the resulting business conversation. The form does not ask for passwords, student records, payment details or sensitive personal information.
Storage and access
Audit submissions are stored server-side in a private lead database. They are not placed in the public browser bundle. Production deployment uses a database path outside replaceable application releases, with access restricted to the portfolio service and its administrator.
Retention
Audit submissions are retained for up to 365 days by default and first-party analytics events for up to 90 days by default. Production can use a different documented retention period when there is a genuine business or legal reason. Expired records are pruned when the private database opens and periodically during normal write activity; the deployment also has an explicit maintenance command for retention cleanup.
First-party conversion analytics
The portfolio records a small set of first-party events such as page views, audit CTA clicks, Vision proof visits, service/package engagement, audit-form starts and successful audit submissions. A random browser-session ID stored only in session storage links events during the current tab session. The event record does not intentionally store IP addresses, advertising identifiers, full referrer URLs or cross-site tracking cookies.
Processors and future tools
No third-party advertising analytics SDK is required for the current funnel. Any messaging, analytics or external processing added later must be documented here after it is actually configured. No advertising profile or third-party lead sale is part of the current design.