Home/Privacy Policy

Privacy Policy

Last updated: 2026-05-05. Phoned-Tech Ltd. ("Phoned-Tech", "we", "us", "our") respects your privacy and is committed to protecting the personal information you share with us. This policy explains what we collect, why, and what control you have.

Who we are

Phoned-Tech Ltd. is an Israeli software engineering studio headquartered at 17 Haim Laskov St., Maalot-Tarshiha, Israel. We operate the website at phonedtech.com.

For any privacy-related question, contact us at [email protected].

Information we collect

Information you provide via forms — when you submit our contact form we collect your name, email, optional company name and phone, your stated areas of interest, indicative budget and timeline, and your message. We use this only to reply to your enquiry.

Cookies — we use a small number of strictly necessary cookies (language preference, consent record, session, CSRF protection). With your consent, we may also use functional, analytics, or marketing cookies. See our Cookies Policy for the full list.

Server logs — our hosting provider records standard request metadata (IP address, user agent, request path, timestamp) for security, abuse prevention, and capacity planning. These logs are rotated and retained for no more than 90 days.

Third-party providers — when you submit the contact form, the data is delivered to our internal mail provider. We do not sell or share contact-form data with marketers.

How we use your information

We use the information you provide to respond to enquiries, schedule consultations, send you a written follow-up summary, and (where you have opted in) to keep you informed about Phoned-Tech services that may be relevant to your stated interests.

We use cookie data to remember your language preference and your cookie-consent choices, to maintain your session, and to protect against CSRF attacks. With explicit consent, we may use additional cookies for analytics or marketing — never without consent.

Lawful basis (GDPR Art. 6)

Where the EU General Data Protection Regulation applies, we rely on the following lawful bases: (a) Contractual necessity and pre-contractual steps for processing your enquiries and proposals; (b) Legitimate interests for security logging, fraud prevention, and improving our services, balanced against your rights; (c) Consent for non-essential cookies and marketing communications, which you can withdraw at any time.

Sharing with third parties

We do not sell personal information. We may share information with: hosting and infrastructure providers (e.g., AWS, GCP) acting as data processors under written contracts; professional advisers (lawyers, accountants) bound by confidentiality; competent authorities where required by law.

All third-party processors are subject to written agreements requiring them to handle data only on our instructions and to apply appropriate security measures.

International transfers

Some of our processors are located outside Israel and the EEA. Where data is transferred internationally we rely on adequacy decisions, EU Standard Contractual Clauses, or your explicit consent.

Retention

Contact-form submissions are retained for up to 24 months from the last interaction, then deleted unless we have an ongoing engagement with you. Server logs are retained for up to 90 days. Cookie records are retained according to each cookie's lifetime — see the Cookies Policy.

Your rights

Subject to applicable law, you have the right to: access the personal data we hold about you; request correction or deletion; restrict or object to certain processing; data portability; withdraw consent (for consent-based processing); lodge a complaint with the Israeli Privacy Protection Authority or your local EU data protection authority.

To exercise any of these rights, email [email protected]. We will respond within 30 days.

Children

Our website is not directed at children under the age of 16, and we do not knowingly collect data from children. If you believe a child has provided us with personal information, please contact us so we can delete it.

Security

We apply industry-standard administrative, technical, and physical safeguards to protect personal information, including encryption in transit (TLS), restricted access on a need-to-know basis, and routine security review. No system is perfectly secure; if we become aware of a breach affecting your data we will notify you and the relevant authorities as required by law.

Changes to this policy

We may update this policy from time to time. The date at the top reflects the last update. Material changes will be highlighted on the website for at least 30 days before they take effect.