Privacy & Data Security Disclosure

Effective Date: January 1, 2026
Last Updated: January 2026

VAVAN (“VAVAN,” “we,” “our,” or “us”) is committed to protecting the privacy, security, and ownership of data entrusted to our platform. This Privacy & Data Security Disclosure explains how information is collected, used, protected, and governed in compliance with applicable U.S. and California privacy laws, including the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA).

This disclosure applies to our website, platform, services, communications, and SMS messaging programs.


1. Information We Collect

We collect only the information necessary to operate, secure, and improve our services. This may include:

Name, company name, job title, and role

Email address and phone number

Business location, region, or market

Platform usage and interaction data

Scheduling, account, and operational information voluntarily provided by users

We do not collect sensitive personal information unless explicitly required for service delivery and disclosed at the time of collection.


2. How Information Is Used

Collected information is used solely for legitimate business purposes, including:

Providing access to the VAVAN platform and services

Account administration and authentication

Scheduling, confirmations, and operational communications

Platform updates, system notifications, and service-related messages

Security monitoring, fraud prevention, and compliance

Improving system performance and user experience

We do not sell, rent, trade, or monetize personal data.


3. SMS Communications & Consent

If you provide a mobile phone number and explicitly opt in, VAVAN may send transactional and informational SMS messages, including:

Appointment confirmations and reminders

Account notifications and operational updates

Platform-related communications

Marketing or promotional SMS messages are sent only if separate, explicit consent is provided.

Message frequency may vary. Message and data rates may apply.
You may opt out at any time by replying STOP, or request help by replying HELP.


4. Cookies & Tracking Technologies

VAVAN uses cookies and similar technologies to support essential website functionality, analytics, and performance optimization. These technologies may collect:

IP address

Browser and device type

Interaction and usage data

Cookies are not used for third-party advertising or behavioral profiling.
Users may manage or disable cookies through browser settings.


5. Mobile Information Sharing Statement

Mobile information, including phone numbers and SMS consent data, is not shared with third parties for marketing or promotional purposes.

Mobile information may be shared only with trusted service providers strictly as necessary to deliver SMS communications on behalf of VAVAN, in accordance with carrier requirements and applicable law.


6. California Privacy Rights (CCPA / CPRA)

California residents have the right to:

Know what personal information is collected

Request access to or deletion of personal information

Correct inaccurate personal information

Opt out of the sale or sharing of personal data (note: VAVAN does not sell or share data)

Limit the use of sensitive personal information

Requests may be submitted by contacting us using the information below. We will verify and respond in accordance with California law.


7. Data Ownership

All data entered into the VAVAN platform remains the property of the customer.

We do not claim ownership of customer data and do not use customer data for any purpose beyond delivering and securing our services.


8. Data Storage & Security

Data is stored on secure, enterprise-grade cloud infrastructure

All data centers are located in the United States

Redundant backup systems protect against data loss

Security Measures

Encryption in Transit: TLS 1.2+

Encryption at Rest: Full data encryption

Role-Based Access Control: Restricted to authorized users

Regular Backups: Automated and secure


9. Compliance & Certifications

SOC 2 Type II aligned security practices

GDPR and CCPA/CPRA compliant

Infrastructure adheres to ISO 27001 security principles


10. Access Restrictions

Access to customer data is limited to:

Authorized users designated by the customer

VAVAN security personnel solely for technical troubleshooting, under strict confidentiality obligations


11. Your Rights & Control

You retain full control over your data, including the right to:

Request data export

Request deletion

Manage user access and permissions

Requests are handled promptly and in accordance with applicable law.


12. Contact Information

Questions about privacy, security, or data handling may be directed to:

📧 Email: [email protected]
Phone: 916-249-4345


© vavan 2026

All Rights Reserved