1. Introduction
Welcome to MTF Serve, a service operated by MTF Services LLC, a computer systems design and related services firm headquartered in Park City, Utah. We are committed to protecting your privacy and ensuring that your personal information is handled in a safe and responsible manner. This Privacy Policy explains how MTF Serve collects, uses, discloses, and safeguards your data when you visit our website at mtfserve.buzz or engage with any of our digital properties, services, or communication channels.
By accessing or using any MTF Serve website, application, or service, you acknowledge that you have read and understood the terms of this Privacy Policy. If you do not agree with the practices described herein, you should discontinue use of our services immediately. This policy applies to all visitors, prospective clients, active clients, and any other individuals who interact with MTF Services LLC through our online platforms.
MTF Services LLC takes its obligations under applicable data protection laws seriously. We have designed our data handling practices to align with the core principles of transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, and confidentiality. Whether you are browsing our service catalog, requesting a project consultation, or communicating with our engineering team, we want you to understand exactly what information we collect and why.
This Privacy Policy is designed to be read as a standalone legal document. It does not incorporate by reference any terms or conditions that are not expressly stated within its text. If any provision of this policy is found to be unenforceable or invalid, that provision will be limited or eliminated to the minimum extent necessary so that the remaining provisions will continue in full force and effect.
2. Information We Collect
We collect several categories of information, each serving a distinct purpose in the operation and improvement of MTF Serve. The types of data we may gather include but are not limited to the following:
Personal Identification Information. When you fill out a contact form, request a consultation, or subscribe to our communications, we may collect your full name, email address, company name, job title, phone number, and any other details you voluntarily provide in the message body. This information is used solely to respond to your inquiry and deliver the services you have requested.
Project and Consultation Data. When you describe your systems design needs, infrastructure requirements, or technical challenges, we collect that project-related information. This may include architectural diagrams you share, descriptions of your current technology stack, performance requirements, compliance constraints, and timeline objectives. We treat this information as confidential and use it exclusively to prepare proposals and deliver our engineering services.
Usage and Analytics Data. As you navigate mtfserve.buzz, our servers automatically log certain technical information. This may include your IP address, browser type and version, operating system, referring URL, pages visited, time spent on each page, date and time stamps, and general geographic location. We collect this data using standard server logs and privacy-respecting analytics tools that do not rely on third-party tracking cookies.
Device and Connection Information. We may collect details about the device you use to access MTF Serve, including hardware model, screen resolution, network type, and browser language settings. This information helps us optimize our website for the broadest possible range of devices and connection speeds.
Communication Records. If you contact us via email at chat@mtfserve.buzz, through our website contact form, or by phone at +1 (775) 557-0744, we retain records of that correspondence. These records include the content of your messages, our responses, and associated metadata such as timestamps and contact identifiers.
Client Relationship Data. For active and past clients of MTF Services LLC, we maintain records of engagement scope, project milestones, billing information, and contractual documentation. This category is limited to individuals and organizations that have entered into a formal services agreement with us.
We do not collect sensitive personal data such as government identification numbers, biometric data, genetic data, or information about racial or ethnic origin unless you voluntarily and expressly provide such information during a service engagement where it is relevant. We never collect payment card or financial account credentials through our website. Any billing that occurs is handled through separate, secure invoicing channels.
3. How We Use Your Information
MTF Services LLC processes the information we collect for specific, legitimate business purposes. We do not use your data for any purpose that is incompatible with the reason it was originally collected without first notifying you and, where required by law, obtaining your consent. The following outlines the primary ways in which we use your information:
Service Delivery and Fulfillment. The core use of your data is to provide the system design, architecture consulting, and engineering services you have requested. This includes preparing proposals, scoping projects, assembling project teams, executing deliverables, and maintaining ongoing client communications throughout the engagement lifecycle.
Communication and Support. We use your contact information to respond to inquiries, send project updates, deliver technical documentation, provide client support, and notify you of changes to our services or policies. For prospective clients, this includes follow-up communications after an initial consultation request. You may opt out of non-essential communications at any time.
Website Improvement and Analytics. Usage data helps us understand how visitors interact with mtfserve.buzz. We analyze page performance, navigation patterns, and content engagement to identify areas for improvement. This analysis is performed in aggregate and does not target individual visitors for profiling or behavioral advertising purposes.
Security and Fraud Prevention. We monitor our systems for unauthorized access, malicious activity, and potential security threats. Connection logs, IP addresses, and device information may be reviewed as part of our security operations. This processing is necessary for the legitimate interest of protecting MTF Serve, our clients, and our digital infrastructure.
Legal Compliance and Enforcement. We may process information as required to comply with applicable laws, regulations, legal processes, or enforceable governmental requests. This includes responding to subpoenas, court orders, or regulatory inquiries. We also use data to enforce our Terms of Service, protect the rights and safety of MTF Services LLC and its personnel, and defend against legal claims.
Business Operations. Internally, we use aggregated and anonymized data for business planning, financial reporting, capacity forecasting, and strategic decision-making. This category of use involves data that cannot reasonably be linked back to an individual.
4. How We Share Your Information
MTF Services LLC does not sell, rent, or trade your personal information to third parties for their marketing purposes. We share your data only in the specific circumstances described below, and we require any third party receiving your information to provide at least the same level of privacy protection as set forth in this policy.
Service Providers and Subprocessors. We engage trusted third-party companies to perform functions on our behalf, including cloud hosting infrastructure, email delivery services, analytics platforms, and project management tools. These service providers are contractually bound to process data only according to our instructions and are prohibited from using your information for their own independent purposes. We carefully vet each provider for their security posture and compliance certifications before engagement.
Professional Advisors. We may share information with our legal counsel, auditors, accountants, and insurance providers as necessary for the operation of our business. These disclosures are governed by professional confidentiality obligations and are limited to what is strictly required for the advisory service being provided.
Business Transfers. In the event of a merger, acquisition, reorganization, or sale of all or a portion of MTF Services LLC assets, client and user information may be among the transferred assets. We will notify you via email and/or a prominent notice on our website of any change in ownership or control of your personal information, as well as any choices you may have regarding your data.
Legal Requirements. We disclose information when we have a good-faith belief that such action is necessary to comply with a legal obligation, protect against legal liability, defend our rights or property, prevent fraud or illegal activity, or protect the personal safety of any person. We evaluate each disclosure request on its merits and challenge requests that we believe to be overbroad, unlawful, or procedurally deficient.
With Your Consent. We may share your information for any other purpose if we have obtained your explicit, informed consent prior to the disclosure. You have the right to withdraw your consent at any time, though this will not affect the lawfulness of processing that occurred before the withdrawal.
5. Data Retention and Security
MTF Services LLC implements a comprehensive array of technical, administrative, and physical safeguards to protect the confidentiality, integrity, and availability of your personal information. We regularly review and update our security practices to address evolving threats and to align with industry best practices for organizations in the computer systems design sector. The following measures constitute the core of our retention and security framework:
Encryption at Rest and in Transit. All data transmitted between your browser and mtfserve.buzz is protected using Transport Layer Security (TLS) with strong cipher suites and certificate pinning where supported. Data stored on our servers, backups, and database systems is encrypted using AES-256 encryption. Encryption keys are managed through a dedicated key management service with strict access controls and rotation schedules.
Access Control and Authentication. We enforce role-based access controls that limit data access to personnel who have a legitimate business need. All accounts require strong, unique passwords and multi-factor authentication. Access privileges are reviewed quarterly, and accounts belonging to departed personnel are deprovisioned within 24 hours of separation. Administrative access is logged and audited continuously.
Network Security Architecture. Our hosting environment uses multiple layers of network defense, including perimeter firewalls, web application firewalls (WAF), intrusion detection and prevention systems (IDS/IPS), and DDoS mitigation services. Network segmentation isolates production systems from development and testing environments. All inbound and outbound traffic is monitored for anomalous patterns.
Vulnerability Management. We perform regular vulnerability scans across our entire infrastructure stack and conduct penetration testing on an annual basis, with additional targeted testing after significant architectural changes. Identified vulnerabilities are triaged by severity and remediated according to a defined SLA that prioritizes critical and high-severity findings for resolution within 48 hours.
Security Monitoring and Incident Response. Our systems are monitored 24 hours a day, 7 days a week for indicators of compromise and anomalous behavior. We maintain a documented incident response plan that is tested annually through tabletop exercises. In the event of a data breach, we will notify affected individuals and relevant regulatory authorities within the timeframes required by applicable law, and in no event later than 72 hours after confirmation of the breach.
Data Minimization and Retention Schedules. We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable law. Contact form submissions and general inquiry data are retained for 24 months from the date of last interaction. Client project records are retained for 7 years following project completion, in accordance with standard business record-keeping practices and applicable statutes of limitations. Server logs and analytics data are retained for 90 days.
Secure Development Practices. Our engineering team follows secure software development lifecycle (SDLC) practices, including peer code reviews, static application security testing (SAST), dependency vulnerability scanning, and pre-deployment security validation. We do not deploy code that has not passed our automated security gates. Our development pipeline enforces separation of duties, requiring at least two authorized engineers to approve any change before it reaches production.
Physical Security. Our hosting infrastructure is housed in ISO 27001 and SOC 2 certified data centers with 24/7 on-site security personnel, biometric access controls, video surveillance, and redundant power and environmental controls. MTF Services LLC personnel do not have physical access to data center facilities. All physical access is managed by our hosting providers under their audited security programs.
Third-Party Security Assessments. We require all service providers and subprocessors to undergo security assessments before engagement and on a periodic basis thereafter. Our vendor risk management program evaluates each third party on criteria including data encryption practices, access controls, incident response capability, compliance certifications, and geographic data hosting locations.
6. International Data Transfers
MTF Services LLC is headquartered in the United States, and our primary data processing activities occur on servers located within the United States. If you are accessing MTF Serve from outside the United States, please be aware that your information may be transferred to, stored in, and processed in the United States, where our central operations are located.
The data protection laws of the United States may differ from those in your country of residence. By using our services, you acknowledge that your information may be transferred to our facilities and to those third parties with whom we share it as described in this Privacy Policy. We take appropriate safeguards to ensure that your data remains protected in accordance with this policy when transferred internationally.
For transfers of personal data from the European Economic Area (EEA), the United Kingdom, or Switzerland to the United States, we rely on appropriate transfer mechanisms as required by applicable data protection law, including standard contractual clauses approved by the relevant regulatory authorities and, where applicable, adequacy decisions. We conduct transfer impact assessments to evaluate the legal landscape of the destination jurisdiction and implement supplementary measures where necessary to ensure an adequate level of protection.
If you have questions about the specific safeguards applied to international transfers of your personal data, you may contact us using the details provided in the Contact section of this policy.
7. Your Rights and Choices
Depending on your jurisdiction, you may have certain rights regarding the personal information we hold about you. MTF Services LLC respects these rights and provides mechanisms for you to exercise them. We will not discriminate against you for exercising any of your privacy rights. The rights available to you may include:
Right to Access. You have the right to request confirmation of whether we process your personal information and, if so, to obtain a copy of that data along with details about the purposes of processing, the categories of data involved, and the recipients with whom we have shared it.
Right to Rectification. If you believe that the personal information we hold about you is inaccurate or incomplete, you have the right to request that we correct or update it. We will respond to rectification requests promptly and, where appropriate, communicate the correction to any third parties to whom the data was previously disclosed.
Right to Erasure. In certain circumstances, you may request that we delete the personal information we hold about you. This right is not absolute and may be limited by our legal obligations, legitimate business interests, and the need to establish, exercise, or defend legal claims. We will evaluate each erasure request against these criteria and explain our determination.
Right to Restrict Processing. You may ask us to temporarily or permanently limit the processing of your personal data in specific situations, such as when you contest the accuracy of the data or object to the processing. During the restriction period, we will store your data but not otherwise process it without your consent or unless necessary for legal claims.
Right to Data Portability. Where processing is based on consent or contract and is carried out by automated means, you have the right to receive your personal data in a structured, commonly used, and machine-readable format. You may also request that we transmit this data directly to another organization where technically feasible.
Right to Object. You may object to the processing of your personal data when we rely on legitimate interests as our legal basis, including for direct marketing purposes. Upon receiving an objection, we will cease processing unless we can demonstrate compelling legitimate grounds that override your interests, rights, and freedoms.
Right to Withdraw Consent. Where we rely on your consent as the basis for processing, you may withdraw that consent at any time. Withdrawal of consent does not affect the lawfulness of processing that occurred prior to the withdrawal. To withdraw consent, contact us using the details in the Contact section or use the unsubscribe link provided in our email communications.
Right to Non-Discrimination. We will not deny you services, charge you different prices, provide a different level of service, or otherwise discriminate against you for exercising your privacy rights. Your decision to exercise any of these rights will have no adverse impact on your relationship with MTF Services LLC.
California Privacy Rights. If you are a California resident, you may have additional rights under the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA). These include the right to know the specific pieces and categories of personal information we have collected about you, the right to know the categories of sources from which the information was collected, the business purpose for collecting or selling the information, and the categories of third parties with whom we share it. MTF Services LLC does not sell personal information as defined under the CCPA.
Verification and Response Process. To protect your privacy, we will verify your identity before processing any rights request. We may ask you to provide identifying information that matches the data we already hold. We will respond to verified requests within the timeframes required by applicable law, typically within 30 to 45 calendar days depending on the complexity of the request and your jurisdiction. If we require an extension, we will inform you in writing within the initial response period.
Appeal Mechanism. If we deny your rights request in whole or in part, we will provide you with a written explanation of our reasoning and inform you of any appeal mechanisms available to you. Where applicable law provides a right to appeal our decision, you may submit an appeal by replying to our denial communication within the timeframe specified in our response.
8. Children's Privacy
MTF Serve is a business-to-business platform designed exclusively for use by adults in a professional capacity. Our services are not directed at, and we do not knowingly solicit or collect personal information from, individuals under the age of 18. We do not offer services to children, and our website contains no content that is targeted toward or intended to appeal to minors.
If we become aware that we have inadvertently collected personal information from a child under the age of 18 without verified parental consent, we will take immediate steps to delete that information from our systems. If you are a parent or guardian and believe that your child has provided us with personal information without your consent, please contact us at the email address or phone number listed in the Contact section below. We will investigate and, upon verification, remove the data promptly.
MTF Services LLC complies with the Children's Online Privacy Protection Act (COPPA) and other applicable laws regarding the protection of children's data. We do not condition a child's participation in any activity on the disclosure of more personal information than is reasonably necessary. Our age verification practices, while not infallible, are designed to prevent the accidental collection of data from minors.
9. Changes to This Privacy Policy
MTF Services LLC reserves the right to update or modify this Privacy Policy at any time to reflect changes in our practices, technology, legal requirements, or operational needs. When we make material changes to this policy, we will post the revised version on mtfserve.buzz with an updated effective date and, where appropriate, provide additional notice through our website banner or direct email notification to active clients.
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information. The date at the top of this page indicates when the policy was last revised. Material changes become effective 30 calendar days after posting, or immediately upon posting for changes that are required by law or relate to new service features.
Your continued use of MTF Serve after any modifications to this Privacy Policy constitutes your acknowledgment of the changes and your agreement to be bound by the updated terms. If you do not agree with the revised policy, you should discontinue use of our services and, if you wish, request deletion of your data in accordance with the rights described in Section 7.
We maintain a historical archive of all previous versions of this Privacy Policy. If you would like to review a prior version, please contact us using the information in the Contact section, and we will provide it to you within a reasonable timeframe.
10. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, your personal information, or our data handling practices, we encourage you to reach out to us. Our team is available to address your privacy inquiries and will respond within the timeframes required by applicable law.
You may contact MTF Serve and MTF Services LLC through any of the following channels:
8013 N Wildflower Dr Unit 51
Park City, UT 84098-5352
United States
We are committed to working with you to resolve any privacy concerns fairly. If you are not satisfied with our response, you may have the right to lodge a complaint with the data protection authority in your jurisdiction. For users in the European Economic Area, a list of supervisory authorities is available on the European Data Protection Board website. We would, however, appreciate the opportunity to address your concerns directly before you contact any supervisory authority.