Draft privacy policy for the StateFormed platform.
This draft describes how StateFormed may collect, use, protect, retain, and disclose information. It must be reviewed by Illinois counsel and a security/privacy professional before live sensitive intake begins.
Information may include contact details, business information, payment transaction references, account credentials, filing data, authorization records, and—only through the secure portal when required—sensitive identifiers.
SSNs, ITINs, government IDs, and signed authorizations should not be collected through public contact forms, ordinary email, SMS, or social-media lead forms.
Information may be used to provide services, process payments, prepare authorized filings, communicate status, maintain compliance records, prevent fraud, and satisfy legal obligations.
StateFormed may use payment processors, hosting providers, secure storage vendors, e-signature providers, email providers, registered-agent partners, and professional advisers subject to appropriate agreements.
StateFormed should maintain a written retention schedule that minimizes sensitive-data storage and specifies redaction or destruction when information is no longer required.
Reasonable administrative, technical, and physical safeguards are planned, but no system can guarantee absolute security.
Privacy questions may be sent to support@stateformed.com after the final support mailbox is activated.