This Privacy Policy explains what information we collect through this website and through our advisory engagements, how we use it, who we share it with, and the choices you have. We keep it in plain English on purpose — we advise businesses on data exposure for a living, and it would be strange to hide our own practices behind legal fog.
Who we are
Aegis AI Advisory is a registered assumed name (DBA) of I Am Your Geek LLC, a Michigan limited liability company. I Am Your Geek LLC is the legal entity responsible for this website and for the services delivered under the Aegis AI Advisory brand, and it is the data controller for the information described in this policy.
Throughout this policy, "we," "us," and "our" refer to I Am Your Geek LLC doing business as Aegis AI Advisory.
- Legal entity: I Am Your Geek LLC
- Assumed name (DBA): Aegis AI Advisory
- Location: Michigan, United States
- Email: dan@aegisaiadvisory.com
- Phone: (810) 772-4157
Information we collect
Information you give us directly
- Contact form. When you submit the contact form on this site, we collect the name, email address, and message you enter.
- Booking a call. When you book an introductory call, you provide your name, email address, and any details you add to the booking form. Scheduling is handled by Calendly.
- Email and phone. If you contact us directly, we receive whatever information you choose to include in that correspondence.
- Resource downloads and purchases. If you obtain a template or tool through our Gumroad storefront, Gumroad collects your purchase and contact details under its own privacy policy. We receive order and customer information from Gumroad.
Information collected during a client engagement
If you engage us for an assessment, implementation, governance, or advisory project, we will necessarily learn things about your organization — the AI tools in use, how work flows through your business, where sensitive data lives, and the risk posture we are hired to evaluate. This may include employee names and roles, tool inventories, policy documents, screenshots, and other material you provide or authorize us to gather.
We treat all of it as confidential. We use it only to deliver the engagement you hired us for. We do not sell it, publish it, or disclose client-specific findings without your prior written consent. This mirrors the confidentiality obligations in our service agreement, and where that agreement is more protective than this policy, the agreement governs.
Information collected automatically
- Server logs. Our web hosting provider records standard technical information when a page is requested — IP address, browser and device type, referring page, and timestamp. These logs are used for security and reliability, not for profiling visitors.
- Session storage. If you dismiss the promotional bar at the bottom of the page, your browser stores a single flag so it stays dismissed for the rest of your visit. It is cleared when you close the tab, it never leaves your device, and it identifies nothing about you.
What we do not do
This is the short section, and we would like to keep it that way:
- We do not run analytics, advertising pixels, or third-party tracking scripts on this site.
- We do not set advertising or tracking cookies.
- We do not sell, rent, or trade your personal information to anyone, for any purpose.
- We do not use client engagement data to train AI models, and we do not feed client-identifying material into third-party AI tools without your explicit authorization.
- We do not add you to a marketing list because you filled out the contact form. If we email you, it is a reply.
How we use information
We use the information described above only to:
- Respond to your inquiry and schedule conversations you have requested
- Scope, price, deliver, and support the services you engage us for
- Produce the deliverables you have contracted for, such as risk reports and action plans
- Send transactional messages related to an active engagement — scheduling, invoices, and deliverables
- Keep records required for accounting, tax, and legal purposes
- Maintain the security and integrity of this website
Service providers we rely on
We keep our vendor list deliberately short. Each of these providers processes a narrow slice of information on our behalf, under its own privacy policy:
- Formspree — receives and forwards contact form submissions.
- Calendly — handles scheduling for introductory and client calls.
- Gumroad — processes purchases of self-service templates and tools.
- Fontshare — serves the typefaces used on this site. Loading a font sends your IP address and browser details to Fontshare.
- Our web hosting provider — serves the site and maintains server logs.
- Payment and accounting providers — process invoices and payments for client engagements.
We do not authorize any of these providers to use your information for their own marketing.
When we disclose information
We disclose personal or client information only in these situations:
- With your consent, or at your direction.
- To the service providers listed above, limited to what each one needs to perform its function.
- When required by law — in response to a valid subpoena, court order, or other legal obligation. Where we are permitted to notify you first, we will.
- To protect rights and safety, where disclosure is necessary to investigate fraud, enforce our agreements, or protect against imminent harm.
- In a business transfer, if I Am Your Geek LLC is involved in a merger, acquisition, or sale of assets. Any successor would be bound by this policy for information received in that transfer.
How long we keep information
- Contact form and inquiry messages: retained while a conversation is active and for a reasonable period afterward, then deleted.
- Client engagement records and deliverables: retained for the duration of the engagement and afterward as needed for our professional records and legal obligations — typically up to seven years for contract, tax, and accounting purposes.
- Raw client source material such as exports, screenshots, and tool inventories: deleted or returned once the engagement is complete and the deliverables are accepted, unless you ask us in writing to retain it.
- Server logs: retained on the standard rolling schedule of our hosting provider.
If you would like your information deleted sooner, ask us. We will honor the request except where we are required to keep a record.
How we protect information
We apply the same practices we recommend to clients: access limited to those who need it, multi-factor authentication on business accounts, encrypted transport for this website and for file exchange, encrypted storage for client material, and vendor review before a new tool touches client data. No method of transmission or storage is perfectly secure, and we do not claim otherwise — but we do not ask clients to meet a standard we are unwilling to meet ourselves.
Your choices and rights
Whatever jurisdiction you are in, you may contact us at dan@aegisaiadvisory.com to:
- Ask what personal information we hold about you
- Request a correction to inaccurate information
- Request deletion of your information
- Ask us to stop contacting you
We will respond within 30 days. We will not charge you for a reasonable request, and we will not treat you differently for making one.
Residents of jurisdictions with specific privacy statutes — including California, and the EU and UK under the GDPR — may have additional rights, such as data portability, the right to object to certain processing, and the right to lodge a complaint with a supervisory authority. We extend the core rights listed above to everyone who asks, regardless of where they live. Because we do not sell personal information, there is no sale to opt out of.
Children's privacy
This website and our services are directed to businesses and the people who run them. We do not knowingly collect personal information from anyone under 16. If you believe a child has provided us information, contact us and we will delete it.
Links to other sites
This site links to external resources, including Calendly, Gumroad, YouTube, and LinkedIn. Once you follow a link off this site, this policy no longer applies — the destination's own privacy practices govern.
Changes to this policy
We will update this policy when our practices change. The effective date at the top of the page always reflects the current version. If a change materially affects how we handle information about you, we will make that clear rather than quietly revising the text.
Contact us
Questions about this policy, or about how we handle information in an engagement, go to a person, not a ticket queue:
- Dan Blomquist, Aegis AI Advisory
- Email: dan@aegisaiadvisory.com
- Phone: (810) 772-4157
- Mail: I Am Your Geek LLC, dba Aegis AI Advisory, Michigan, USA