This page was last updated on 5 October, 2025
1. Introduction
This Privacy Policy sets forth the principles and practices by which Onixae LLC, a Delaware limited liability company, collects, uses, processes, stores, and discloses personal information in the course of its business operations. As a global business-to-business service provider, Onixae LLC is committed to maintaining the privacy, confidentiality, and integrity of personal data entrusted to it by users of its websites, clients, business contacts, and other third parties. This policy is intended to comply with applicable data protection laws and regulations, including but not limited to the Delaware Personal Data Privacy Act (DPDPA), the California Consumer Privacy Act as amended by the California Privacy Rights Act (CCPA and CPRA), the European Union General Data Protection Regulation (GDPR), and any other applicable international or domestic data privacy legislation. By outlining our privacy practices in a comprehensive and transparent manner, Onixae LLC affirms its commitment to lawful and responsible data governance.
The purpose of this document is to provide a clear and structured explanation of how and why Onixae LLC processes personal data, the categories of data it collects, the legal bases for such processing activities, and the rights of data subjects as provided under applicable law. It serves as both a legal notice to individuals whose data may be collected or processed, and as an internal compliance tool to ensure our organization meets all statutory requirements related to privacy and data protection. The provisions herein apply to personal information in both physical and digital formats and are enforced by administrative, physical, and technical safeguards that aim to mitigate risks of unauthorized access, disclosure, alteration, or destruction of data. This Privacy Policy also establishes our position on the sharing of personal data with third parties, including affiliates, service providers, and government authorities, as permitted or required by law.
This Privacy Policy applies to all data subjects whose personal data is collected or processed by Onixae LLC through the use of its corporate website, client portals, communication channels, software platforms, mobile applications, or any other services made available to users directly or indirectly by the company. It governs all interactions where personal data may be voluntarily submitted, automatically collected, or otherwise processed, including but not limited to inquiries, commercial transactions, email communications, online engagement, and service delivery activities. By accessing any of our services or engaging with our business in a manner that results in the collection or transmission of personal data, the user acknowledges that they have read, understood, and agreed to the terms of this Privacy Policy. This document is incorporated by reference into our general terms and conditions and constitutes an integral part of our legal relationship with all data subjects.
2. Company Information
Onixae LLC is a limited liability company duly organized and validly existing under the laws of the State of Delaware. The company was formed on October 9, 2025, and is registered with the Delaware Secretary of State pursuant to the Delaware Limited Liability Company Act. It conducts its operations as a global business-to-business entity, providing services to clients and counterparties worldwide. The company maintains full legal capacity to enter into contracts, hold assets, and engage in any lawful business activity permitted under its certificate of formation and applicable jurisdictional regulations. All references to Onixae LLC in the context of data processing, service provision, or legal communication shall be deemed to refer to the legal entity as described herein.
All communications relating to data protection matters, service inquiries, or legal notices should be directed to the company’s registered business address: 2803 Philadelphia Pike B, Suite 4165, Claymont, Delaware 19703, United States of America. For electronic communications, users may contact the company via its designated customer service email at hello@onixae.com
. Additional assistance is available by telephone at +1 7452953374 during regular business hours. These contact points are maintained for purposes including compliance with data protection law, customer relations, legal obligations, and general corporate correspondence. All inquiries received through these channels will be reviewed and handled in accordance with internal compliance protocols and applicable legal requirements.
The company has appointed a designated data protection contact to oversee compliance with applicable privacy regulations and to coordinate responses to rights requests, complaints, or regulatory inquiries. The data protection contact is Odera Joseph Echendu, the founder of Onixae LLC. Mr. Echendu may be reached for privacy-related matters at joseph@onixae.com
While Onixae LLC has not formally appointed a Data Protection Officer as defined under Article thirty-seven of the General Data Protection Regulation, Mr. Echendu performs analogous functions to ensure that the organization maintains adequate privacy governance, internal controls, and legal compliance. Communications directed to this contact will be treated as confidential and handled in accordance with established privacy protocols and applicable law.
3. Categories of Personal Information Collected
Onixae LLC collects and processes a variety of personal data categories in connection with its business operations, all of which are obtained in a lawful and transparent manner. This includes contact information voluntarily submitted by users, business representatives, or prospective clients through online forms, email correspondence, client onboarding processes, or during the negotiation or performance of commercial engagements. Such data typically includes full names, professional email addresses, telephone numbers, job titles, company affiliations, and other identifiers necessary for the initiation and maintenance of business relationships. This information is essential for communicating with clients, managing contracts, and maintaining accurate business records across our commercial platforms.
In addition to direct user-provided information, the company may automatically collect website usage and interaction data through technologies embedded in its digital platforms. This includes technical information such as Internet Protocol addresses, browser types, device operating systems, screen resolutions, geographic locations as determined by the user’s IP address or device permissions, and timestamps of site access. Tracking technologies such as cookies, pixels, web beacons, and similar mechanisms are used to analyze browsing behavior, measure advertising effectiveness, detect fraud, and improve service functionality. These data elements may be processed independently or in combination with other identifiers to enhance the user experience and support our marketing, analytics, and platform security objectives, subject to applicable laws requiring consent where necessary.
In the course of engaging in sales, support, and customer relationship management activities, the company also maintains data that reflects communication histories, sales status, and other interactions recorded in internal CRM platforms. This includes metadata associated with email exchanges, meeting notes, client preferences, support tickets, onboarding documentation, and operational notes related to client needs or service delivery. All such data, while primarily business-related, may qualify as personal information when linked to an identifiable individual acting in a professional capacity. Onixae LLC processes this data for legitimate commercial purposes such as customer service optimization, sales forecasting, market segmentation, and contractual performance. Where applicable, additional categories of B2B personal data—such as survey responses, training records, or event registrations—may also be collected in accordance with the purpose of the interaction and relevant privacy notices.
4. Sources of Data Collection
Onixae LLC obtains personal information from a variety of legitimate and clearly defined sources, depending on the nature of the user’s interaction with the company. The primary source of personal data is direct input from individuals acting in a business capacity. This includes information voluntarily submitted through online forms, such as contact requests, service inquiries, newsletter subscriptions, client onboarding submissions, and event registrations. The company also receives data through business emails, telephone conversations, or other communications initiated by prospective or existing clients. These interactions often result in the transfer of essential contact and professional data that is processed to respond to inquiries, provide services, or enter into contractual relationships.
In addition to direct submission, the company employs automated technologies that collect personal data through its websites and digital services. Such technologies include cookies, tracking pixels, web beacons, log files, and device fingerprinting tools which are used to gather data about user behavior, technical device characteristics, and site performance. Information captured through these tools may include Internet Protocol addresses, browser identifiers, geolocation data (where enabled), session duration, click paths, and referral sources. Analytics services, such as Google Analytics and similar platforms, are used to measure traffic patterns, assess marketing campaign effectiveness, and improve service functionality. All automated collection practices are conducted in accordance with legal obligations and, where applicable, user consent mechanisms such as cookie banners or preference centers.
Furthermore, Onixae LLC may receive personal data indirectly through authorized third-party integrations or platforms with which users or business clients interact. These third-party sources may include partners in marketing campaigns, joint service delivery platforms, cloud-based CRM systems, social media platforms, or event registration services, where data is lawfully transferred to Onixae LLC under a contractual relationship or with user consent. The company ensures that such integrations are subject to appropriate data protection agreements and that any personal information received from these sources is processed in accordance with applicable laws and the principles outlined in this policy. When such data is combined with other data already held by the company, it is treated with the same degree of confidentiality and security.
5. Purposes for Data Processing
Onixae LLC processes personal data for clearly defined and lawful purposes, all of which are aligned with the company’s operational needs and the expectations of individuals acting in a professional or business context. A primary purpose of processing is to facilitate sales and marketing functions directed at prospective or current business clients. This includes responding to inquiries, qualifying leads, scheduling consultations, sending newsletters or promotional content, and offering updates regarding services that may be relevant to the user’s professional role or organization. Data may also be used to support event outreach, manage subscriber lists, and assess marketing performance using industry-standard analytics practices. Each instance of processing is limited to what is necessary and proportionate to the purpose at hand, and where applicable, marketing communications are subject to user choice and consent preferences.
Another central purpose of data processing is the fulfillment of contractual and pre-contractual obligations entered into between Onixae LLC and its clients or partners. In such cases, personal data is used to manage client onboarding, configure service environments, maintain client records, and track the lifecycle of business engagements through customer relationship management systems. This includes logging communications, noting service preferences, updating contact records, managing access rights to online platforms, and documenting the history of business interactions. These processing activities are essential to delivering agreed services, maintaining service quality, supporting account management functions, and ensuring the continuity and accuracy of operational data relevant to each business relationship.
Additionally, the company processes personal information where required to comply with applicable laws, regulations, and regulatory requests, or where necessary to detect and prevent fraudulent, unauthorized, or unlawful activities. This may include the retention of data for tax reporting, audit compliance, financial recordkeeping, and lawful disclosure to competent authorities. In certain contexts, personal data may be processed to enforce contractual rights, respond to legal claims, or protect the safety, property, or legal interests of the company, its clients, or third parties. In carrying out these purposes, Onixae LLC applies appropriate legal standards and safeguards to ensure that data is processed fairly, securely, and in accordance with the principle of necessity.
6. Legal Basis for Processing (GDPR and Global Laws)
Onixae LLC ensures that all personal data processing activities are grounded in a valid legal basis as defined under applicable data protection laws, including the General Data Protection Regulation of the European Union, the United Kingdom Data Protection Act, the California Consumer Privacy Act as amended by the California Privacy Rights Act, and the Delaware Personal Data Privacy Act. These laws require organizations to establish and document the lawful grounds upon which personal data is collected, used, stored, and shared. Accordingly, every category of data processed by Onixae LLC is linked to a clearly identified and documented legal basis, depending on the context and purpose of processing, the relationship with the data subject, and the jurisdiction involved.
Consent is relied upon where users voluntarily provide personal information for specific purposes that are not strictly necessary for the performance of a contract or compliance with legal obligations. This includes scenarios such as subscribing to marketing communications, accepting analytics or advertising cookies, or participating in optional surveys and events. Consent must be freely given, specific, informed, and unambiguous. Where required by law, Onixae LLC obtains explicit consent through affirmative user actions, such as ticking boxes or adjusting settings within cookie banners or privacy dashboards. Users may withdraw their consent at any time, and Onixae LLC provides mechanisms to support such withdrawals without prejudice to the lawfulness of prior processing activities conducted on the basis of consent.
Where processing is necessary for the performance of a contract to which the data subject is a party, or to take steps at the request of the data subject prior to entering into such a contract, the legal basis is contractual necessity. Examples of this include collecting billing and contact information to deliver purchased services, managing user accounts, providing onboarding support, and issuing service-related communications. In these contexts, the failure to provide necessary personal data may render it impossible for Onixae LLC to fulfill its contractual obligations. Accordingly, such data is processed strictly for the purpose of executing the agreement and is retained for the duration necessary to support the contractual relationship and any legal or financial obligations arising therefrom.
In a number of processing scenarios, Onixae LLC relies on its legitimate interests to collect and use personal data, provided that those interests are not overridden by the data subject’s fundamental rights and freedoms. Legitimate interests may include operating secure and efficient business systems, managing internal records, improving service offerings through performance analysis, preventing unauthorized access or data misuse, or pursuing marketing strategies directed at existing clients or professional contacts. When relying on this basis, the company evaluates the necessity and proportionality of the processing activity, considers the reasonable expectations of the data subjects, and implements safeguards such as access controls, data minimization practices, and opt-out opportunities where appropriate.
In addition, the company may be legally required to process certain categories of data to fulfill obligations under statutory or regulatory frameworks. These obligations may include responding to lawful requests from governmental authorities, maintaining tax records, preserving documentation for audit or financial compliance, and meeting industry-specific disclosure requirements. In such cases, the legal basis for processing is compliance with a legal obligation to which the company is subject. Onixae LLC may also process personal data where necessary to protect the vital interests of individuals or in the public interest where authorized by law. All processing activities conducted under these legal bases are documented and subject to internal compliance review to ensure continuing adherence to applicable data protection standards.
7. Cookies and Tracking Technologies
Onixae LLC employs a variety of tracking technologies on its digital platforms to support functionality, analyze user behavior, measure marketing effectiveness, and deliver relevant content to its business audience. These technologies include cookies, tracking pixels, web beacons, software development kits, browser fingerprinting, local storage objects, and embedded scripts. Each of these tools may collect device-level data, navigation patterns, interaction metrics, and user preferences, which may be considered personal information when associated with identifiable individuals. These tools function to improve the performance, usability, and security of the company’s websites and services and support the company's marketing and customer engagement strategies.
Cookies are small data files stored on a user's device by a web browser when visiting a website. Onixae LLC uses both session cookies, which expire when the browser is closed, and persistent cookies, which remain on the device for a defined period or until manually deleted. These cookies serve various purposes, including remembering user preferences, enabling login functionality, retaining session information, and analyzing aggregated site usage. Cookies may be set by Onixae LLC directly, known as first-party cookies, or by third-party service providers whose technologies are integrated into the platform, referred to as third-party cookies.
The company uses analytics cookies and similar technologies to monitor and improve the performance and effectiveness of its websites. These tools allow Onixae LLC to gather insights into user engagement, traffic sources, device types, time spent on pages, click behavior, and error diagnostics. Common analytics platforms utilized include Google Analytics and Microsoft Clarity, which may collect pseudonymized identifiers, geographic data, and behavioral patterns. These insights are used solely for internal purposes such as platform optimization, A/B testing, and system diagnostics and are not used to identify individual users unless explicitly stated or combined with other data points.
Onixae LLC also implements advertising and remarketing technologies that enable the delivery of targeted business-to-business advertisements across various digital platforms. These tools include but are not limited to Meta Pixel (formerly Facebook Pixel), LinkedIn Insight Tag, Twitter Pixel, Google Ads Conversion Tag, and other platform-specific retargeting technologies. These tools may track user actions on the company’s website, such as form submissions, page views, or time spent, and associate that behavior with advertising identifiers or cookies on external platforms. The collected data enables Onixae LLC and its advertising partners to display relevant sponsored content, track conversions, and measure the return on advertising spend.
Users are provided with transparent information and options to control the use of non-essential tracking technologies. A cookie consent banner is displayed upon first visit to the company’s websites, enabling users to accept, reject, or customize their preferences regarding the use of analytics and marketing cookies. Users may also adjust their browser settings to decline or delete cookies or use third-party tools such as browser extensions that block tracking technologies. Where required by law, Onixae LLC does not activate non-essential cookies until the user has provided affirmative consent. In addition, the company honors recognized global opt-out signals, such as the Global Privacy Control, in jurisdictions where such signals are required by law to be respected.
All cookie and tracking practices are documented in a dedicated Cookie Notice, which may be accessed from the website’s footer or through the privacy preferences link available on applicable pages. This notice includes a full list of active cookies, their duration, provider, category, and purpose. Onixae LLC reviews its tracking technologies and consent mechanisms on a regular basis to ensure compliance with evolving legal requirements and industry standards. Users with concerns or questions regarding these technologies may contact the company’s privacy contact at joseph@onixae.com
for additional information or assistance in managing their tracking preferences.
8. Data Sharing and Disclosure
Onixae LLC shares personal data only where there is a legitimate, lawful, and clearly defined purpose for doing so. The company does not engage in the sale of personal information for monetary consideration and does not transfer data in any manner that would be construed as a sale under the California Consumer Privacy Act, the Delaware Personal Data Privacy Act, or similar statutes. However, the company may disclose certain categories of personal data to third parties in the course of its business operations, including service providers, processors, advertising platforms, and governmental authorities, provided that such disclosures are compliant with applicable data protection laws and subject to appropriate contractual safeguards.
Third-party service providers and data processors are engaged by Onixae LLC to perform functions on its behalf. These may include cloud hosting providers, email delivery platforms, customer relationship management systems, document management platforms, payment processors, and other technical infrastructure services. In each case, service providers are contractually bound to access and process personal information solely for the purpose of performing the agreed services, and in accordance with the instructions, confidentiality obligations, and data protection standards imposed by Onixae LLC. Data processing agreements are executed to ensure compliance with Article twenty-eight of the General Data Protection Regulation and other relevant frameworks.
The company may share user data with advertising and marketing partners to support audience targeting, campaign performance measurement, and lead generation strategies. This includes platforms such as LinkedIn, Google Ads, Meta, and Twitter, which may receive anonymized or pseudonymized identifiers linked to cookies or user activity. These disclosures are made pursuant to the operation of marketing tags or pixels embedded within the company’s digital assets. Where such sharing may be considered a “sale” or “sharing” under relevant privacy laws, Onixae LLC provides a “Do Not Sell or Share My Information” option or a similar opt-out mechanism, allowing users to exercise their rights to restrict such transfers.
In specific and limited circumstances, the company may be legally obligated to disclose personal data to public authorities or regulators. This may occur in response to subpoenas, court orders, government audits, law enforcement investigations, or other lawful requests under applicable statutes. Where permitted, Onixae LLC will notify the data subject of such disclosures unless doing so would contravene legal requirements or risk compromising an ongoing investigation. The company evaluates all requests for access against applicable legal standards and responds only to those that are lawful, proportionate, and necessary.
Additional disclosures may occur in the context of corporate transactions, such as mergers, acquisitions, asset sales, restructuring, or bankruptcy proceedings. In such cases, personal data may be shared with counterparties, advisors, or prospective purchasers, subject to confidentiality undertakings and due diligence restrictions. Any successor entity will be required to honor the commitments set forth in this Privacy Policy or provide equivalent protection. Users will be notified of any material changes to data handling practices resulting from such transactions, in accordance with applicable notification requirements.
Finally, personal data may be shared based on the data subject’s explicit instructions or with their affirmative consent. For example, a user may direct Onixae LLC to integrate with a third-party platform, refer a business contact, or participate in a co-branded marketing event with joint sponsors. In such cases, the company ensures that the recipient of the data is clearly identified and that the individual has meaningful control over the scope and purpose of the sharing. Any questions regarding third-party disclosures may be addressed to the company’s data protection contact for clarification.
9. User Rights (GDPR, CCPA, DPDPA)
Individuals whose personal data is processed by Onixae LLC are entitled to exercise various rights under applicable data protection laws, including the General Data Protection Regulation, the California Consumer Privacy Act as amended by the California Privacy Rights Act, and the Delaware Personal Data Privacy Act. These rights apply regardless of whether the individual acts in a business capacity, as many jurisdictions extend protections to all identifiable natural persons. Onixae LLC acknowledges and respects the rights of all data subjects and maintains internal protocols and mechanisms to ensure that such rights can be exercised transparently and without undue delay.
The right of access entitles individuals to request confirmation of whether their personal data is being processed, and if so, to obtain a copy of that data along with information regarding the categories of data collected, the purposes of processing, the legal bases relied upon, the recipients of the data, and the retention periods. This right may be exercised through a formal request submitted to the company’s privacy contact, and responses will be provided within the statutory time limits defined by law. Where legally permitted, the company may request identity verification or clarification of the scope of the request before processing.
Data subjects also have the right to request correction or rectification of inaccurate or incomplete personal data. Where the information held is outdated, misleading, or no longer reflects the individual’s current situation, Onixae LLC will take reasonable steps to update the data upon request. In certain cases, individuals may also request the deletion of their personal data, particularly where the data is no longer necessary for the purpose for which it was collected, where consent has been withdrawn, or where the processing is found to be unlawful. The company will evaluate deletion requests in light of its legal, contractual, or operational obligations and, where appropriate, anonymize or securely erase the data.
Under various laws, individuals also have the right to object to or restrict certain forms of data processing. This includes the right to opt out of targeted advertising, profiling, or marketing communications. Users may also request that Onixae LLC limit the processing of their data to storage only where the accuracy is contested, where the processing is unlawful but deletion is not requested, or where the data is required for the establishment or defense of legal claims. Users may adjust cookie settings through the company’s consent platform or submit objections to specific processing operations by email or via the designated request form.
The right to data portability allows users to request a copy of their personal data in a structured, commonly used, and machine-readable format and, where feasible, to have that data transmitted directly to another controller. This right is applicable where the processing is based on consent or contract and is carried out by automated means. In jurisdictions such as the European Union, additional rights may exist, including the right not to be subject to decisions based solely on automated processing, including profiling, that produce legal effects or similarly significant consequences.
Finally, individuals have the right to lodge complaints with supervisory authorities in their respective jurisdictions if they believe their rights have been violated or if the company has failed to act in accordance with its legal obligations. Where Onixae LLC denies a rights request, Delaware law and other applicable frameworks require the company to provide an explanation and offer an appeal mechanism. Appeals may be submitted to the company’s privacy contact, who will review the decision and provide a written response within the statutory timeline. All rights requests may be submitted to joseph@onixae.com
or through the privacy rights form available on the company’s website.
10. Data Retention Policy
Onixae LLC maintains a structured and lawful approach to data retention in accordance with its obligations under the Delaware Personal Data Privacy Act, applicable federal statutes, and internationally recognized standards such as the General Data Protection Regulation. Personal data is retained only for the period necessary to fulfill the purpose for which it was collected, or as required to meet legal, contractual, or regulatory obligations. Retention periods are determined based on the nature of the data, the context in which it was provided, and the requirements imposed by law, industry norms, and operational necessity.
The company classifies personal data into various categories for the purpose of retention governance. Contact information submitted through inquiry forms, sales channels, or account registration is retained for the duration of the active relationship with the data subject and for a reasonable period thereafter to maintain historical business records, comply with audit requests, and resolve disputes. Data collected for the execution of contractual obligations is retained for as long as necessary to administer the contract and comply with applicable financial and tax recordkeeping requirements, which in most cases shall not exceed seven years from the date of termination unless otherwise mandated.
Web analytics, cookie identifiers, and tracking data used for performance monitoring or marketing attribution are stored for a period proportionate to the purpose of the collection and the user's preferences. Where users have withdrawn consent or opted out of tracking, the associated data is deleted or rendered inactive in accordance with the consent platform configuration and data mapping logs. Marketing-related data, including subscription status, campaign interactions, and related metadata, is generally retained for no longer than twenty-four months following the last active interaction, subject to anonymization or suppression if earlier revocation of consent occurs.
CRM records, support logs, and internal notes related to client communications are retained in accordance with the company’s record retention protocols, which reflect both business interest and legal compliance. Such data may be retained for an extended period where it forms part of the company’s service history, is relevant to the defense of legal claims, or is otherwise necessary to demonstrate compliance with contractual or statutory duties. The company periodically reviews such records for relevance, and stale or redundant information is scheduled for archival, anonymization, or secure deletion based on established risk criteria.
Onixae LLC implements a data minimization framework to ensure that personal data is not retained indefinitely without purpose. Automated and manual controls are in place to trigger review and lifecycle actions based on event dates, inactivity thresholds, or the satisfaction of the original lawful basis for processing. Where technical or legal limitations prevent immediate deletion, data is placed into restricted-access storage and excluded from operational use. Data designated for destruction is permanently deleted using secure industry-standard procedures designed to prevent unauthorized recovery or reuse.
The company’s data retention policy is reviewed on a periodic basis by internal compliance personnel to ensure continuing adherence to applicable regulations, evolving business needs, and contractual obligations. Where a data subject exercises a valid right to deletion under applicable law, Onixae LLC will evaluate the request against its legal obligations and execute appropriate measures without undue delay. Requests related to data retention practices may be submitted in writing to the designated privacy contact at joseph@onixae.com
.
11. International Data Transfers
Onixae LLC is headquartered and registered in the United States, with all core data processing and storage activities occurring on servers located within the territorial jurisdiction of the United States. As a Delaware limited liability company, the organization operates under the authority of U.S. federal and state privacy and data security regulations. All data systems, cloud infrastructure, and hosting environments used in connection with service delivery, customer engagement, and internal operations are provisioned through providers with facilities physically located within the United States, unless otherwise disclosed by contractual agreement. The company exercises full control over its data environments and implements strict technical and administrative safeguards to ensure compliance with applicable legal standards.
While the company’s data infrastructure resides in the United States, Onixae LLC serves clients and processes data originating from multiple jurisdictions, including but not limited to the European Economic Area, the United Kingdom, Canada, and other non-U.S. regions with distinct data protection regimes. Personal data collected from international users, including business representatives, clients, and partners, may be transferred to and stored in U.S.-based systems. Such transfers may also occur when users interact with the company’s websites, digital services, or integrated platforms while located outside of the United States. These data flows are essential for delivering requested services, executing business transactions, and maintaining customer relationships on a global scale.
For data subjects located in jurisdictions that impose restrictions on the international transfer of personal data—such as under the General Data Protection Regulation or the United Kingdom Data Protection Act—Onixae LLC ensures that all transfers are carried out using appropriate legal mechanisms. These may include the execution of Standard Contractual Clauses adopted by the European Commission, reliance on adequacy decisions where applicable, or the use of legally recognized alternative safeguards. Each transfer is subject to transfer impact assessments and documented controls designed to protect the rights and interests of data subjects and to ensure that transferred data is afforded a level of protection essentially equivalent to that required under the originating jurisdiction.
The company does not engage in the unrestricted export or dissemination of personal data to third countries or foreign recipients without a lawful basis. Data shared with service providers or partners operating outside the United States is subject to contractual safeguards, including data processing agreements and cross-border transfer provisions that incorporate security, access limitation, and data usage restrictions. Such disclosures are limited to what is necessary for the performance of specific services or contractual arrangements and are regularly reviewed for continuing compliance. All recipients are required to process the data exclusively for the intended purpose and in accordance with applicable law and Onixae LLC’s written instructions.
International data transfers are monitored by designated compliance personnel who oversee vendor agreements, security certifications, and audit controls. Onixae LLC regularly assesses the legal and regulatory developments in its client jurisdictions to ensure that its international data transfer mechanisms remain valid, enforceable, and aligned with global best practices. The company’s legal team consults external counsel and international advisors as necessary to interpret changes in law or regulatory enforcement actions that may affect ongoing transfers.
Data subjects located outside the United States are encouraged to contact the company with questions regarding cross-border data flows, transfer safeguards, or the application of foreign privacy rights. Inquiries may be directed to joseph@onixae.com
or submitted via the data request portal available on the company’s website. Onixae LLC will respond in a timely and legally compliant manner, consistent with the timeframes prescribed by applicable international and domestic privacy laws.
12. Data Security Practices
Onixae LLC employs a comprehensive and layered data security framework designed to protect personal information from unauthorized access, disclosure, alteration, or destruction. The company adheres to industry-recognized security principles and implements both technical and organizational measures appropriate to the nature, scope, and sensitivity of the personal data it processes. These safeguards include but are not limited to role-based access controls, multi-factor authentication, endpoint monitoring, network firewalls, intrusion detection systems, and the use of encryption for data in transit and at rest. All access to personal data is limited to personnel with a legitimate business need and is governed by internal authorization protocols and audit logging.
Data stored within Onixae LLC’s infrastructure or through its authorized service providers is protected using advanced cryptographic techniques. Transport Layer Security (TLS) protocols are used for all transmissions involving user data, including website communications, contact forms, and client login sessions. Storage encryption is enabled by default on all platforms used for hosting, storage, and data archiving, ensuring that data remains unintelligible in the event of physical or logical compromise. The company maintains strict access control lists, regularly reviews user privileges, and conducts periodic vulnerability assessments to test the resilience of its security architecture.
To support the secure delivery of services, Onixae LLC relies on a vetted set of third-party platforms, each selected based on their ability to meet stringent privacy and security requirements. These include Zoho Corporation for productivity, email, and client engagement management; Stripe Inc. for secure billing and payment processing; Apollo.io for customer relationship management and sales tracking; and Webflow Inc. for website design and content management. Each of these service providers maintains its own industry-standard security certifications, such as SOC 2 Type II, ISO 27001, or PCI DSS, and is contractually obligated to protect any personal data processed on behalf of Onixae LLC in accordance with binding data processing agreements.
All service providers and subcontractors engaged by the company undergo a due diligence process prior to onboarding, which includes security reviews, privacy compliance assessments, and contractual requirements governing confidentiality and breach notification. The company retains control over the configuration and operation of its integrations and ensures that no unauthorized data flows occur between systems. Data exchanged between Onixae LLC and its processors is encrypted using secure channels, and each provider’s security posture is reassessed on a recurring basis to verify continuing compliance with applicable standards and contractual commitments.
Onixae LLC has implemented formal incident response procedures to manage suspected data breaches or security threats. This includes rapid identification, investigation, containment, notification (where required by law), and remediation protocols. In the event of an actual or suspected breach involving personal information, affected individuals and authorities will be notified in accordance with applicable data breach notification laws, including those of the State of Delaware and any relevant foreign jurisdictions. All incidents are documented, and root cause analysis is conducted to ensure the implementation of corrective measures and to prevent recurrence.
Security measures are reviewed and updated regularly by the company’s internal compliance and technology teams, in consultation with external experts as necessary. The company maintains a commitment to continuous improvement in its security posture and to staying informed of evolving threat landscapes and regulatory expectations. Users with concerns about data protection practices or potential vulnerabilities are encouraged to report such matters to joseph@onixae.com for confidential review.
13. Children’s Data
Onixae LLC does not offer services or digital content that are intended for or directed toward individuals under the age of thirteen, and does not knowingly collect, process, or store personal data from children as defined by the Children’s Online Privacy Protection Act of the United States or similar legislation in other jurisdictions. The company’s websites, platforms, and service offerings are designed exclusively for use by individuals acting in a business or professional capacity, and all data collection mechanisms are oriented toward adult users, including corporate representatives, contractors, vendors, and enterprise clients.
As a business-to-business service provider, Onixae LLC has no commercial rationale or operational need to engage with children or to target minors in any form. User interfaces, marketing materials, and service descriptions do not contain language, graphics, or interactive features that would reasonably attract a child’s interest. Contact forms, registration portals, and other data submission mechanisms are intended solely for use by individuals who are of legal age to enter into binding agreements in their respective jurisdictions. Any individual who submits personal data through the company’s systems is affirmatively representing that they are at least eighteen years of age or the age of majority where applicable.
In the event that the company becomes aware that it has inadvertently collected personal data from a child without lawful authorization or parental consent, immediate steps will be taken to delete the data from all active systems and backups. This includes disabling user accounts, removing records from databases, and revoking access tokens associated with the data subject. Onixae LLC will also take steps to identify the scope of the incident, determine how the data was submitted, and implement procedural safeguards to prevent similar occurrences in the future.
Parents or legal guardians who have reason to believe that their child has submitted personal data to Onixae LLC without appropriate consent are encouraged to contact the company directly at joseph@onixae.com. The company will respond promptly and take all necessary action to ensure that the child’s data is permanently deleted, and that no further processing or retention occurs. All such requests will be handled in accordance with applicable data protection laws and without requiring the submission of additional personal information, except to the extent necessary to verify the identity and authority of the requesting party.
While the company does not knowingly engage with minors, Onixae LLC monitors regulatory developments related to youth privacy and digital engagement to ensure that its practices remain aligned with legal requirements and public expectations. Should future business models evolve to involve educational or youth-oriented services, the company will implement appropriate consent protocols, parental verification mechanisms, and data minimization techniques in full compliance with the Children’s Online Privacy Protection Act, the Delaware Online Privacy and Protection Act, and relevant international frameworks.
Users who encounter or suspect child-directed content or user activity on any Onixae LLC platform are urged to report such incidents without delay. The company takes child safety and digital integrity seriously and maintains zero tolerance for any data collection that contravenes age-based privacy laws. All reports will be escalated to the appropriate internal authority and investigated in accordance with the company’s risk management procedures.
14. Your Privacy Choices
You retain meaningful control over how your personal information is used, shared, and retained by Onixae LLC. Where applicable, you may accept or reject non‑essential cookies via the cookie consent platform integrated into our website, powered by the Webflow Cookie Consent app (for example, FlowAppz or equivalent implementations). That tool allows you to tailor preferences for categories such as analytics, advertising, and performance tracking. You can alter your consent settings at any time via the cookie preferences link accessible in the website footer or via the privacy settings interface. In jurisdictions where legal frameworks require opt‑in consent, Onixae LLC will not deploy non‑essential cookies until consent has been affirmatively granted.
If you later decide to withdraw consent, disable specific cookie categories, or delete existing cookies, you may do so through your browser settings or via the consent management interface on our website. Note that disabling or rejecting certain cookies may affect the functionality or user experience of our services, such as personalized content, performance optimizations, or analytics features. In such cases, we may still use strictly necessary cookies without your consent to maintain basic systems, security, session integrity, and service delivery.
For marketing communications, Onixae LLC uses platforms such as Apollo.io, Instantly, or similar tools to send newsletters, service notifications, or promotional content to business contacts. You may opt out of marketing emails at any time by using the “unsubscribe” link included in each message, or by contacting the company’s privacy contact. After opting out, Onixae LLC will cease sending non‑transactional marketing communications to your email address, though you may still receive communications related to services you have explicitly requested or contractual obligations.
You also have the right to object to or limit processing operations that are based on legitimate interests—such as profiling, targeted advertising, or business analytics. If you believe that a particular processing activity disproportionately affects your rights or freedoms, you may submit a request to restrict or stop such processing. The company will review your objection, assess the balance between business interests and your rights, and respond in compliance with applicable law. Where required, Onixae LLC may suspend certain processing activities pending resolution of your objection.
Should you prefer that Onixae LLC not disclose your personal data to third parties for marketing or advertising purposes, you may exercise your right to opt out of such disclosures. This includes “sale” or “sharing” under privacy statutes in relevant jurisdictions; if you reside in a region granting such rights, you may access a “Do Not Sell or Share My Information” control or equivalent opt‑out mechanism via our privacy settings interface. In every case, requests to limit sharing will be honored unless prohibited by contractual or legal constraints.
If you wish to exercise any of your privacy rights—such as access, correction, deletion, portability, or objection—you may submit a request to joseph@onixae.com
or via the data subject request portal found on our website. We endeavor to respond within the legal timeframes applicable in your jurisdiction and may require you to verify your identity before fulfilling certain requests to protect your rights and security.
15. Third-Party Websites
Onixae LLC may provide hyperlinks, embedded content, plug-ins, or other forms of connectivity to third-party websites, platforms, or services for the convenience of users and clients. These third-party environments are not owned, controlled, or operated by Onixae LLC, and any interaction with such external resources is subject to their respective terms of service, privacy policies, and legal disclosures. Users who choose to follow such links or engage with third-party integrations do so at their own discretion and assume any associated risk. The inclusion of a link or integration does not constitute an endorsement, sponsorship, or affiliation unless expressly stated.
The company disclaims all responsibility and liability for the privacy practices, data processing activities, and content accuracy of third-party sites. Onixae LLC does not monitor, review, or control the security measures or data collection practices of external entities, and cannot guarantee that third-party platforms will adhere to the same standards of privacy, compliance, or data protection. Any data you provide directly to third-party operators is governed exclusively by those parties and not subject to the controls or obligations imposed on Onixae LLC under this Privacy Policy.
Where Onixae LLC embeds third-party tools—such as video players, payment gateways, appointment schedulers, or analytics widgets—these may independently collect user data through cookies or similar technologies. This includes platforms such as YouTube, Stripe, Calendly, Google, or Webflow-integrated applications. While the company endeavors to inform users of the presence of such tools, it cannot guarantee or control how those third parties process information once collected. Users should consult the privacy notices of each relevant provider before submitting data or interacting with embedded features.
Business clients and users should also be aware that certain services—such as email campaigns, webinar tools, or customer service portals—may operate partially on third-party infrastructure. For example, email communications may be managed through Apollo.io, Instantly, or comparable platforms that apply their own tracking mechanisms. While Onixae LLC uses contractual agreements to ensure that third-party processors act only under its instructions and subject to confidentiality and security obligations, the company does not accept liability for any independent processing performed outside its contractual scope.
To protect their privacy, users are encouraged to exit third-party websites after completing a transaction or viewing content, especially when using shared devices or unsecured networks. Users should also review the third-party platform's privacy policies to understand how their personal information will be handled and whether it may be shared, sold, or transferred to other entities. Onixae LLC makes no representations or warranties regarding the data security practices, legal compliance, or business conduct of third-party site operators.
Users with concerns about a specific third-party integration, platform, or hyperlink presented on Onixae LLC’s digital properties may contact the company at joseph@onixae.com
to report potential misuse, broken links, or privacy risks. The company will assess the concern and, if appropriate, remove the link or take corrective action in accordance with internal governance policies.
16. Changes to This Policy
Onixae LLC reserves the right to amend, revise, or update this Privacy Policy at its sole discretion in order to reflect changes in legal requirements, business practices, technological developments, or regulatory interpretations. Any such modifications will be conducted in accordance with applicable data protection laws and will take effect once published on the company’s official website or distributed through other designated communication channels. Continued use of Onixae LLC’s services or digital platforms following the effective date of an updated policy shall be deemed acceptance of the revised terms.
Substantive changes to the policy—such as alterations to the categories of personal data collected, purposes of processing, user rights, or international data transfer mechanisms—will be clearly indicated within the document and, where required by law, accompanied by appropriate notice mechanisms. These may include email notifications, platform banners, or request-for-consent prompts where specific jurisdictions mandate affirmative acceptance of new terms. The company does not engage in retroactive application of policy changes to personal data previously collected without obtaining new consent or providing updated notice, except where permitted by law or necessary for compliance.
All modifications to this policy are documented with version control indicators, including effective dates and, where applicable, a summary of key revisions. Users are encouraged to consult the Privacy Policy regularly to remain informed of their rights, obligations, and the company’s evolving data governance practices. Archived versions of the policy may be requested by contacting the privacy contact, and Onixae LLC will provide a reasonable level of historical transparency consistent with legal retention requirements and internal documentation protocols.
Where updates involve changes to third-party service providers, security measures, or global compliance mechanisms, Onixae LLC will take additional steps to assess and mitigate any potential impact on data subjects. This may include performing updated risk assessments, modifying data processing agreements, or altering internal workflows to ensure continuity of compliance. The company is committed to implementing updates in a manner that maintains or enhances the level of data protection afforded to its users and clients.
For jurisdictions requiring data subject acknowledgment or the opportunity to object prior to implementation of a material change, Onixae LLC will comply with the required formalities, including withdrawal rights or affirmative re-consent where applicable. The company respects the regulatory distinctions between informational notice, legitimate interest balancing, and express consent and applies appropriate standards based on the legal context and geographic scope of the change.
Questions or concerns regarding policy updates may be submitted to joseph@onixae.com
. The company will respond promptly to requests for clarification and provide assistance in interpreting how changes may affect specific user relationships, contractual obligations, or service configurations.
17. Contact Information and Complaints
Individuals with questions, concerns, or requests regarding this Privacy Policy or Onixae LLC’s handling of personal data are encouraged to contact the company using the details provided below. Onixae LLC maintains a centralized privacy contact point for all data protection matters, including data subject rights requests, reporting of suspected misuse, inquiries related to cross-border data transfers, or clarification of any provisions contained in this policy. Communications should be directed to the designated privacy contact or to the general compliance team depending on the nature of the inquiry.
Privacy Contact Email: joseph@onixae.com
General Inquiries: hello@onixae.com
Business Address:
Onixae LLC,
2803 Philadelphia Pike B #4165,
Washington, DC 20012, United States
Telephone: +1 7452953374
Onixae LLC aims to respond to all inquiries within a reasonable period, and in any event, within the timeframes prescribed by applicable data protection legislation. Where a user submits a formal data subject request under GDPR, CCPA, or equivalent law, the company may require verification of identity before responding. If a request is complex or involves multiple systems or data sources, the company will communicate anticipated response timelines and provide interim updates as necessary. Users are advised to provide sufficient detail in their correspondence to facilitate prompt and accurate handling.
Individuals who believe that their data protection rights have been violated, or that Onixae LLC has failed to act in accordance with applicable law, may file a formal complaint with a competent supervisory authority or regulatory body. Residents of the European Union may contact the data protection authority in their country of residence or the Irish Data Protection Commission for issues involving international data transfers. Residents of California may submit complaints to the California Privacy Protection Agency, and Delaware residents may address concerns to the Delaware Department of Justice, Consumer Protection Unit.
Prior to escalating matters to a regulatory authority, individuals are strongly encouraged to contact Onixae LLC directly to allow the company an opportunity to resolve the issue. The company maintains internal complaint handling protocols, escalation procedures, and remediation workflows designed to ensure that all concerns are reviewed by qualified personnel and resolved in a lawful, fair, and timely manner. All complaints are treated confidentially and, where required, documented for audit and compliance tracking purposes.
For clients with contractual service relationships, concerns regarding data processing may also be addressed through designated account managers or customer success contacts, as stated in the relevant agreement. Where a complaint implicates a third-party service provider or subprocessor, Onixae LLC will coordinate with that entity as necessary to ensure full resolution consistent with applicable law and contractual obligations.