1. Introduction

Young Services, LLC (referred to as Young Services, we, us, or our) respects your privacy and is committed to protecting your personal information. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you visit our website at www.youngservices.autos (the Site) and when you engage our computer systems design and consulting services.

We are a limited liability company registered in the State of Colorado with our principal office at 3766 Highway 82, Glenwood Springs, Colorado 81601, United States. As a provider of professional computer systems design and related technical services, we recognise our responsibility to handle personal data with care and in compliance with applicable privacy laws including the Colorado Privacy Act and other relevant United States federal and state regulations. Developed by Leigh Royal Kerwin, this policy reflects our commitment to data protection and transparency in our information practices.

Please read this Privacy Policy carefully. By using our Site or engaging our services, you acknowledge that you have read and understood the practices described in this policy. If you do not agree with any part of this policy, you should not use our Site or provide your personal information to us.

2. Information We Collect

We collect information that you provide directly to us, information that is collected automatically when you visit our Site, and information we may receive from third-party sources in certain circumstances.

2.1 Information You Provide Directly

When you fill out contact forms on our Site, submit enquiries, request service proposals, or communicate with us by email or telephone, we collect the personal information you provide. This typically includes your full name, email address, telephone number, company name, job title, and information about your organisation's technology requirements. If you enter into a service agreement with Young Services, we may collect additional business information including billing addresses, payment details, and authorised representative contact information necessary for contract administration and service delivery.

2.2 Information Collected Automatically

When you access our Site, we automatically collect certain technical information about your device and usage patterns. This includes your internet protocol address, browser type and version, operating system, referring website URLs, pages viewed on our Site, and the dates and times of your visits. This information is used for system administration, to analyse usage trends, and to improve the functionality and content of our Site. We use this data in aggregated form wherever possible.

2.3 Information from Third Parties

In some circumstances, we may receive information about you from third-party sources. This may occur when a client organisation provides us with contact details for their employees or representatives as part of an engagement, when we perform due diligence checks, or when we obtain publicly available business information to verify company credentials. We take steps to ensure that any third-party information was collected and shared in compliance with applicable laws.

3. How We Use Your Information

We use the personal information we collect for the following purposes, each grounded in a legitimate business need and, where required, supported by an appropriate legal basis.

3.1 Service Delivery and Contract Management

We use your information to respond to enquiries, prepare proposals, enter into service agreements, and deliver the computer systems design, integration, and consulting services you have engaged us to provide. This includes communicating about project progress, scheduling on-site visits, coordinating with your technical team, and providing documentation and support. Payment information is used exclusively for billing purposes related to services rendered.

Throughout the duration of any engagement, we maintain detailed project records that may include technical specifications, system architecture documentation, implementation notes, and correspondence related to service delivery. These records are maintained to ensure continuity of service, facilitate effective communication, and provide a comprehensive audit trail for both our team and your organisation. Upon conclusion of services, deliverables and associated documentation are provided in formats that enable your internal team to operate and maintain the systems independently.

3.2 Business Operations and Administration

Your information is used for internal administrative purposes including record keeping, quality assurance, compliance monitoring, and business planning. We maintain records of client contact history, project documentation, and service interactions to ensure continuity of service and effective account management.

These internal records also support our financial reporting obligations, insurance requirements, and professional liability coverage. In limited circumstances, anonymised project data may be used for internal training purposes or case study development, but only after all personally identifiable information has been removed and, where applicable, after obtaining written consent from the client organisation.

3.3 Website Analytics and Improvement

We analyse usage data to understand how visitors interact with our Site, which content is most useful, and how users navigate through our information. This helps us improve the Site structure, content relevance, and user experience. Analytics tools are configured to minimise collection of personally identifiable information where possible.

3.4 Security and Legal Compliance

We process personal information to maintain the security of our systems and networks, to investigate security incidents, to prevent fraudulent or unauthorised activity, and to comply with legal obligations applicable to our business operations.

3.5 Communications

With your consent or where we have a legitimate interest, we may use your contact information to send you information about our services, industry insights, or other communications we believe may be relevant to your organisation. You may opt out of these communications at any time by contacting us at code@youngservices.autos.

Service-related communications that are necessary for the fulfilment of our contractual obligations, including project updates, scheduling information, and technical notifications, are not subject to opt-out requests as they are essential to the services we provide. We distinguish clearly between operational communications required for service delivery and promotional communications that you may choose to receive or decline.

4. Disclosure of Your Information

We may share your personal information with the following categories of recipients. In each case, we ensure that appropriate safeguards are in place.

4.1 Service Providers

We engage third-party service providers to support our business operations, including cloud hosting, email communication, customer relationship management, payment processing, and professional advisory services. These providers are contractually bound to process your information only on our instructions and in compliance with applicable data protection laws.

Before engaging any service provider who may process personal information on our behalf, we conduct a due diligence assessment that includes reviewing their security practices, data handling procedures, and compliance certifications. We maintain a current register of all subprocessors and notify clients of any material changes to our subprocessor arrangements. Where a provider is located outside the United States, we ensure that appropriate transfer mechanisms are in place to maintain the required level of data protection.

4.2 Legal and Regulatory Disclosures

We may disclose your personal information where required by law, regulation, or legal process, including in response to subpoenas, court orders, or lawful requests from public authorities. Where permitted, we will notify you of such disclosures before they occur.

4.3 Business Transfers

In the event of a merger, acquisition, restructuring, or sale of assets involving Young Services, LLC, your personal information may be transferred to the acquiring or surviving entity. We will take steps to ensure continued protection of your information in accordance with this policy.

Where feasible, we will provide advance notice of any such transfer and update this Privacy Policy to reflect the new controlling entity. If the acquiring entity intends to use your information for purposes materially different from those described in this policy, we will require that they obtain your consent or provide you with the opportunity to opt out before any such new processing begins.

4.4 With Your Consent

We may share your information with third parties for purposes other than those described above where we have obtained your explicit consent. You may withdraw consent at any time, subject to legal or contractual restrictions.

5. Data Retention

We retain your personal information only for as long as necessary to fulfil the purposes for which it was collected, including satisfying legal, accounting, or reporting requirements. Client records are generally retained for the duration of our contractual relationship plus a period of seven years following the conclusion of services. This retention period supports potential legal claims, regulatory audit requirements, and the possibility of re-engagement for follow-on work. Enquiry records are retained for two years following the last contact, after which they are securely deleted or anonymised for analytical purposes.

Website access logs and analytics data are retained for a rolling period of 12 months. Financial records and tax documentation are retained for the period required by applicable tax laws, which may be longer than our standard retention periods. When retention periods expire, your personal information is securely destroyed using industry-standard methods, including secure erasure of electronic data and cross-cut shredding of physical records. We maintain a formal data retention schedule that identifies the retention period for each category of personal information we process.

6. Data Security

We implement technical and organisational security measures to protect your personal information against unauthorised access, alteration, disclosure, or destruction. These measures include encryption of data in transit using TLS 1.2 or higher, encryption of data at rest using AES-256, role-based access controls based on the principle of least privilege, multi-factor authentication for all administrative and remote access systems, regular security awareness training for all team members, automated intrusion detection and prevention systems, regular vulnerability scanning and penetration testing conducted by qualified third-party assessors, and documented incident response procedures that include specific notification timelines.

We also maintain comprehensive backup procedures, off-site data replication, and business continuity capabilities designed to ensure continued availability of critical systems in the event of a service disruption. Our team follows a formal change management process for all production systems, and access to environments containing personal information is logged and regularly audited. While we are committed to maintaining strong security practices, no method of electronic storage or transmission can be guaranteed as completely secure against all threats. In the event of a data breach affecting your personal information, we will notify you without undue delay and cooperate with applicable regulatory authorities as required by law.

7. International Data Transfers

Your personal information may be stored and processed in any country where we have facilities or engage service providers. When we transfer information across borders, we take steps to ensure it receives an equivalent level of protection as required under applicable data protection laws, including through standard contractual clauses where appropriate.

8. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal information. We will respond to any valid request within the timeframes required by applicable law, typically within 30 calendar days of receiving a completed and verified request. We may request additional information to verify your identity before processing certain requests, particularly those involving access to or deletion of personal information.

Right of Access: You may request confirmation of whether we hold personal information about you and request a copy of that information along with details about how it is processed, including the categories of information we hold, the purposes of processing, and any third parties with whom it has been shared.

Right to Rectification: You may request correction of inaccurate or incomplete personal information. Upon receiving a valid rectification request, we will update our records promptly and notify any third parties to whom we have disclosed the information.

Right to Deletion: You may request deletion of your personal information where it is no longer necessary for the purposes for which it was collected, where you withdraw consent on which processing is based, or where processing is otherwise unlawful. This right is subject to certain exceptions, including our need to retain information for legal compliance or defence of legal claims.

Right to Restrict Processing: You may request that we restrict processing of your information in certain circumstances, including while we verify the accuracy of contested information or where processing is unlawful but you prefer restriction over deletion.

Right to Data Portability: You may request a copy of your information in a structured, commonly used, and machine-readable format, and where technically feasible, to have that information transmitted directly to another controller.

Right to Object: You may object to processing of your information for direct marketing purposes at any time. Where processing is based on legitimate interests, you may also object on grounds relating to your particular situation, in which case we will cease processing unless we demonstrate compelling legitimate grounds that override your interests.

Right to Withdraw Consent: Where processing is based on consent, you may withdraw that consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.

To exercise any of these rights, please contact us using the information provided in the Contact section below. We will not discriminate against you for exercising any of your privacy rights under applicable law.

9. Cookies

Our Site may use cookies and similar tracking technologies to distinguish users and improve your browsing experience. Cookies are small text files stored on your device by your web browser. We use essential cookies necessary for the functioning of the Site and analytics cookies that help us understand how visitors interact with our content. You can control cookie preferences through your browser settings. We do not use cookies for behavioural advertising or cross-context tracking.

10. Third-Party Links

Our Site may contain links to third-party websites that are not owned or controlled by Young Services, LLC. We are not responsible for the privacy practices of these third-party sites. We encourage you to review the privacy policies of any third-party websites you visit.

11. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will post the revised policy on this page with an updated effective date. We encourage you to review this policy periodically.

12. Contact Information

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:

Young Services, LLC
3766 Highway 82
Glenwood Springs, Colorado 81601
United States

Email: code@youngservices.autos
Phone: +1 (639) 634-7204

We will acknowledge receipt of any privacy-related complaint or request within five business days and will work to resolve it within 30 calendar days.