Privacy Policy
Last Updated: October 22, 2025
Note: No data from third parties; no automated decision-making or profiling.
Transfers outside Israel (e.g., to LATAM/Eastern Europe) use Standard Contractual Clauses (SCC) or Data Privacy Framework (DPF) for adequacy.
No system is impenetrable; transmission is at your risk. You’re responsible for confidentiality.
1. Introduction
JSO Global Growth LTD (“we,” “us,” or “our”), located at Hayarkon 285, Tel Aviv, Israel (Registration: 517191664), operates the Vetted Outsource website (https://vettedoutsource.com/, the “Platform”). This Privacy Policy describes how we collect, use, share, and protect your information when you use our Platform, which provides a free matchmaking service to connect businesses with vetted offshore software development companies. This Policy applies to information collected:- On the Platform.
- In email or other electronic messages between you and the Platform.
- Through any dedicated applications or interactions linked to the Platform.
2. Data Controller
| Data Controller | Address | Registration |
| JSO Global Growth LTD | Hayarkon 285, Tel Aviv, Israel | 517191664 |
3. Data Processing Activities
We collect data directly from users. Below is an overview of processing activities:| Processing Activity | Purpose | Category of Personal Data | Lawful Basis (GDPR/CCPA) | Retention Period | Recipient |
| Questionnaire Submission | Matchmaking and connection with development companies | Business-related: Company name, email, phone, project details (e.g., tech stack, timeline) | GDPR: Contract; CCPA: Business purpose | As needed for matchmaking + 1 year for analytics | Matched development companies |
| Website Analytics | Improve Platform, personalize services, estimate usage | UTM parameters, traffic/location data, logs, resources accessed; device info (OS, browser); behavioral tracking | GDPR: Consent; CCPA: Business purpose/opt-in | As needed for analytics (up to 12 months via Cookiebot) | Cookiebot/third-party analytics providers |
| Contact/Inquiries | Respond to user questions | Email, project details | GDPR: Consent; CCPA: Business purpose | Until resolved | Internal teams |
| HTTP Requests/Logs | Security, monitor access | Logs (no IP sharing), timestamps, user agents | GDPR: Legal obligation; CCPA: Security | 1 year after last use | Network administrators |
4. Information We Collect
4.1 Information You Provide- Business-related data via questionnaire: Company name, email, phone number, project details.
- Visit details (traffic, location, logs, resources).
- Device info (OS, browser type).
- Behavioral tracking across sites/services (may include personal info).
5. How We Use Your Information
- For matchmaking and Platform improvement.
- Analytics and personalization.
- Legal compliance and communication.
- With consent for other purposes.
6. How We Share Your Information
- With matched development companies (business data, UTM; no IPs).
- Service providers (e.g., Cookiebot) bound by contracts.
- For legal purposes or business transfers (with protections).
6.1 Third-Party Data Recipients & Transfers
| Provider | Headquarters | Compliance |
| Cookiebot | Denmark (EU) | GDPR Compliant |
| Hosting/Analytics Providers | Varies (EU/US) | GDPR Compliant; DPF/SCC for transfers |
7. Cookies and Tracking Technologies
We use Cookiebot for essential (e.g., functionality) and non-essential (e.g., analytics, behavioral) cookies. A consent banner lets you opt-in/out; non-essential are blocked until consent. Manage via banner/browser. Details in Cookiebot banner; consent stored up to 12 months. Third parties (e.g., analytics) may use cookies for targeted content; opt-out via Cookiebot or NAI (https://www.networkadvertising.org/choices/).8. Data Storage and Security
Data is stored securely with industry-standard measures:| Security Measure | Description |
| Encryption | TLS 1.3/1.2 for data in transit; encryption at rest |
| Access Controls | No IP sharing; session-based logs |
| DDoS Protection | Via hosting provider |
| Password Policy | Strong requirements for any accounts |
| Hosting Standards | ISO 27001-compliant providers |
9. Your Data Rights
You have these rights (GDPR/CCPA/other state laws): ✔ Right to Access ✔ Right to Rectification/Correction ✔ Right to Erasure/Deletion ✔ Right to Restrict Processing ✔ Right to Data Portability ✔ Right to Object ✔ Right to Withdraw Consent ✔ Right to Know (disclosures) ✔ Right to Opt-Out of Sale/Sharing ✔ Right to Limit Sensitive Data Use ✔ Right to Non-Discrimination No profiling/decisions with legal effects. Email contact@vettedoutsource.com (verify identity); response within 30-45 days. California “Shine the Light” disclosures: Email for third-party marketing info.9.1 Do Not Sell or Share My Personal Information
We do not sell/share data. Opt-out via Cookiebot banner.9.2 Right to Lodge a Complaint
- GDPR: EEA DPA (https://www.edpb.europa.eu/about-edpb/about-edpb/members_en).
- CCPA: California Privacy Protection Agency (https://cppa.ca.gov/).
10. Mandatory Data and Consequences of Non-Provision
| Data Required | Consequences |
| Business Details (Email/Phone/Project) | No matchmaking possible |
| Analytics Consent | Limited personalization/analytics |
| Logs (No IP) | Restricted access if security issue |