CompCiti Business Solutions, Inc. (“CompCiti,” “we,” “us,” or “our”) is a managed service provider headquartered at 261 West 35th St Suite 704, New York, NY 10001. We provide information-technology support, managed infrastructure, cybersecurity, cloud, backup, monitoring, help-desk, consulting, and related services (collectively, the “Services”).
This Privacy Policy explains how we collect, use, disclose, retain, and protect personal information when you visit https://compciti.com/, communicate with us, request information, purchase or use our Services, apply for employment, or otherwise interact with us. It also explains certain choices and rights that may apply to you.
For purposes of this Policy, “personal information” means information that identifies, relates to, describes, is reasonably capable of being associated with, or could reasonably be linked with an identifiable individual or household. Information that is aggregated, deidentified, or lawfully available from public sources may not be treated as personal information under applicable law.
When we provide Services to a business, we may access or process information belonging to that business’s employees, customers, patients, students, or other users. In those circumstances, we generally process that information on the client’s behalf and under the client’s instructions. The client is ordinarily responsible for determining the purposes and means of processing, providing required notices, and responding to requests concerning its own data.
This Policy primarily governs information that we collect and use for our own business purposes, including website visitors, prospective and current customers, vendors, event participants, and job applicants. It does not replace a client’s privacy notice, master services agreement, data-processing addendum, business-associate agreement, or security terms. If a client agreement conflicts with this Policy regarding client-controlled data, the client agreement governs to the extent permitted by law.
We collect information directly from you, automatically from devices and browsers, and from customers, service providers, and other sources. The categories may include the following:
| Category | Examples |
| Contact and business information | Name, business email, phone number, job title, company, business address |
| Account and service information | Login identifiers, support-ticket details, service preferences, configuration information, asset and license records |
| Communications and support information | Messages, call recordings where permitted, ticket history, troubleshooting notes, attachments, meeting details |
| Device, network, and usage information | IP address, browser type, operating system, device identifiers, log data, timestamps, referring pages, security events |
| Transaction information | Products or Services ordered, billing contact, invoices, payment status, limited payment-card information handled by payment processors |
| Professional and recruiting information | Resume, employment history, qualifications, references, interview information, work authorization information |
| Marketing and preference information | Subscription choices, event registrations, campaign interactions, communication preferences |
| Client-environment information | Data stored in or transmitted through systems that we manage for a client, which may include identifiers, credentials, files, email content, business records, or other sensitive information |
We ask that you not provide sensitive information through public website forms or ordinary email unless it is necessary and the communication channel is authorized for that purpose. If our Services require us to handle regulated information, the applicable client agreement and legal addenda should address those requirements.
We may use personal information to provide, administer, secure, and improve the Services; create and manage accounts; authenticate users; monitor systems; detect, prevent, investigate, and respond to security incidents, fraud, abuse, and service problems; provide customer support; process orders and payments; communicate about Services, maintenance, security alerts, and administrative matters; send marketing communications where permitted; evaluate and improve our website and business operations; recruit and evaluate and recruit applicants; comply with legal obligations; establish, exercise, or defend legal claims; and perform other purposes disclosed at or before collection or otherwise permitted by applicable law.
We may use aggregated or deidentified information for analytics, service improvement, capacity planning, benchmarking, and security research, provided that we do not attempt to reidentify it except as permitted by law.
Our website may use cookies, pixels, local storage, software development kits, log files, and similar technologies. These technologies may be used to keep the site functioning, remember preferences, understand site usage, secure accounts, measure communications, and support marketing or analytics.
You can control cookies through your browser settings and, where available, our cookie-preference tool. Disabling certain technologies may affect site functionality. If we use analytics or advertising providers, the website should identify those providers and link to the applicable preference or opt-out controls. We do not represent that browser-based “Do Not Track” signals are universally recognized unless stated in the applicable website configuration.
We may disclose personal information to the following categories of recipients:
| Recipient category | Purpose |
| Affiliated entities and personnel | Providing, administering, securing, and supporting the Services |
| Hosting, cloud, backup, monitoring, security, ticketing, and IT vendors | Operating systems and delivering contracted Services |
| Payment processors and accounting providers | Processing payments, billing, and financial administration |
| Communications, analytics, and marketing providers | Sending communications and measuring or improving outreach, where permitted |
| Professional advisers | Legal, accounting, insurance, audit, and business advice |
| Government authorities, courts, and law enforcement | Compliance with law, legal process, or protection of rights and safety |
| Transaction counterparties | A merger, acquisition, financing, reorganization, sale of assets, or similar transaction |
| Other parties with your direction or consent | A purpose disclosed to you or authorized by you |
We do not sell personal information for money. We do not disclose personal information for cross-context behavioral advertising unless our actual practices, notices, and legally required controls accurately describe that activity and provide any required opt-out mechanism. We do not use client-controlled data for our own marketing purposes except as expressly authorized by contract or law.
Our vendors may process information in the United States and other countries where they or their infrastructure operate. We require service providers to use information for authorized purposes and to maintain safeguards appropriate to the nature of the information and Services, subject to the applicable contract and law.
We may use remote support, logging, security, cloud, and backup tools. Access to client environments should be limited by least privilege, role-based permissions, authentication controls, logging, and client authorization procedures.
We maintain an information-security program designed to protect personal information against unauthorized access, acquisition, use, modification, disclosure, or destruction. Depending on the information and circumstances, safeguards may include access controls, multifactor authentication, encryption in transit and at rest where appropriate, endpoint and network protections, vulnerability management, logging and monitoring, backups, secure development and change-management practices, employee training, incident-response procedures, vendor review, and secure disposal.
No method of transmission or storage is completely secure. We cannot guarantee absolute security. If we determine that a security incident triggers a notice obligation, we will provide notice as required by applicable law and contract. We maintain reasonable administrative, technical, and physical safeguards, and it addresses unauthorized access to computerized data.
If we discover a security incident involving personal information, we will investigate, contain, remediate, document, and assess the incident. Where we process information for a client, we will follow the incident-notification procedures and timing in the applicable agreement, subject to legal requirements.
New York law may require notification to affected individuals and government authorities after a qualifying breach or unauthorized access to computerized data. New York guidance states that notification must be made in the most expedient time possible consistent with legitimate law-enforcement needs, and that an Attorney General breach-reporting submission is transmitted to the listed New York agencies. The specific notice, timing, and agency requirements depend on the facts and applicable law.
We retain personal information only for as long as reasonably necessary for the purposes described in this Policy, including service delivery, account administration, security, dispute resolution, legal compliance, and business records. Retention periods vary by data type, contractual requirements, legal obligations, litigation holds, backup cycles, and security needs.
When information is no longer needed, we use reasonable procedures to delete, deidentify, return, or securely dispose of it, subject to backups and legal or contractual retention requirements. Client-controlled data is handled according to the applicable agreement and the client’s documented instructions.
You may unsubscribe from non-transactional marketing emails by using the unsubscribe link in the message or by contacting us. You may also request access to, correction of, or deletion of personal information that we maintain about you, subject to applicable exceptions and verification requirements. You may request information about categories of personal information collected,collected purposes of use, categories of recipients, and applicable retention practices.
Requests should be sent to support@compciti.com with the subject line “Privacy Request.” We may need to verify your identity and authority before completing a request. We will not discriminate against you for exercising a right available under applicable law. If you submit a request concerning data that we process for one of our clients, we may refer you to that client or assist the client as required by our agreement.
Residents of other states may have additional rights under their state’s law. The scope, availability, and method of exercising those rights depend on the applicable law and whether the person or business is covered. We will not make a rights statement broader than our actual legal obligations or data practices.
Our Services and website are directed to businesses and are not intended for children under 13. We do not knowingly collect personal information directly from children under 13 through the website. If you believe a child has provided personal information to us, contact us at support@compciti.com so that we can evaluate and, where appropriate, delete it.
Our website or communications may link to third-party websites, applications, portals, or services. We are not responsible for the privacy, security, or content practices of third parties. You should review their privacy notices before submitting information.
We may update this Policy from time to time. We will post the revised version with a new “Last Updated” date. If a change materially affects how we use personal information, we will provide additional notice where required by law. The revised Policy will apply from its effective date forward, except where applicable law requires otherwise.
For privacy questions, requests, or concerns, contact:
CompCiti Business Solutions, Inc.
Attn: Privacy Officer
261 West 35th St Suite 704
New York, NY 10001
Email: support@compciti.com
Phone: 212-594-4374
Document History
| Version | Last Updated Date |
| 1.0.0 | August 05, 2026 |
