1. Scope
This policy describes how BLEWETT PRODUCT SYSTEMS LLC handles information through the public corporate website, project planner, proposal links, and protected BPS Client Workspace. Mobile application privacy is covered by the separate BPS Mobile Apps Privacy Policy. External providers and customer websites have their own policies.
2. Information a customer provides
The public planner and project workflow may collect a contact name and email address; business, audience, location, service, schedule, budget, brand, website, provider, and project information; proposal decisions; onboarding answers; and communications with BPS. A protected workspace may also receive customer-provided copy, photos, graphics, PDFs, file names, file types, file sizes, checksums, intended-use descriptions, and rights confirmations.
Do not submit passwords, verification or recovery codes, payment-card details, government identification, medical records, or unrelated confidential records. Payment and identity information required by an outside provider should be entered directly with that provider.
3. How BPS uses project information
A submitted request enters a private BPS review queue. BPS uses the information to review a request, prepare estimates and proposals, communicate project actions, provide the protected workspace, plan and implement the accepted scope, review files, maintain custody and approval records, support launch and handoff, prevent abuse, and meet legitimate business and legal recordkeeping needs.
4. Hosting, storage, and service providers
The website and workspace hosting providers may process IP address, browser or device information, requested URLs, request times, authentication events, and related technical records to operate and protect the services. Project records and quarantined uploads may be stored in the configured database and object storage. BPS may send project records and approved assets to its configured Google Workspace or Google Drive business-record folders and may use configured email and authentication providers to deliver notices and secure access. These providers process information under their own terms and security practices.
5. File handling
Uploads are limited by type and size, assigned generated storage names, kept outside the public path while untrusted, and subject to content, signature, authorization, and malware-scan controls supported by the current system. File metadata, scan state, checksums, review decisions, retention dates, and deletion receipts may be retained with the project record. No internet service can guarantee that every harmful file or security incident will be detected.
6. Retention and deletion
Unaccepted public requests are scheduled for deletion from the active intake queue after 30 days unless they become active business records or must be retained for legitimate business, legal, fraud-prevention, dispute, or security reasons. Accepted project records, approvals, delivery evidence, communications, and approved assets may be retained for the active relationship and a reasonable recordkeeping period. To request access, correction, or deletion, email contact@blewettproductsystems.com from the address associated with the project. BPS will evaluate the request against contractual, legal, security, backup, and record-integrity requirements.
7. Security and access
BPS uses project-scoped authorization, protected portal routes, expiring invitations, server-side checks, request limits, nonpublic storage paths, and audit records where supported. Customers are responsible for protecting their email and sign-in account and should report suspected unauthorized access promptly. Security reduces risk but cannot eliminate it.
8. Cookies and analytics
No advertising analytics property has been approved or configured on the corporate website. This website does not intentionally set nonessential cookies. The protected workspace may use authentication and security storage required for sign-in and access control. If BPS later enables optional analytics or tracking, this policy and any required consent controls will be updated.
9. Email and external links
Project emails are processed by the sender’s and recipient’s email providers. External links and connected providers have separate privacy and data-handling practices. Send only what the project requires and review a provider’s terms before entering information there.
10. Changes
This policy may be updated when the website or workspace data practices change. The effective date above will be revised when a material update is published.