Scope
This Privacy Policy explains how Tony St. Pierre ("Tony," "I," "me," or "my") handles personal information in connection with tonystpierre.com, including the Production Handoff Review page (together, the "Site"). The Site is operated from Maine, USA.
This policy covers visits to the Site and information you choose to send in an inquiry. Client repositories, systems, credentials, review materials, and deliverables are governed by a separate signed engagement agreement and any applicable confidentiality or data-processing terms. If those terms conflict with this policy as to engagement materials, the signed agreement controls.
Information handled
The Site has no contact form, account, checkout, or upload feature. Selecting an email link opens your configured email application. I directly receive the contents of an inquiry only if you choose to send the message. Separately, infrastructure providers—not Site application code—may process technical request information to deliver and protect the Site.
- Inquiry information, such as your name, email address, organization, role, and the contents of your message.
- Materials you voluntarily attach or include, together with ordinary email metadata.
- Technical request information that hosting, content-delivery, and network-security providers may process, such as an IP address, browser or device details, requested URL, referrer when supplied, date and time, response status, and security diagnostics.
- Campaign or referral context carried in a requested URL or referrer, including UTM parameters. The Site does not interpret those parameters with application code, although infrastructure providers may process the requested URL.
Do not send source code, passwords, API keys, production credentials, regulated data, financial or health information, customer data, or other sensitive system material in an initial email. If an engagement moves forward, secure channels, access controls, and handling requirements should be established in the signed agreement.
A Production Handoff Review is designed not to require production customer or end-user data. Review materials are limited to agreed client materials such as source code, configuration, dependency metadata, documentation, and redacted evidence. If unexpected customer data or secrets appear, I stop handling the affected material, notify the authorized client contact, and follow the agreed secure disposition.
Cookies and tracking
The Site’s own code does not set or read cookies, use local or session storage, run analytics, load advertising pixels, perform browser fingerprinting, or conduct cross-site behavioral tracking. It contains no client-side executable JavaScript and loads its fonts and visual assets from the same origin.
Hosting, content-delivery, email, browser, and network providers operate under their own policies and may process information needed to deliver, protect, or troubleshoot their services. Their practices can change independently of this Site.
How information is used
- Deliver, maintain, troubleshoot, and protect the Site.
- Respond to an inquiry, assess whether a proposed review is a fit, and discuss possible scope and terms.
- Communicate about a requested engagement or related business matter.
- Maintain records reasonably necessary for business administration, legal obligations, dispute resolution, and enforcement of agreements.
- Detect, investigate, or prevent misuse, fraud, security incidents, or unlawful activity.
Information from an inquiry is not used to build advertising profiles or to make decisions through automated profiling.
When information is disclosed
Information may be disclosed only as reasonably necessary in the following circumstances:
- To hosting, content-delivery, email, security, storage, and other technology providers that support the Site or communications.
- To accountants, attorneys, insurers, or other professional advisers when their services require it.
- To comply with law, legal process, or a valid government request; to protect rights, safety, and property; or to investigate misuse.
- In connection with a reorganization, transfer, or succession of the professional practice, subject to appropriate protections.
I do not sell or rent personal information. I do not disclose it for cross-context behavioral advertising, targeted advertising, or third-party profiling.
Retention
Inquiry information is retained only for as long as reasonably necessary to respond, evaluate or administer a potential engagement, maintain appropriate business and legal records, resolve disputes, and comply with applicable obligations. Information that is no longer needed may be deleted or de-identified.
Infrastructure and communications providers retain information according to their own settings and policies. If you become a client, the signed engagement agreement governs engagement materials. Temporary working copies of client-provided materials are deleted after final delivery through the documented closeout procedure. Signed agreements, invoices, ordinary correspondence, the delivered final work product, and a minimal closeout record may be retained only as permitted by the agreement and applicable business or legal obligations. Approved providers may retain backups according to their documented retention cycles.
Security
The Site uses technical safeguards appropriate to the limited information it handles. The public Site is statically generated, uses restrictive browser security policies, and does not accept form submissions or execute application scripts in the browser.
No transmission or storage method is completely secure. Ordinary email should not be treated as a secure channel for credentials, source code, production data, or other sensitive information.
Before review access, a written handling plan identifies the tools, services, systems, and delivery channels approved for client materials. Access is individually assigned, least-privilege, read-only, and time-bound where the client platform supports expiration. I make no production changes, remove credentials and access under my control when the review is complete, and ask the client to revoke or confirm expiration of client-controlled access.
Your choices and rights
Depending on where you live, you may have rights to request access to, correction of, or deletion of personal information, or to ask how it has been used or disclosed. I may need to verify your identity before acting on a request and may retain information where permitted or required by law.
To make a privacy request, email contact@tonystpierre.com.
Third-party services
The Site links to LinkedIn and Credly and can open your chosen email application. Those services and their providers apply their own privacy policies after you leave the Site or choose to send a message.
A newsletter publisher, sponsorship platform, or referral source may process click or campaign information under its own policy before you arrive. The Site has no integration that requests account data from those services; hosting infrastructure may receive information carried in the requested URL or standard request headers.
Children and international visitors
The Site is intended for a professional audience and is not directed to children under 13. I do not knowingly collect personal information from children through the Site. If you believe a child has sent personal information, contact me so it can be addressed.
The Site is operated from the United States. If you access it from another country, information you choose to send may be processed in the United States, where privacy laws may differ from those in your location.
Changes and contact
This policy may be updated when the Site, its providers, or applicable requirements change. The effective date at the top of the page will be revised when an update is published.
Questions about this policy may be sent to contact@tonystpierre.com.