PRIVACY

Your information, handled with care.

Website inquiry privacy notice · Version 2026-09-14

Who is responsible

Mostafa Abedi operates this website under the AB23 Technologies brand.

Information you provide

The inquiry form asks for your name, email address, inquiry category and message. Company, budget, timeline and website are optional. We also record a reference, submission time, inquiry status and the privacy notice version you read.

Please do not send passwords, confidential documents or sensitive personal information. This form does not accept attachments.

How information is used

Inquiry details are used to understand your request, send an email receipt where enabled for the submission, respond, coordinate internal follow-up and maintain an appropriate record. An inquiry does not subscribe you to marketing. Staff may add internal notes about the conversation.

Services and processing locations

The application is designed to use Amazon Web Services for hosting, database storage, staff authentication and application email. Regional application services are configured in Canada Central. Content delivery and some supporting services are global or use other regions; we do not promise that all processing occurs only in Canada.

Cloudflare provides DNS. Business email remains with the existing mailbox provider. GitHub stores source code and runs deployment checks; inquiry records do not belong in source code or build artifacts.

Cookies and technical information

The public website does not enable advertising or nonessential third-party tracking. Staff sign-in uses essential session and sign-in cookies. Authentication tokens are not stored in browser local storage.

Limited technical information is used for abuse prevention and operational security. The design uses short-lived, hashed rate-limit identifiers and avoids recording full inquiry messages or raw personal data in application logs.

Retention and deletion

Inquiry records are retained for 365 days from submission. A separate agreement may cover records needed if an inquiry becomes a client engagement. Authorized staff can delete an inquiry earlier. Security audit records contain limited action metadata and have a separate 730-day retention period.

Deletion from the live database does not instantly erase retained backups. Database point-in-time recovery may retain earlier records for up to 35 days. A restore must reapply deletion records before restored data is used. Application and API operational logs are retained for 30 days. Infrastructure audit logs have a separate 365-day retention.

Your requests

You can ask about access, correction or deletion of your inquiry. Provide your inquiry reference if available. We may need to verify that a request concerns your own information.

Contact mostafa@ab23.ca.

For general questions, use the contact page.

Changes to this notice

This page identifies the notice version shown. Material changes will be reflected in an updated notice before new collection practices take effect.