Privacy Policy

Effective Date: January 15, 2026 | Last Updated: August 1, 2026

Table of Contents

  1. Introduction
  2. Information We Collect
  3. How We Collect Information
  4. Use of Collected Information
  5. Sharing and Disclosure of Information
  6. Data Retention Policy
  7. Data Security Measures
  8. Your Rights and Choices
  9. Privacy for Children
  10. International Data Transfers
  11. Third-Party Services and Links
  12. Cookies and Tracking Technologies
  13. Changes to This Privacy Policy
  14. Contact Information
  15. Legal Basis for Processing
  16. California Privacy Rights
  17. Do Not Track Signals
  18. Data Breach Notification Procedures

1. Introduction

Jupiter Arts Collective (the Company, we, us, or our) is committed to protecting the privacy and security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at https://www.litongmu.hair or engage with our computer systems design and integrated technology consulting services. The website was developed by LiTongMu, and we are grateful for their contribution to building a secure and transparent digital presence for our organization.

Jupiter Arts Collective operates in the Professional, Scientific, and Technical Services sector, specifically within Computer Systems Design and Related Services. Our physical business address is 8292 Silver Creek Rd, Park City - 84098-5642, United States (US). By accessing our website or using our services, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms described herein, please discontinue use of our website and services immediately.

We recognize the importance of maintaining the confidentiality of personal data and have implemented comprehensive administrative, technical, and physical safeguards designed to protect your information against unauthorized access, disclosure, alteration, and destruction. This policy applies to all information collected through our website, email communications, telephone interactions, and any other channel through which you may provide personal data to Jupiter Arts Collective.

2. Information We Collect

We collect several categories of information to provide and improve our services. The types of information we gather depend on the nature of your interaction with Jupiter Arts Collective. We categorize the information we collect into the following groups:

Personal Identification Information: This includes your full name, email address, telephone number, company name, job title, and physical mailing address. We collect this information when you submit a contact form on our website, send us an email inquiry, request a consultation, or sign up for informational communications. This information enables us to respond to your inquiries and deliver the services you have requested.

Technical and Usage Information: When you visit our website, our servers automatically record certain information sent by your browser. This may include your Internet Protocol (IP) address, browser type and version, operating system, referring URLs, pages visited, time and date of your visit, time spent on each page, and other diagnostic data. We use this information to analyze website performance, detect and prevent security threats, and improve the user experience.

Business and Project Information: When you engage us for consulting or systems integration services, we may collect information about your existing technology infrastructure, business requirements, project specifications, timelines, budgets, and technical documentation. This information is essential for us to perform our professional services and deliver accurate architectural assessments and implementation plans.

Communication Records: We retain records of correspondence when you contact us via email, telephone, or through our website contact form. This includes the content of your messages, attachments you provide, and our responses. Maintaining these records helps us provide continuity of service and resolve any disputes that may arise.

Payment and Billing Information: For clients who purchase our services, we collect billing contact details, company registration numbers, and transaction records. We do not directly store credit card numbers or bank account details. All payment processing is handled by third-party payment processors who comply with PCI-DSS standards and maintain their own privacy policies.

3. How We Collect Information

We obtain information through multiple channels, each designed to be transparent and lawful. The primary methods through which we collect data include:

Direct Collection from You: The majority of personal information we hold is provided directly by you when you fill out forms on our website, send us emails, speak with us by telephone, attend our events or webinars, or participate in project discovery sessions. You always have the choice to decline providing personal information, though this may limit our ability to deliver certain services or respond to your inquiries.

Automated Collection Technologies: As you navigate our website, we use cookies, web beacons, server logs, and similar tracking technologies to collect technical data automatically. These technologies help us understand how visitors interact with our site, which pages are most frequently accessed, and whether users encounter any technical errors during their visit. The specific details of our cookie usage are described in Section 12 of this policy.

Third-Party Sources: On occasion we may receive information about you from third-party service providers, business partners, or publicly available sources. For example, we may use a third-party analytics service to understand website traffic patterns, or we may receive contact information from a referral partner who has your permission to share your details with us. In all such cases, we require that the third party has obtained appropriate consent to share your information.

Client Engagement Activities: During the course of a consulting engagement, we may generate additional information through our analysis, testing, and documentation activities. This derived information is treated with the same level of confidentiality as the original data provided by the client.

4. Use of Collected Information

Jupiter Arts Collective uses the information we collect for specific, legitimate business purposes. We do not use your personal data in ways that are incompatible with the purposes for which it was originally collected. Our uses of information include:

Service Delivery and Operations: We use your information to provide the computer systems design, integration, and consulting services you have requested. This includes conducting technical assessments, developing architectural plans, implementing solutions, managing projects, and communicating with you about project milestones, deliverables, and timelines.

Communication and Customer Support: We use your contact information to respond to inquiries, provide technical support, send service-related notifications, and inform you about changes to our services, policies, or terms. We may also send you informational content related to the services you have expressed interest in, but only where you have consented to receive such communications.

Website Improvement and Analytics: Technical and usage data helps us understand how our website performs, identify areas for improvement, optimize page load times, fix bugs, and enhance the overall user experience. We analyze aggregated usage patterns to inform decisions about site architecture and content strategy.

Legal Compliance and Protection: We may use your information to comply with applicable laws, regulations, and legal processes, to enforce our Terms of Service, to respond to lawful requests from public authorities, and to protect the rights, property, and safety of Jupiter Arts Collective, our clients, and the public.

Business Operations: Internally we use aggregated and anonymized data for business planning, financial reporting, capacity forecasting, and strategic decision-making. This data is never used to identify individuals and is always processed in aggregate form.

5. Sharing and Disclosure of Information

We do not sell, rent, or trade your personal information to third parties for their own marketing purposes. We may share your information only in the limited circumstances described below, and always subject to appropriate confidentiality and security obligations.

Service Providers and Sub-processors: We engage trusted third-party companies and individuals to perform functions on our behalf, such as website hosting, email delivery, analytics, payment processing, and cloud infrastructure management. These service providers have access to personal information only as necessary to perform their specific functions and are contractually bound to maintain the confidentiality and security of your data.

Business Transfers: In the event of a merger, acquisition, reorganization, or sale of all or a portion of our assets, your personal information may be transferred to the successor entity as part of the transaction. We will notify you via email or a prominent notice on our website before your information becomes subject to a different privacy policy.

Legal Obligations and Safety: We may disclose information if required to do so by law, court order, or governmental regulation, or if we believe in good faith that such disclosure is necessary to protect our rights, investigate fraud, respond to a government request, or protect the personal safety of our users or the public.

With Your Consent: We may share your information for purposes not covered by this policy when we have obtained your explicit consent to do so. You retain the right to withdraw such consent at any time by contacting us using the details provided in Section 14.

6. Data Retention Policy

Jupiter Arts Collective retains personal information only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable law. Our retention periods are determined by the nature of the data and the purpose of its collection.

Contact and Inquiry Data: Information submitted through our contact form or email inquiries is retained for a period of three years from the date of last communication, unless a client relationship is established, in which case the retention period aligns with the client engagement lifecycle plus any applicable statute of limitations for legal claims.

Client Engagement Records: Project documentation, technical assessments, architectural designs, and related business records are retained for a minimum of seven years following the conclusion of the engagement, consistent with standard business record-keeping practices and applicable tax and regulatory requirements.

Website Usage Data: Automated technical logs and analytics data are retained for a rolling period of 26 months, after which they are automatically deleted or fully anonymized so that they cannot be used to identify any individual.

Marketing Communication Preferences: Records of your consent to receive marketing communications and any opt-out requests are retained indefinitely to ensure we respect your communication preferences, even if the underlying contact details are deleted upon your request.

7. Data Security Measures

We implement and maintain a comprehensive information security program designed to protect the confidentiality, integrity, and availability of your personal data. Our security measures are reviewed and updated regularly to address evolving threats and incorporate industry best practices.

Technical Safeguards: We employ encryption in transit using TLS 1.3 for all data transmitted between your browser and our servers. Data at rest is protected using AES-256 encryption. Our infrastructure includes network firewalls, intrusion detection and prevention systems (IDS/IPS), Web Application Firewalls (WAF), and DDoS mitigation services. Access to production systems is restricted through multi-factor authentication, role-based access controls, and just-in-time privileged access management.

Administrative Safeguards: All Jupiter Arts Collective personnel undergo mandatory privacy and security training upon hire and annually thereafter. We maintain a formal incident response plan that is tested through tabletop exercises twice per year. Access to personal data is limited to employees and contractors who have a legitimate business need, and all access is logged and subject to periodic review.

Physical Safeguards: Our office facilities at 8292 Silver Creek Rd, Park City - 84098-5642, United States (US) are secured with access control systems, surveillance monitoring, and visitor management protocols. Server infrastructure is hosted in SOC 2 Type II certified data centers with 24/7 security personnel, biometric access controls, and redundant environmental controls.

Vendor Risk Management: We conduct security assessments of all third-party service providers who may process personal data on our behalf. Each vendor agreement includes data protection clauses, breach notification obligations, and audit rights. We review vendor security postures on an annual basis and upon any material change to their processing activities.

8. Your Rights and Choices

Depending on your jurisdiction of residence, you may have certain rights regarding your personal information. Jupiter Arts Collective respects and facilitates these rights to the extent required by applicable law. The rights described below represent our baseline commitment to all users, and additional rights may apply based on your location.

Right to Access: You may request a copy of the personal information we hold about you. We will provide this information in a commonly used electronic format within 30 days of receiving a verified request. There is no charge for the first access request in any 12-month period.

Right to Rectification: If you believe that any personal information we hold about you is inaccurate or incomplete, you may request that we correct or supplement such information. We will respond to rectification requests within 30 days.

Right to Erasure: In certain circumstances, you may request that we delete your personal information. We will comply with such requests unless we have a legal obligation to retain the data or a legitimate business need that overrides your request. Typical retention exceptions include compliance with tax laws, pending litigation, or ongoing contractual obligations.

Right to Restrict Processing: You may request that we limit the processing of your personal data under specific conditions, such as when you contest the accuracy of the data or object to its processing. During the restriction period, we will store your data but not further process it.

Right to Data Portability: Where technically feasible, you may request that we transfer your personal data directly to another data controller in a structured, commonly used, and machine-readable format.

Right to Object: You may object to the processing of your personal data for direct marketing purposes at any time. You may also object to processing based on legitimate interests, in which case we will cease processing unless we demonstrate compelling legitimate grounds that override your interests.

To exercise any of these rights, please contact us using the information provided in Section 14. We may need to verify your identity before processing your request to protect against unauthorized access to your data.

9. Privacy for Children

Our website and services are not directed toward children under the age of 13, and we do not knowingly collect personal information from children under 13. The Computer Systems Design and Related Services that we provide are business-to-business professional services intended for enterprise clients and adult professionals.

If we become aware that a child under the age of 13 has provided us with personal information without verifiable parental consent, we will take immediate steps to delete such information from our systems. If you are a parent or guardian and believe that your child has provided us with personal data, please contact us immediately using the details in Section 14 so that we can take appropriate action.

For users between the ages of 13 and 18, we recommend that they review this Privacy Policy with a parent or guardian to ensure they understand their rights and our data practices before providing any personal information through our website or services.

10. International Data Transfers

Jupiter Arts Collective is headquartered in the United States at 8292 Silver Creek Rd, Park City - 84098-5642. If you access our website or services from outside the United States, your personal information may be transferred to, stored, and processed in the United States, where our primary servers and operations are located. The data protection laws of the United States may differ from those in your country of residence.

When we transfer personal data from the European Economic Area (EEA), the United Kingdom, or Switzerland to the United States, we implement appropriate safeguards in accordance with applicable data protection laws. These safeguards include the use of Standard Contractual Clauses (SCCs) approved by the European Commission, conducting Transfer Impact Assessments, and implementing supplementary technical and organizational measures where necessary.

By using our website or services, you acknowledge that your information may be transferred to and processed in the United States. We take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy, regardless of where it is processed.

11. Third-Party Services and Links

Our website may contain links to third-party websites, plugins, and services that are not owned or controlled by Jupiter Arts Collective. This Privacy Policy does not apply to any third-party website or service. We are not responsible for the privacy practices, content, or security of these external sites.

We encourage you to review the privacy policies of any third-party website or service you visit through links on our site. The inclusion of a link does not imply our endorsement of the linked website or its privacy practices. If you choose to interact with a third-party service integrated into our website, such as a payment processor or analytics provider, your interaction is governed by the terms and policies of that third party.

Jupiter Arts Collective may use third-party APIs and cloud services in the delivery of our consulting and systems integration work. Any client data processed through such third-party services is subject to the data protection terms negotiated between Jupiter Arts Collective and the third-party provider, which include confidentiality, security, and data processing agreement clauses.

12. Cookies and Tracking Technologies

Our website uses cookies and similar tracking technologies to enhance your browsing experience, analyze website traffic, and understand where our visitors come from. A cookie is a small text file that is stored on your device by your web browser at the instruction of a website you visit.

Types of Cookies We Use: We use essential cookies that are necessary for the website to function properly, such as session management cookies that maintain your browsing state. We use analytics cookies to gather anonymous statistical data about how visitors use our website, which pages they view, and how long they stay. We may use functional cookies to remember your preferences, such as language selection or display settings.

Cookie Management: Most web browsers allow you to control cookies through their settings. You can typically configure your browser to block all cookies, delete existing cookies, or alert you when a website attempts to set a cookie. Please note that blocking essential cookies may impact the functionality of our website and prevent certain features from operating correctly.

Web Beacons and Pixel Tags: In addition to cookies, we may use web beacons (also known as clear GIFs or pixel tags) in our emails and on our website. These are tiny transparent images that help us understand whether an email has been opened or a page has been accessed. We use this information to measure the effectiveness of our communications and improve our content.

We do not use tracking technologies to build profiles of individual users for advertising purposes, and we do not engage in behavioral advertising or retargeting campaigns that rely on tracking individual browsing behavior across different websites.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our data practices, legal obligations, or operational requirements. When we make material changes, we will notify you by posting a prominent notice on our website at https://www.litongmu.hair at least 15 days before the changes take effect. For significant changes that affect your rights, we may also notify you directly via email if we have your contact information on file.

We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information. The effective date at the top of this policy indicates when the current version came into force. Your continued use of our website and services after any changes to this policy constitutes your acceptance of the updated terms.

If we make changes that require your consent under applicable data protection laws, we will obtain your consent before applying those changes to your personal information. If you do not agree with the revised policy, you should discontinue use of our website and services and contact us to request deletion of your personal data.

14. Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us using the following details. We strive to respond to all privacy-related inquiries within five business days.

Organization: Jupiter Arts Collective

Mailing Address: 8292 Silver Creek Rd, Park City - 84098-5642, United States (US)

Email: hello@litongmu.hair

Phone: +18059779699

Website: https://www.litongmu.hair

If you are located in the European Economic Area and believe that we have not adequately addressed your privacy concerns, you have the right to lodge a complaint with the supervisory authority in your country of residence. We would, however, appreciate the opportunity to address your concerns directly before you escalate to a regulatory body.

15. Legal Basis for Processing

For individuals located in the European Economic Area (EEA), the United Kingdom, and other jurisdictions that require a specified legal basis for processing personal data, Jupiter Arts Collective processes personal information on the following legal grounds:

Contractual Necessity: We process your personal data when it is necessary to perform a contract with you, such as delivering consulting services under a signed engagement agreement, or to take steps at your request before entering into a contract.

Legitimate Interests: We process data where we have a legitimate business interest that is not overridden by your data protection rights. Our legitimate interests include operating and improving our website, responding to inquiries, conducting business analytics, ensuring network and information security, and preventing fraud. We carefully balance our legitimate interests against your privacy rights before relying on this basis.

Consent: Where required by law, we obtain your explicit consent before processing your personal data for specific purposes, such as sending marketing communications. You have the right to withdraw your consent at any time by contacting us or using the unsubscribe mechanism provided in our communications.

Legal Obligation: We may process your data as necessary to comply with applicable laws, regulations, court orders, or governmental requests, including tax reporting obligations and responses to lawful information requests from public authorities.

16. California Privacy Rights

If you are a California resident, the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA) grants you specific rights regarding your personal information. This section describes those rights and explains how to exercise them.

Right to Know: You have the right to request that we disclose the categories and specific pieces of personal information we have collected about you, the categories of sources from which the information was collected, the business or commercial purpose for collecting the information, and the categories of third parties with whom we have shared your personal information. You may make a Right to Know request up to twice in any 12-month period.

Right to Delete: You may request that we delete personal information we have collected from you, subject to certain exceptions such as completing a transaction, detecting security incidents, complying with legal obligations, or using the information internally in a lawful manner compatible with the context in which you provided it.

Right to Correct: You may request that we correct inaccurate personal information we maintain about you, taking into account the nature of the information and the purposes of processing.

Right to Opt Out of Sale and Sharing: Jupiter Arts Collective does not sell your personal information for monetary consideration, nor do we share it for cross-context behavioral advertising purposes. Accordingly, we do not offer an opt-out mechanism for the sale or sharing of personal data, as no such activities take place on our website.

Non-Discrimination: We will not discriminate against you for exercising any of your CCPA/CPRA rights. This means we will not deny you services, charge you different prices, or provide a different level or quality of services because you exercised your privacy rights.

To submit a California privacy rights request, contact us using the information in Section 14. We will verify your identity before processing your request, which may require you to provide sufficient information to match the personal data we hold. You may also designate an authorized agent to make a request on your behalf, provided the agent presents written authorization signed by you.

17. Do Not Track Signals

Some web browsers incorporate a Do Not Track (DNT) feature that signals to websites that a user does not want to have their online activity tracked. At present, there is no universally accepted standard for how websites should respond to DNT signals, and the World Wide Web Consortium (W3C) has not adopted a formal DNT protocol specification.

As a result, Jupiter Arts Collective does not currently respond to DNT browser signals. However, as described in Section 12 of this policy, we do not engage in behavioral tracking of our users for advertising or profiling purposes. Our use of cookies and analytics is limited to understanding aggregate website performance and improving the user experience. We will continue to monitor developments in DNT technology and the emergence of consensus standards, and we will update our practices accordingly if a widely accepted standard is adopted.

In the meantime, you can exercise control over tracking through your browser settings, as described in Section 12, including the ability to block third-party cookies and clear your browsing data. You may also install browser extensions that provide additional privacy controls beyond the native DNT functionality.

18. Data Breach Notification Procedures

Jupiter Arts Collective maintains a formal incident response plan that governs our actions in the event of a data breach or suspected unauthorized access to personal information. Our breach notification procedures are designed to comply with all applicable legal requirements and to minimize potential harm to affected individuals.

In the event of a confirmed data breach involving personal information, we will notify affected individuals without undue delay, and in any event within the timeframes required by applicable law. Our notification will describe the nature of the breach, the categories and approximate number of data records affected, the likely consequences of the breach, the measures we have taken or propose to take to address the breach and mitigate its effects, and the contact details for obtaining further information.

Where required by law, we will also notify relevant supervisory authorities within the prescribed notification period. For breaches affecting residents of the European Economic Area, we will notify the competent supervisory authority within 72 hours of becoming aware of the breach, unless the breach is unlikely to result in a risk to the rights and freedoms of individuals.

We maintain breach documentation records even for incidents that do not require individual notification, including the facts relating to the breach, its effects, and the remedial actions taken. These records are retained for audit and compliance purposes for a period of five years following the incident.

If you suspect that your data has been compromised or that there has been unauthorized access to our systems, please contact us immediately using the details in Section 14 so that we can investigate and take appropriate action.

© 2026 Jupiter Arts Collective. All rights reserved.

Home Privacy Policy Terms of Service