Privacy Policy

Last updated June 25, 2023

This Privacy Policy for Timeless Technology Inc. ( “Company,” “we,” “us,” or “our”) describes how and why we might collect, store, use, and/or share (“process”) your information when you use our services (“Services”), such as when you (“User,” “you,” or “your”):

(a) Visit our website at https://issettled.com/ or any website that links to this Privacy Policy.

(b) Engage with us in other related ways, including sales, marketing, or events.

Questions or concerns? Reading this Privacy Policy will help you understand your privacy rights and choices. If you disagree with our policies and practices, please do not use our Services. If you still have any questions or concerns, please get in touch with us at [email protected]; in the subject or body of the letter, indicate that this request is related to the Site https://issettled.com/

It is essential that you understand how we use your information. You should read this page in total, but below are the key highlights and some helpful links:

(a) What personal information do we process? When you visit, use, or navigate our Services, we may process personal information depending on how you interact with Timeless Technology Inc. and the Services, your choices, and the products and features you use. Learn more about the personal information you disclose to us.

(b) Do we process any sensitive personal information? We do not process sensitive personal information.

(c) Do we receive any information from third parties? We do not receive any information from third parties.

(d) How do we process your information? We process your information to provide, improve, and administer our Services, communicate with you for security and fraud prevention, and to comply with the law. We may also process your information for other purposes with your consent. We process your information only when we have a valid legal reason. Learn more about how we process your information.

In what situations and with which types of parties do we share personal information? We may share information in specific situations and with specific categories of third parties. Learn more about when and with whom we share your personal information.

(e) How do we keep your information safe? We have organizational and technical processes and procedures to protect your personal information. However, no electronic transmission over the internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other unauthorized third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Learn more about how we keep your information safe.

(f) What are your rights? Depending on where you are located geographically, the applicable privacy law may mean you have certain rights regarding your personal information. Learn more about your privacy rights.

(g) How do you exercise your rights? The easiest way to exercise your rights is to contact us by email at [email protected]; in the subject or body of the letter, indicate that this request is related to the Site https://issettled.com/. We will consider and act upon any request per applicable data protection laws.

(h) Want to learn more about what Timeless Technology Inc. does with any information we collect? Review the privacy notice in full.

1. What Information Do We Collect?

1.1 Personal Information You Disclose To Us. We collect personal information that you voluntarily provide us when you express an interest in obtaining information about us or our products and Services when you participate in activities on the Services or otherwise when you contact us.

(a) Personal Information Provided by You. The personal information we collect depends on the context of your interactions with us and the Services, your choices, and the products and features you use. The personal information we collect may include the following:



  • Email addresses.

(b) Sensitive Information. We do not process sensitive information.

(c) Information Completeness. All personal information you provide must be true, complete, and accurate, and you must notify us of any changes to such personal information.

(d) Cookie. Like many businesses, we also collect information through cookies and similar technologies. You can find out more about this in our Cookie Policy.

(e) Information Automatically Collected. When you use our Services, certain information is collected automatically; this may include your IP address and details about your browser and device. For specific details in section 1.2, please see.

1.2 Detail On Information That Can Be Collected Automatically. We automatically collect certain information when you visit, use, or navigate the Services. This information does not reveal your specific identity (like your name or contact information). However, it may include device and usage information, such as your IP address, browser and device characteristics, operating system, language preferences, referring URLs, device name, country, location, information about how and when you use our Services, and other technical information. This information is primarily needed to maintain the security and operation of our Services and for our internal analytics and reporting purposes. The information we collect includes the following:

(a) Log and Usage Data. Log and usage data is service-related, diagnostic, usage, and performance information our servers automatically collect when you access or use our Services, which we record in log files. Depending on how you interact with us, this log data may include your IP address, device information, browser type, and settings and information about your activity in the Services (such as the date/time stamps associated with your usage, pages, and files viewed, searches, and other actions you take such as which features you use), device event information (such as system activity, error reports (sometimes called “crash dumps”), and hardware settings).

(b) Device Data. We collect device data such as information about your computer, phone, tablet, or other device you use to access the Services. Depending on the device used, this data may include your IP address (or proxy server), device and application identification numbers, location, browser type, hardware model, Internet service provider and/or mobile carrier, operating system, and system configuration information.

(c) Location Data. We collect location data, such as information about your device’s location, which can be precise or imprecise. How much information we collect depends on the type and settings of the device you use to access the Services. For example, we may use GPS and other technologies to collect geolocation data that tells us your current location (based on your IP address). You can opt out of allowing us to collect this information either by refusing access to the information or by turning off your Location setting on your device. However, if you opt-out, you may not be able to use certain aspects of the Services.

(d) Data Analytics. We work with third parties that collect information about your Site’s use. For example, Timeless Technology Inc. uses Google Analytics and other third-party services to improve the Sites’ performance and for analytics purposes. For more information about how Google Analytics collects and uses information when you use our website, visit https://www.google.com/policies/privacy/partners/, and to opt out of Google Analytics, visit https://tools.google.com/dlpage/gaoptout/

2. How Do We Process Your Information?

2.1 What We Process Information For. We process your information to provide, improve, and administer our Services, communicate with you for security and fraud prevention, and to comply with the law. We may also process your information for other purposes with your consent.

2.2 Reasons To Process Your Personal Information. We process your personal information for a variety of reasons, depending on how you interact with our Services, including:

(a) To deliver and facilitate the delivery of services to the user. We may process your information to provide you with the requested Service.

(b) To respond to user inquiries/offer support to users. We may process your information to respond to your inquiries and solve any potential issues you might have with the requested Service.

(c) To send administrative information to you. We may process your information to send you details about our products and Services, changes to our terms and policies, and other similar information.

(d) To fulfill and manage your orders. We may process your information to fulfill and manage your orders, payments, returns, and exchanges through the Services.

(e) To enable user-to-user communications. We may process your information if you use any of our offerings to communicate with another user.

(f) To request feedback. We may process your information when necessary to request feedback and contact you about using our Services.

(g) To send you marketing and promotional communications. We may process the personal information you send us for our marketing purposes if this is per your marketing preferences. You can opt out of our marketing emails at any time. See “What Are Your Privacy Rights?” below for more information.

(h) To deliver targeted advertising to you. We may process your information to develop and display personalized content and advertising tailored to your interests, location, and more. For more information, see our Cookie Policy

(i) To protect our Services. We may process your information as part of our efforts to keep our Services safe and secure, including fraud monitoring and prevention.

(j) To identify usage trends. We may process information about how you use our Services to understand better how they are being used so that we can improve them.

(k) To determine the effectiveness of our marketing and promotional campaigns. We may process your information to understand better how to provide marketing and promotional campaigns that are most relevant to you.

(l) To save or protect an individual’s vital interest. We may process your information when necessary to save or protect an individual’s vital interest, such as to prevent harm.

4. When And With Whom Do We Share Your Personal Information?

4.1 General. We may share information in specific situations described in this section and/or with the following categories of third parties.

4.2 Vendors, Consultants, and Other Third-Party Service Providers. We may share your data with third-party vendors, service providers, contractors, or agents (“third parties”) who perform services for us or on our behalf and require access to such information to do that work. We have contracts with our third parties designed to help safeguard your personal information; they cannot do anything with it unless we have instructed them to do it. They will also not share your personal information with any organization apart from us. They also commit to protect the data they hold on our behalf and to retain it for the period we instruct. The categories of third parties we may share personal information with are as follows:

  • Cloud Computing Services
  • Communication & Collaboration Tools
  • Data Analytics Services
  • Data Storage Service Providers
  • Finance & Accounting Tools
  • Performance Monitoring Tools
  • Retargeting Platforms
  • Sales & Marketing Tools
  • Social Networks
  • Website Hosting Service Providers
  • Ad Networks
  • Testing Tools
  • Product Engineering & Design Tools

(a) Third-Party Service Providers. If the Company processes data with the help of third-party service providers (e.g., business management systems, customer service, or email providers), for example, processes information about its customers and employees, we entrust the Company to the provider of such a system for processing this data, and they, in turn, protect them, restrict access to them and process them only per our instructions and the law.

(b) List Of Third-Party Service Providers. Please see our service providers page listing our most common sub-processors and service providers— List Of Third-Party Service Providers, APPENDIX C.

4.3 Situations In Which We May Share Personal Information. We also may need to share your personal information in the following situations:

(a) Business Transfers. We may share or transfer your information in connection with or during negotiations of any merger, sale of company assets, financing, or acquisition of all or a portion of our business to another company.

(b) Affiliates. We may share your information with our affiliates, in which case we will require those affiliates to honor this Privacy Policy. Affiliates include our parent company and any subsidiaries, joint venture partners, or other companies we control or are under common control.

(c) Business Partners. We may share your information with our business partners to offer certain products, services, or promotions.

5. Do We Use Cookies And Other Tracking Technologies?

5.1 General. We may use cookies and other tracking technologies to collect and store your information.

5.2 Cookies and Tracking Technologies. We may use cookies and similar tracking technologies (like web beacons and pixels) to access or store information. Our Cookie Policy provides specific information about how we use such technologies and how you can refuse certain cookies.

6. Is Your Information Transferred Internationally?

6.1 General. We may transfer, store, and process your information in countries other than yours.

6.2 Servers Location. Our servers are located in the USA. If you are accessing our Services from outside the USA, please be aware that your information may be transferred to, stored, and processed by us in our facilities and by those third parties with whom we may share your personal information (see “When And With Whom Do We Share Your Personal Information?” above), in the USA, and other countries.


6.3 European Economic Area (EEA) or United Kingdom (UK). If you are a resident of the European Economic Area (EEA) or the United Kingdom (UK), then these countries may not necessarily have data protection laws or similar laws as comprehensive as those in your country. However, we will take all necessary measures to protect your personal information per this Privacy Policy and applicable law.

6.4 European Commission’s Standard Contractual Clauses. We have implemented measures to protect your personal information, including using the European Commission’s Standard Contractual Clauses for transfers of personal information between our group companies and between us and our third-party providers. These clauses require all recipients to protect all personal information that they process originating from the EEA or UK per European data protection laws and regulations. Our Standard Contractual Clauses can be provided upon request. We have implemented similar appropriate safeguards with our third-party service providers and partners, and further details can be provided upon request.

7. How Long Do We Keep Your Information?

7.1 Keeping Information. Unless otherwise required by law, we keep your information for as long as necessary to fulfill the purposes outlined in this Privacy Policy.

(a) We will only keep your personal information for as long as necessary for the purposes set out in this Privacy Policy unless a more extended retention period is required or permitted by law (such as tax, accounting, or other legal requirements).

(b) When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize such information or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.

8. How Do We Keep Your Information Safe?

8.1 General. We aim to protect your personal information through organizational and technical security measures.

8.2 Our Security Measures. We have implemented appropriate and reasonable technical and organizational security measures designed to protect the security of any personal information we process. 

(a) All communications between your browser and the Services servers are encrypted using 256-bit encryption. The 256-bit encryption mechanism prevents unauthorized access to transmitted packets between your computer and the Service.

(b) Our security measures include but are not limited to Secure Socket Layer (SSL) encryption technology, internal data access restrictions, DoS protection technologies, and more.

8.3 Disclaimer for Internet Safety. However, despite our safeguards and efforts to secure your information, no electronic transmission over the Internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other unauthorized third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Although we will do our best to protect your personal information, the transmission of personal information to and from our Services is at your own risk. You should only access the Services within a secure environment.

9. Do We Collect Information From Minors?

9.1 General. We do not knowingly collect data from or market to children under 18.

9.2 Personal Data of Children. We do not knowingly solicit data from or market to children under 18. By using the Services, you represent that you are at least 18 or the parent or guardian of such a minor and consent to such minor dependent’s use of the Services. If we learn that personal information from users less than 18 years of age has been collected, we will deactivate the account and take reasonable measures to delete such data from our records promptly. If you become aware of any data we may have collected from children under 18, please get in touch with us at [email protected]; in the subject or body of the letter, indicate that this request is related to the Site https://issettled.com/

10. What Are Your Privacy Rights?

10.1 European Economic Area (EEA), United Kingdom (UK), and Canada Resident Rights. In some regions, such as the European Economic Area (EEA), United Kingdom (UK), and Canada, you have rights that allow you greater access to and control over your personal information. You may review, change, or terminate your account at any time.

10.2 EEA, UK, and Canada Applicable Data Protection Rights. You have certain rights under applicable data protection laws in some regions (like the EEA, UK, and Canada). These may include the right (i) to request access and obtain a copy of your personal information, (ii) to request rectification or erasure; (iii) to restrict the processing of your personal information; and (iv), if applicable, to data portability. In certain circumstances, you may also have the right to object to processing your personal information. You can make such a request by contacting us using the contact details provided in the section “How Can You Contact Us About This Privacy Policy?” below.

(a) We will consider and act upon any request per applicable data protection laws.

(b) If you are located in the EEA or UK, and you believe we are unlawfully processing your personal information, you also have the right to complain to your “Member State data protection authority” or “UK data protection authority.”

(c) If you are in Switzerland, contact the “Federal Data Protection and Information Commissioner.”

10.3 Withdrawing Your Consent. If we rely on your consent to process your personal information, which may be express and/or implied consent, depending on the applicable law, you can withdraw your consent at any time. You can withdraw your consent anytime by contacting us using the contact details provided in the “Do We Make Updates To This Privacy Policy?” section below.

(a) However, please note that this will not affect the lawfulness of the processing before its withdrawal, nor when applicable law allows, will it affect the processing of your personal information conducted in reliance on lawful processing grounds other than consent.

10.4 Opting Out Of Marketing And Promotional Communications. You can unsubscribe from our marketing and promotional communications at any time by clicking on the unsubscribe link in the emails that we send. Also, the user can contact us at [email protected] in the subject or body of the letter, indicate that this request is related to the Site https://issettled.com/ to exclude his email from the newsletter, or by contacting us using the details provided in the “How Can You Contact Us About This Privacy Policy?” section below. You will then be removed from the marketing lists. 

(a) However, we may still communicate with you — for example, to send you service-related messages necessary for your account’s administration and use, respond to service requests, or for other non-marketing purposes.

10.5 Cookies And Similar Technologies. Most Web browsers are set to accept cookies by default. You can set your browser to remove and reject cookies. If you choose to remove cookies or reject cookies, this could affect certain features or services of our Services. You may also opt out of interest-based advertising by advertisers on our Services. For further information, please see our Cookie Policy.

11. Controls For Do-Not-Track Features

11.1 Not Respond To DNT Browser Signals. Most web browsers, mobile operating systems, and mobile applications include a Do-Not-Track (“DNT”) feature or setting you can activate to signal your privacy preference and not to have data about your online browsing activities monitored and collected. No uniform technology standard for recognizing and implementing DNT signals has been finalized. As such, we do not currently respond to DNT browser signals or any other mechanism that automatically communicates your choice not to be tracked online. If a standard for online tracking is adopted that we must follow in the future, we will inform you about that practice in a revised version of this privacy notice.

12. Do California Residents Have Specific Privacy Rights?

12.1 Notice. If you are a resident of California, you are granted specific rights regarding access to your personal information, and we process your personal information per California law. Please see for specific details California Privacy Notice (CCPA), APPENDIX A.

12.2 Resident Or Non-resident. The California Code of Regulations defines a “resident” as (i) every individual who is in the State of California for other than a temporary or transitory purpose and; (ii) every individual who is domiciled in the State of California who is outside the State of California for a temporary or transitory purpose; (iii) all other individuals are defined as “non-residents.”

(a) If this definition of “resident” applies to you, we must adhere to certain rights and obligations regarding your personal information. Please see for specific details California Privacy Notice (CCPA), APPENDIX A.

13. Do Virginia Residents Have Specific Privacy Rights?

13.1 Notice. If you are a resident of Virginia, you may be granted specific rights regarding access to and use of your personal information. Please see for specific details Virginia Privacy Notice (CDPA), APPENDIX B.

14. Do We Make Updates To This Privacy Policy?

14.1 General. We will update this notice as necessary to stay compliant with relevant laws.

14.2 Privacy Policy Update. We may update this Privacy Policy from time to time. If we make material changes to this Privacy Policy, we may notify you by prominently posting a notice of such changes or by directly sending you a notification. We encourage you to review this Privacy Policy frequently to be informed of how we are protecting your information.

15. How Can You Contact Us About This Privacy Policy?

15.1 Contact Us By Email. If you have questions or comments about this Privacy, email us at [email protected]; in the subject or body of the letter, indicate that this request is related to the Site https://issettled.com/

15.2 Contact Us By Post. Per the Terms Of Use, Section 8, an E-Sign Consent exists between you and us; for this reason, we accept requests electronically. However, we may charge an additional fee if you wish to send a mail post. For specific details, Terms Of Use, section 8, please see.

Post Address

Timeless Technology Inc.

805, 447 Broadway, 2nd Floor

New York, NY 10013

United States

16. How Can You Review, Update, Or Delete The Data We Collect From You?

16.1 Review, Update, Or Delete The Data. Based on the applicable laws of your country, you may have the right to request access to the personal information we collect from you, change that information, or delete it. 

16.2 Request To Review, Update, Or Delete. To request to review, update, or delete your personal information, please email us at [email protected]; in the subject or body of the letter, indicate that this request is related to the Site https://issettled.com/.

APPENDIX A

California Privacy Notice (CCPA)

1. General

1.1 CA Civil Code § 1798.83. California Civil Code Section 1798.83, also known as the “Shine The Light” law, permits our users who are California residents to request and obtain from us, once a year and free of charge, information about categories of personal information (if any) we disclosed to third parties for direct marketing purposes and the names and addresses of all third parties with which we shared personal information in the immediately preceding calendar year. If you are a California resident and would like to make such a request, please submit your request in writing using the contact information provided below.

1.2 Does Not Share Personal Data. For Shine the Light law (Cal. Civ Code § 1798.83) purposes, Timeless Technology Inc. does not share the personal data of California customers with third parties for their direct marketing purposes, as defined by this law.

1.3 Does Not Sell Personal Information. Timeless Technology Inc. does not sell personal information. As such, Timeless Technology Inc. does not sell the personal information of minors under 16 years of age. For California residents, the California Consumer Privacy Act (“CCPA”) defines “selling” personal information to include providing it to a third party in exchange for money or valuable consideration.

1.4 Request for Removal. If you are under 18, reside in California, and have a registered account with Services, you have the right to request the removal of unwanted data that you publicly post on the Services. To request the removal of such data, please contact us using the contact information provided below and include the email address associated with your account and a statement that you reside in California. We will ensure the data is not publicly displayed on the Services, but please be aware that the data may be partially removed from all our systems (e.g., backups, and so on.).

1.5 Request to Deny. You may contact us by email at [email protected]; in the subject or body of the letter, indicate that this request is related to the Site https://issettled.com/. If you are using an authorized agent to exercise your right to opt out, we may deny a request if the authorized agent does not submit proof that they have been validly authorized to act on your behalf.

1.6 Data Collection and Sharing Practices. More information about our data collection and sharing practices can be found in the Privacy Policy and our Cookie Policy

2. Categories Of Personal Information

2.1 Categories Of Personal Information We Collect. The table below discloses the categories of personal information about California consumers we collect and disclose for business purposes.

(a) Notice. We have collected the following categories of personal information in the past twelve (12) months:

Category

Examples

Collected

A. Identifiers

Contact details, such as real name, alias, postal address, telephone or mobile contact number, unique personal identifier, online identifier, Internet Protocol address, email address, and account name


NO

B. Personal information categories listed in the California Customer Records statute

Name, contact information, education, employment, employment history, and financial information


NO

C. Protected classification characteristics under California or federal law

Gender and date of birth


NO

D. Commercial information

Transaction information, purchase history, financial details, and payment information


NO

E. Biometric information

Fingerprints and voiceprints


NO

F. Internet or other similar network activity

Browsing history, search history, online behavior, interest data, and interactions with our and other websites, applications, systems, and advertisements


NO

G. Geolocation data

Device location


NO

H. Audio, electronic, visual, thermal, olfactory, or similar information

Images and audio, video, or call recordings created in connection with our business activities


NO

I. Professional or employment-related information

Business contact details to provide you with our Services at a business level or job title, work history, and professional qualifications if you apply for a job with us


NO

J. Education Information

Student records and directory information


NO

K. Inferences are drawn from other personal information

Inferences are drawn from any of the collected personal information listed above to create a profile or summary about, for example, an individual’s preferences and characteristics


NO

L. Sensitive Personal Information

 

NO

2.2 Other Personal Information Collect. We may also collect other personal information outside these categories through instances where you interact with us in person, online, or by phone (if applicable) or mail in the context of:

  • Receiving help through our customer support channels;
  • Participation in customer surveys or contests; and
  • Facilitate the delivery of our Services and respond to your inquiries.

2.3 Will your information be shared with anyone else? We may disclose your personal information with our service providers according to a written contract between us and each service provider. Each service provider is a for-profit entity that processes the information on our behalf, following the same strict privacy protection obligations mandated by the CCPA.

(a) We may use your personal information for business purposes, such as undertaking internal research for technological development and demonstration; this is not considered the “selling” of your personal information.

(b) Timeless Technology Inc. has not sold or shared any personal information to third parties for a business or commercial purpose in the preceding twelve (12) months. 

(c) The categories of third parties to whom we disclosed personal information for a business or commercial purpose can be found under “When And With Whom Do We Share Your Personal Information?.”

3. Your Rights Concerning Your Data

3.1 Request to delete—Right to request deletion of the data. You can ask for the deletion of your personal information. If you ask us to delete your personal information in that case, we will respect your request and delete your personal information, subject to certain exceptions provided by law, such as (but not limited to) the exercise by another consumer of their right to free speech, our compliance requirements resulting from a legal obligation, or any processing that may be required to protect against illegal activities.

3.2 Request to know—Right to be informed. Depending on the circumstances, you have a right to know:

  • whether we collect and use your personal information;
  • the categories of personal information that we collect;
  • the purposes for which the collected personal information is used;
  • whether we sell or share personal information with third parties;
  • the categories of personal information that we sold shared, or disclosed for a business purpose;
  • the categories of third parties to whom the personal information was sold, shared, or disclosed for a business purpose;
  • the business or commercial purpose for collecting, selling, or sharing personal information; and
  • the specific pieces of personal information we collected about you.

Per applicable law, we are not obligated to provide or delete consumer information that is de-identified in response to a consumer request or to re-identify individual data to verify a consumer request.

3.3 Right to Non-Discrimination for the Exercise of a Consumer’s Privacy Rights. We will not discriminate against you if you exercise your privacy rights.

3.4 Right to Limit Use and Disclosure of Sensitive Personal Information. We do not process consumers’ sensitive personal information.

4. Verification Process to Request

4.1 Verify Your Identity. Upon receiving your request, we will need to verify your identity to determine whether you are the same person with whom we have the information in our system. These verification efforts require us to ask you to provide information so that we can match it with the information you have previously provided us. For instance, depending on the type of request you submit, we may ask you to provide certain information so that we can match the information you provide with the information we already have on file, or we may contact you through a communication method (e.g., phone or email) that you have previously provided to us. We may also use other verification methods as the circumstances dictate.

4.2. Personal Information Provided In Your Request To Verify. We will only use the personal information provided in your request to verify your identity or authority to make the request. To the extent possible, we will avoid requesting additional information from you for verification. However, if we cannot verify your identity from the information we maintained, we may request that you provide additional information to verify your identity and for security or fraud-prevention purposes. We will delete such additionally provided information as soon as we verify you.

5. Other Privacy Rights

5.1 Right To Object. You may object to the processing of your personal information.

5.2 Right To Correct. You may request correction of your data if it is incorrect or no longer relevant or ask to restrict the processing of the information.

5.3 Right To Authorized Agent. You can designate an authorized agent to request the CCPA on your behalf. We may only accept a request from an authorized agent that submits proof that they have been validly authorized to act on your behalf per the CCPA.

5.4 Right To Opt Out Of Future Selling. You may request to opt out of future selling or sharing of your personal information with third parties. Upon receiving an opt-out request, we will act upon the request as soon as feasibly possible, by fifteen (15) days from the request submission date.

5.5 Exercise Rights. To exercise these rights, you can contact us by email at [email protected]; in the subject or body of the letter, indicate that this request is related to the site https://issettled.com/. If you have a complaint about how we handle your data, we would like to hear from you.

APPENDIX B

Virginia Privacy Notice (CDPA)

If the definition “consumer” applies to you, we must adhere to certain rights and obligations regarding your data.

1. General

1.1 Definitions. Under the Virginia Consumer Data Protection Act (CDPA):

(a) “Consumer” means a natural person who is a resident of the Commonwealth acting only in an individual or household context. It does not include a natural person acting in a commercial or employment context.

(b) “Personal data” means any information that is linked or reasonably linkable to an identified or identifiable natural person. “Personal data” does not include de-identified data or publicly available information.

(c) “Sale of personal data” means the exchange of personal data for monetary consideration.

1.2 Does Not Sell Personal Information. Timeless Technology Inc. has not sold personal data to third parties for business or commercial purposes. Timeless Technology Inc. will not sell personal data belonging to website visitors, users, and other consumers in the future.

1.3 Request to Deny. You may contact us by email at [email protected]; in the subject or body of the letter, indicate that this request is related to the site https://issettled.com/. If you are using an authorized agent to exercise your right to opt out, we may deny a request if the authorized agent does not submit proof that they have been validly authorized to act on your behalf.

1.4 Data Collection and Sharing Practices. More information about our data collection and sharing practices can be found in the Privacy Policy and our Cookie Policy

2. Categories Of Personal Information

2.1 Information Do We Collect, Use, and Disclose? The information we collect, use and disclose about you will vary depending on how you interact with Timeless Technology Inc. and our Services. To find out more, please visit the following links:

3. Rights Concerning Your Data

3.1 Right To Inform. You may have the right to be informed whether or not we are processing your data.

3.2 Right To Access. You may have the right to access your data.

3.3 Right To Correct. You may have the right to correct inaccuracies in your data

3.4 Right To Erase. You may have the right to request deletion of your data.

3.5 Right To Obtain. You may have the right to obtain a copy of the personal data you previously shared with us.

3.6. Right To Opt Out Processing. You may have the right to opt out of processing your data if it is used for targeted advertising, the sale of personal data, or profiling in furtherance of decisions that produce legal or similarly significant effects (“profiling”).

4. Verification Process to Request

4.1 Verify Request. We may request that you provide additional information reasonably necessary to verify your and your consumer’s request. If you submit the Request through an authorized agent, we may need to collect additional information to verify your identity before processing your request.

4.2 Request Response Time. Upon receiving your request, we will respond without undue delay, but in all cases, within forty-five (45) days of receipt. The response period may be extended once by forty-five (45) additional days when reasonably necessary. We will inform you of any such extension within the initial 45-day response period and the reason for the extension.

4.3 Right To Appeal. If we decline to take action regarding your request, we will inform you of our decision and its reasoning.

4.4 Appeal Our Decision. If you wish to appeal our decision, please email us at [email protected]; in the subject or body of the letter, indicate that this request is related to the site https://issettled.com/. Within sixty (60) days of receipt of an appeal, we will inform you in writing of any action taken or not taken in response to the appeal, including a written explanation of the reasons for the decisions. You may contact the Attorney General to submit a complaint.

APPENDIX C

List Of Third-Party Service Providers

1. General

1.1 Sub-processor Definition. When Timeless Technology Inc. engages third-party service providers in our capacity as a data processor for our Business Users’ data, the General Data Protection Regulation (“GDPR”) and several other global privacy frameworks call these third-party service providers sub-processors. Sub-processors are service providers who have or potentially will have access to or process personal data that Timeless Technology Inc. processes for, and on behalf of, Timeless Technology Inc.’s Business Users.

1.2 Update to List Of Third-Party Service Providers. Due to the nature of our global business and the volume of Business Users, our business needs and services providers may change occasionally. For example, we may deprecate a service provider to consolidate and minimize our use of service providers. Similarly, we may add a service provider if we believe that doing so will enhance our ability to deliver our Services.

2. Table to List Of Third-Party Service Providers

The list outlines the types of service providers and sub-processors we utilize, their locations, and a description of their work.

NAME

DATA

PURPOSE OF PROCESSING

ENTITY COUNTRY

Microsoft Azure–Microsoft Corporation

Business User data and End Customer data

Cloud service provider

United States

IBM Cloud—IBM Corporation

Business User data and End Customer data

Cloud service provider

United States

Amazon Web Services, Inc.

Business User data and End Customer data

Cloud service provider

United States

Freshworks Inc.

The information included by the individual reaching out to Timeless Technology Inc., such as name, email address, and other information that may be included based on the nature of the communication

Customer service platform that supports customer interactions

United States

Zoho Workplace

The information included by the individual reaching out to Timeless Technology Inc., such as name, email address, and other information that may be included based on the nature of the communication

Email service provider supports customer interactions, e.g., email

United States

Google LLC

Business User Data, End Customers’ data, and Visitors’ data

Email, file storage, collaboration tools, and services to help protect our Sites (e.g., reCAPTCHA) and to measure interactions on our Sites

United States