Scope
This policy applies to the website at marco.marsem.org, the secure delivery service at downloads.marsemit.com, and related contact, checkout, support, and refund interactions operated by Marco Abiskhiroon and MarSemIT LLC (collectively, “we,” “us,” or “our”).
Information we handle
Contact inquiries. The contact form collects your name, email address, and message. If you choose to provide them, it also collects your company, engagement type, expected timeline, and budget range.
Purchases through Stripe and Link. Stripe collects the information needed to process checkout, which may include your name, email address, billing address, payment credentials, and fraud-prevention signals. Stripe, not this website, handles complete card, bank, or wallet credentials. We receive limited purchase information needed to fulfil and support the order.
Secure delivery records. Our delivery service records the Stripe Checkout Session and event identifiers, payment status, Payment Link identifier, customer name and email when supplied by Stripe, amount, currency, purchase and access-expiration timestamps, download count, and last-download timestamp. The download file itself is stored separately in private object storage.
Technical information. Our hosting and security infrastructure may process standard request information such as IP address, browser or device details, requested URL, timestamps, and security events. We do not currently use advertising trackers on the public website.
How we use information
- Respond to inquiries and provide requested consulting or product support.
- Confirm a successful payment and provide purchase-bound access to the digital product.
- Administer the 30-day automatic access window, ten-download limit, refunds, and licensing questions.
- Secure, troubleshoot, and improve the website and delivery service.
- Maintain records needed for accounting, tax, fraud prevention, dispute handling, and legal compliance.
If contact-form email delivery fails, the submitted fields may be recorded in protected application logs so the inquiry can be reviewed manually.
Service providers and disclosures
We use service providers only where needed to operate the website, communicate, take payment, and deliver purchases:
- Stripe, including Link, for checkout, payment processing, applicable tax handling, receipts, fraud prevention, and refunds. Stripe processes information under its own privacy terms.
- Twilio SendGrid to transmit contact-form messages by email.
- Cloudflare for DNS, traffic routing and security, and data services supporting secure delivery.
- OpenAI Sites to host the secure delivery application and connect it to its private database and object storage.
- Self-managed Kubernetes infrastructure to host the public personal website.
We may also disclose information when reasonably necessary to comply with law, protect rights or security, investigate fraud, or complete a business reorganisation subject to appropriate protections.
We do not sell personal information. We do not share it for cross-context behavioural advertising.
Retention and security
Contact and support records are kept only as long as reasonably needed to respond, maintain business records, and meet legal obligations. Purchase and delivery records may be retained for accounting, tax, fraud prevention, refunds, disputes, licensing, and compliance. The product’s 30-day automatic access window is a fulfilment limit and is not necessarily the deletion date for transaction records.
We use reasonable administrative and technical safeguards, including HTTPS, signed Stripe webhooks, purchase-bound download grants, and private file storage. No method of transmission or storage is completely secure, so absolute security cannot be guaranteed.
Your choices and rights
Depending on where you live, you may have rights to request access, correction, deletion, restriction, or a copy of personal information, or to object to certain processing. To make a request, email [email protected]. We may need to verify your identity and may retain information when required for legal, tax, security, or transaction-record obligations.
Information may be processed in countries other than your own by the providers listed above, subject to their applicable safeguards and legal obligations.
Changes and contact
We may update this policy as the service or legal requirements change. The current version will appear here with a revised “Last updated” date.
Privacy questions or requests can be sent to [email protected].