Last updated: January 9, 2026
Privacy Policy
Offshore Proz values your privacy and is committed to protecting your personal data in compliance with GDPR (Europe), CCPA (California), LGPD (Brazil), and other applicable international regulations.
1. Data We Collect
- Identification Data: Full name, email, phone number, address, and identity documents when required for due diligence.
- Browsing Data: IP address, browser type, pages visited, time spent, and technical cookies.
- Communication Data: Messages sent via contact form, WhatsApp, email, or phone calls.
- Financial Data: Asset information voluntarily provided for offshore structuring analysis (never shared without express consent).
2. Purpose of Processing
- Service Delivery: Feasibility analysis, offshore company formation, due diligence, and client support.
- Communication: Responding to inquiries, sending proposals, and case updates.
- Legal Obligations: Compliance with regulatory requirements (KYC/AML, CRS, FATCA) as applicable.
- Service Improvement: Website usage analysis for experience optimization (aggregated and anonymized data).
3. Legal Basis
- Consent: For marketing communications and optional analyses.
- Contract Performance: For providing contracted offshore consulting services.
- Legal Obligation: For KYC/AML compliance and regulatory reporting.
- Legitimate Interest: For fraud prevention and continuous service improvement.
4. Data Security
- We use TLS/SSL encryption for all data transmissions.
- Storage on servers with ISO 27001 and SOC 2 Type II certification.
- Access restricted by two-factor authentication (2FA) and strong password policies.
- Redundant backups across multiple geographic zones with AES-256 encryption.
- Periodic security audits and penetration testing.
5. Data Sharing
- Service Providers: Compliance, accounting, and banking partners under confidentiality agreements.
- Regulatory Authorities: When required by law (CRS, FATCA, court orders).
- Offshore Jurisdictions: Only data necessary for company formation, with prior consent.
- We never sell or commercialize personal data to third parties.
6. Your Rights (GDPR/CCPA)
- Access: Request a copy of all personal data we hold about you.
- Rectification: Correct incomplete or inaccurate data.
- Erasure: Request deletion of data when there is no legal retention obligation.
- Portability: Receive your data in a structured, interoperable format.
- Withdrawal: Withdraw consent at any time without affecting the legality of prior processing.
- Objection: Contest processing based on legitimate interest.
7. Data Retention
- Client Data: Retained for 10 years after termination of business relationship (KYC/AML obligation).
- Browsing Data: Deleted after 24 months of inactivity.
- Leads and Contacts: Retained for 36 months or until deletion request.
- Contractual Data: According to applicable legal limitation periods (generally 5-10 years).
Frequently Asked Questions
Is my data shared with tax authorities?
Only when required by law (CRS/FATCA). Every structure is designed for full compliance — we do not offer tax evasion schemes.
Can I request deletion of all my data?
Yes, except data we must retain by legal obligation (KYC/AML). Send your request to privacy@offshoreproz.com.
How do I exercise my data subject rights?
Send an email to privacy@offshoreproz.com with subject "Data Subject Rights" and describe your request. We will respond within 15 business days.
Privacy Contact
To exercise your rights or clarify questions about this policy:
privacy@offshoreproz.com