Part One
Privacy Policy
Last Updated: March 2026
Aztec Slim ("we," "us," or "our") operates aztecslim.com (the "Site"). This Privacy Policy explains what information we collect, why we collect it, how we use and protect it, and your rights regarding your personal data. We are committed to handling your information with transparency, care, and respect.
1. Who This Policy Applies To
This Privacy Policy applies to all visitors to our website, all individuals who book a discovery call or diagnostic session, all clients who engage our consulting and automation services, and all individuals who communicate with us via email, contact forms, or any other channel.
By using our Site or services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with any part of this policy, please do not use our Site or services.
2. Information We Collect
2.1 Information you provide directly
We collect information you provide when you interact with us, including:
- Contact and identity information — your name, email address, phone number, and company name when you submit a contact form, book a call, or otherwise reach out to us
- Booking and scheduling information — your name, email, and calendar preferences when you book a fit call or diagnostic session through our scheduling platform (Cal.com)
- Payment information — billing details when you pay for a diagnostic session or service engagement. Note: we do not store full credit card numbers on our servers. Payment processing is handled by Stripe, Inc., a PCI-DSS compliant processor. Stripe collects and processes your payment details directly under its own privacy policy (stripe.com/privacy)
- Business information — details about your business, operations, workflows, and processes that you share during discovery calls, diagnostic sessions, or as part of an engagement
- Communications — the content of emails, messages, or other correspondence you send to us
2.2 Information we collect automatically
When you visit our Site, we and our third-party service providers may automatically collect certain technical information, including:
- Usage data — pages visited, time spent on each page, links clicked, and navigation patterns
- Device and browser information — your IP address, browser type and version, operating system, device type, and screen resolution
- Referral information — the URL or platform that directed you to our Site
- Cookie data — see Section 5 (Cookies and Tracking) for full details
- Advertising pixel data — we use the Google Ads pixel and Meta Pixel (Facebook/Instagram), which may collect your IP address, browser information, and behavioral data on our Site to help us measure ad campaign effectiveness and deliver relevant advertising
2.3 Information we do not collect
We do not collect sensitive personal information such as government identification numbers, financial account credentials, medical information, or biometric data. We do not knowingly collect any information from children under the age of 13. If you believe a minor has provided us with personal information, please contact us immediately at paul@aztecslim.com so we can delete it.
3. How We Use Your Information
We use the information we collect for the following purposes:
| Purpose | Description |
|---|---|
| To provide our services | To deliver consulting, workflow design, automation development, and related services you have engaged us for |
| To communicate with you | To respond to inquiries, confirm bookings, send session summaries, proposals, and project-related communications |
| To process payments | To charge for diagnostic sessions and engagement fees through our payment processor |
| To improve our Site | To understand how visitors use our Site, identify areas for improvement, and optimize user experience |
| To send relevant communications | To share updates, relevant content, or information about our services — only with your consent where required by law |
| To comply with legal obligations | To meet applicable legal, regulatory, or contractual requirements and to protect our legal rights |
| To protect security | To detect, prevent, and respond to fraud, abuse, or security incidents affecting our Site or services |
4. Legal Basis for Processing (GDPR)
If you are located in the European Economic Area (EEA) or the United Kingdom, we process your personal data only when we have a valid legal basis. Depending on the processing activity, our legal basis may be:
- Contract performance — processing necessary to fulfill a service agreement with you, including consulting engagements and diagnostic sessions
- Legitimate interests — processing necessary for our legitimate business interests, such as improving our services, communicating with prospective clients, and maintaining our Site security, where those interests are not overridden by your rights
- Consent — where you have given clear, informed consent for a specific processing activity, such as receiving marketing communications
- Legal obligation — processing required to comply with applicable laws or regulations
You may withdraw consent at any time where consent is the legal basis for processing. Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.
5. Cookies and Tracking Technologies
5.1 What we use
Our Site may use cookies, web beacons, and similar tracking technologies to operate the Site, understand user behavior, and improve our services. Cookies are small text files stored on your device.
| Cookie Type | Description |
|---|---|
| Essential cookies | Required for the Site to function. These cannot be disabled without affecting core functionality, including booking integrations and form submissions. |
| Analytics cookies | Used to understand how visitors interact with our Site — pages visited, time spent, traffic sources. We use this data in aggregate to improve the Site. |
| Preference cookies | Used to remember your settings or choices on the Site, such as language preferences. |
| Marketing cookies | Used to deliver relevant advertising or track the effectiveness of campaigns. We use the Google Ads pixel and Meta Pixel (Facebook/Instagram) for this purpose. These pixels may share data with Google LLC and Meta Platforms, Inc. to enable ad targeting and conversion tracking. |
5.2 Third-party tracking pixels
Our Site uses the following third-party tracking technologies:
- Google Ads Pixel / Google Analytics — operated by Google LLC. Used to measure the performance of our ad campaigns, understand Site traffic, and build retargeting audiences. Google may use this data in accordance with its own privacy policy (policies.google.com/privacy). You can opt out via Google's ad settings or the Google Analytics Opt-out Browser Add-on
- Meta Pixel (Facebook/Instagram) — operated by Meta Platforms, Inc. Used to track conversions from our Meta ad campaigns, optimize ad delivery, and build custom audiences. Meta may use this data in accordance with its Data Policy (facebook.com/privacy/policy). You can manage your ad preferences at facebook.com/ads/preferences
Data collected by these pixels may be used by Google and Meta to personalize ads you see on their own platforms. We do not control how Google or Meta use data collected through their respective pixels beyond the purposes for which we deploy them.
5.3 Your cookie choices
You may control cookies through your browser settings. Most browsers allow you to refuse cookies, delete existing cookies, and be notified when new cookies are set. Note that disabling certain cookies may affect the functionality of our Site. Where required by law, we will ask for your consent before placing non-essential cookies on your device.
6. How We Share Your Information
We do not sell, rent, or trade your personal information to third parties for their marketing purposes. We may share your information only in the following circumstances:
6.1 Service providers
We work with trusted third-party service providers who assist us in operating our business. These may include:
- Cal.com — scheduling platform used to manage appointment bookings. Collects your name, email, and calendar availability
- Stripe, Inc. — payment processor used to securely collect and process payments. Stripe handles payment data directly under PCI-DSS standards and its own privacy policy (stripe.com/privacy)
- Vercel, Inc. — cloud platform used to host and serve our website. Vercel may collect server logs including IP addresses and request metadata as part of normal hosting operations, in accordance with its privacy policy (vercel.com/legal/privacy-policy)
- Google LLC — Google Ads pixel and Google Analytics are used to measure Site traffic and ad campaign performance. Data is processed in accordance with Google's privacy policy (policies.google.com/privacy)
- Meta Platforms, Inc. — Meta Pixel is used to track ad conversions and build advertising audiences on Facebook and Instagram. Data is processed in accordance with Meta's Data Policy (facebook.com/privacy/policy)
- Trigger.dev — background workflow automation platform used to process certain internal operations triggered by user actions (such as form submissions). Only the minimum data required to complete the triggered task is passed to Trigger.dev
- Email and communication platforms — to send and manage correspondence
- CRM and project management tools — to manage client relationships and delivery
These service providers are contractually obligated to use your information only for the purpose of providing services to us and to maintain appropriate security standards.
6.2 Business transfers
In the event of a merger, acquisition, sale of assets, or other business transfer, your information may be transferred as part of that transaction. We will provide notice before your personal information becomes subject to a materially different privacy policy.
6.3 Legal compliance
We may disclose your information if required to do so by law, court order, or governmental authority, or if we believe in good faith that such disclosure is necessary to protect the rights, property, or safety of Aztec Slim, our clients, or the public.
6.4 With your consent
We may share your information for any other purpose with your explicit prior consent.
7. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law. Our general retention practices are:
- Prospective client information — retained for up to 24 months from last contact, or until you request deletion
- Active client information — retained for the duration of the engagement plus 5 years to comply with contractual and legal obligations
- Payment records — retained for 7 years to meet tax and financial regulatory requirements
- Website analytics data — retained in aggregate, anonymized form for up to 36 months
- Email communications — retained for the duration of our relationship plus 3 years
When information is no longer needed, we delete it securely or anonymize it so that it can no longer be associated with you.
8. Data Security
We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, disclosure, alteration, or destruction. These measures include:
- Encrypted data transmission using industry-standard SSL/TLS protocols
- Access controls that limit who within our organization can access personal data
- Secure third-party platforms with their own security certifications and protocols
- Regular review of our security practices and service provider agreements
No method of data transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee absolute security. In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and relevant authorities as required by applicable law.
9. Your Rights
Depending on your location and applicable law, you may have some or all of the following rights regarding your personal information:
| Right | Description |
|---|---|
| Right to access | You may request a copy of the personal information we hold about you |
| Right to correction | You may request that we correct inaccurate or incomplete personal information |
| Right to deletion | You may request that we delete your personal information, subject to certain legal exceptions |
| Right to restrict processing | You may request that we limit how we use your personal information in certain circumstances |
| Right to data portability | You may request that we provide your personal information in a structured, machine-readable format |
| Right to object | You may object to processing based on legitimate interests or for direct marketing purposes |
| Right to withdraw consent | Where we rely on consent, you may withdraw it at any time without affecting prior lawful processing |
| Right to non-discrimination | We will not discriminate against you for exercising any of these rights (California residents — CCPA) |
To exercise any of these rights, please contact us at paul@aztecslim.com. We will respond within 30 days. We may ask you to verify your identity before processing your request. If you are located in the EEA or UK and are not satisfied with our response, you have the right to lodge a complaint with your local data protection supervisory authority.
10. California Privacy Rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) provide you with additional rights regarding your personal information. We do not sell your personal information to third parties. However, our use of the Meta Pixel and Google Ads pixel may constitute "sharing" of personal information for cross-context behavioral advertising under CCPA. You have the right to opt out of such sharing by managing your preferences through your browser's cookie controls or by contacting us directly at paul@aztecslim.com.
California residents may submit requests to know, delete, or correct their personal information by contacting us at paul@aztecslim.com. We will not discriminate against you for exercising your California privacy rights.
11. Third-Party Links
Our Site may contain links to third-party websites, platforms, or services — including scheduling tools, payment processors, and resource links. This Privacy Policy does not apply to those third-party sites. We encourage you to review the privacy policies of any third-party sites you visit. We are not responsible for the privacy practices or content of external sites.
12. International Data Transfers
If you are accessing our Site or services from outside the United States, please be aware that your information may be transferred to, stored, and processed in the United States, where our servers and operations are based. Data protection laws in the United States may differ from those in your country. By using our Site or services, you consent to the transfer of your information to the United States in accordance with this Privacy Policy. Where required, we implement appropriate safeguards for international transfers, such as standard contractual clauses.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, services, or applicable law. When we make material changes, we will update the "Last Updated" date at the top of this policy and, where appropriate, provide additional notice such as a banner on our Site or an email to clients. Your continued use of our Site or services after the effective date of any changes constitutes your acceptance of the updated policy.
14. Contact Us — Privacy
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
| Company | Aztec Slim |
| paul@aztecslim.com | |
| Website | aztecslim.com |
| Mailing address | 3843 Barrington St, APT 240, San Antonio, TX 78217 |
| Response time | We aim to respond to all privacy inquiries within 30 business days |