Privacy Policy
Terms of Use, Privacy Policy, EULA, and Data Protection Addendum last updated August 21, 2026.
We are committed to safeguarding the privacy of our website visitors. This policy sets out how we will treat your personal information.
Our website uses only cookies that are necessary to provide the service or that store a preference you have chosen; section 2 describes them. Cookies of that kind do not require consent, and we use no others.
(1) PERSONAL INFORMATION WE COLLECT
We may collect, store and use the following kinds of personal information:
(a) User account data:
Information collected to create and administer your VentureBlocks account. This includes your name, email, organization, and password which you use to log into your account. This also includes information about your use of VentureBlocks, including simulations played, including score, level, status, and all other attributes of our simulations. This also includes information relating to any transactions carried out between you and us on or in relation to this website, including information relating to any purchases you make of our goods or services such as order numbers, costs, bills, and invoices (we do not store credit card numbers; these are directly processed by Stripe).
We use SendGrid to manage the sending of emails from VentureBlocks. We share your name, email, and the contents of emails sent by VentureBlocks with this provider, because it is necessary to manage the proper sending of emails in addition to opt-out lists.
(b) Usage and security data:
Information collected to maintain security for our users, perform audits of our system and security procedure, identify suspicious behavior, and implement additional security measures as needed. This information includes login credentials: your email, username, and password, in addition to your IP address. This may be linked to your VentureBlocks account. Finally, we may also collect information about your computer and browser, including browser type and version, operating system, and other technical details as needed to diagnose and identify bugs, as well as to provide technical support to users.
We also collect information about crashes and bugs in our simulation software, which is automated and built into our simulation software (including code information, your simulation information, and a visual representation of the simulation you were playing at the time of a crash or bug; we do not capture screenshots of your whole screen, but rather a rendering of the simulation screen that you see in your browser window, and nothing else from the browser window, at the time of a bug)
We also collect information about email send times, content, opens, and clicks. This information is used to track whether emails are being delivered, and to inform professors if their students never received emails to sign up, or if emails did not go through.
(c) Analytics data:
Information collected to understand trends and website usage patterns. This includes information about your visits to and use of this website including your geographical location, browser type and version, operating system, referral source, length of visit, page views, website navigation and details. We use a self-hosted Matomo to analyze the use of this website, and anonymize any personal information such as IP address when gathering usage data.
(d) Sales and marketing data:
Information collected to contact potential users for the purposes of sales and marketing. Instructors and partners who provide their email on ventureblocks.com may receive occasional emails from us regarding how to use our system and the benefits of becoming a customer.
(e) Log data:
We automatically collect information about your computer hardware and software when you use our services or view our content. This information can include your IP address, browser name and type, operating system, domain names, Internet Service Provider (ISP), the files, images, videos, and content viewed on our website as well as when they were viewed, and referring website addresses. We collect this information for security purposes, and to be able to debug a serious malfunction of the website. We do not associate log data with the personal information of our users, such as name, email, or address, unless there has been a security breach or incident in which case we may do so to the extent allowed by law.
(f) Payment data:
We collect your payment information in the event that you choose to purchase our software. We need this information to process a payment from you. Such information includes your credit card details (name, number, expiration, code, address, etc) or your bank information in the event that you send us a wire transfer. This information is not stored by us, but rather by Stripe, our payment processor, or Axos Bank, our bank. We may, however, store invoices, which include personal information such as your name and contact information, along with purchase details such as total cost and the number of purchased licenses. Invoices are stored securely on our server (see section 8 for its location) and on a business computer located in the United States.
(g) correspondence and any other information that you choose to send to us
(2) COOKIES
A cookie consists of information sent by a web server to a web browser, and stored by the browser. The information is then sent back to the server each time the browser requests a page from the server. This enables the web server to identify and track the web browser.
We use first-party cookies only: session cookies, which keep you signed in and keep track of you whilst you navigate the website, and a preference cookie that remembers your language choice for up to six months. We do not use third party or tracking cookies. Some of our Data Processors set their own cookies when you use their services through our website — for example, Stripe sets cookies during checkout to prevent fraud — and they do so for the purposes described in their own privacy policies.
Our analytics runs on a self-hosted Matomo configured to collect only anonymous information about you, without cookies, with the intention of not collecting any personally-identifiable information about users.
Most browsers allow you to reject all cookies, whilst some browsers allow you to reject just third party cookies. Blocking all cookies will, however, have a negative impact upon the usability of many websites, including this one.
(3) HOW YOUR PERSONAL INFORMATION IS USED
Personal information submitted to us via this website will be used for the purposes specified in this privacy policy or in relevant parts of the website.
We may use your personal information to:
(a) administer the website
(b) improve your browsing experience by personalising the website
(c) enable your use of the services available on the website
(d) send to you goods purchased via the website, and supply to you services purchased via the website
(e) send statements, invoices, and receipts to you, and collect payments from you
(f) send you general (non-marketing) commercial communications
(g) send you email notifications which you have specifically requested
(h) send to you our newsletter and other marketing communications relating to our business which we think may be of interest to you by post or, where you have specifically agreed to this, by email or similar technology (you can inform us at any time if you no longer require marketing communications)
(i) deal with inquiries and complaints made by or about you relating to the website
(j) debug our software in the event of a bug or any code changes
(k) to process payments from you
Where you submit personal information for publication on our website, we will publish and otherwise use that information in accordance with the license you grant to us.
We will not without your express consent provide your personal information to any third parties for the purpose of direct marketing, with one exception: if you signed up for VentureBlocks through one of our third-party affiliates or resellers (individually referred to as "partner" and collectively referred to as "partners"), where they will be able to access your personal information for the purpose of billing and invoicing, or any other purpose described in their privacy policy (possibly including direct marketing).
In the event that you signed up for VentureBlocks through one of our partners, your personal information will be shared with that partner. You agree not to hold VentureBlocks Inc. responsible for the actions of partners and their usage of your personal information, except to the extent applicable law or the Data Privacy Framework Principles provide otherwise (see section 8 on our responsibility for onward transfers to agents acting on our behalf).
All our website financial transactions are handled through our payment services provider, Stripe. You can view the Stripe privacy policy at https://stripe.com/us/privacy. We will share information with Stripe only to the extent necessary for the purposes of processing payments you make via our website and dealing with complaints and queries relating to such payments.
Our simulation uses proprietary bug tracking software that notifies us of bugs and crashes. This notifies us of code issues, as well as details of your simulation, including but not limited to code being executed and a screen capture of your simulation window (only the simulation, nothing else in your browser or computer). We may use this to provide technical support to you, or notify you of a bug.
How long we keep your personal information. We keep your personal information for as long as your account is active, and then only for as long as we have a continuing purpose for it. In practice:
(a) Student accounts are deleted automatically. Your account is never deleted while you hold an unused license or a license that is still valid. Once you hold no unused license and no license that is still valid or that expired within the last 60 days, and you have not signed in for 30 days, we email you a warning; your account is then deleted once you have not signed in for 60 days and at least 30 days have passed since the warning. If you sign in with a username instead of an email address, there is no address to warn you at, so the account is deleted on the same schedule without that email; your instructor, who created the account, can tell you before it goes. Deletion removes your email address, username, password, name, and organization from your account, and the scoring records that remain no longer carry any of those account details. Text you typed while playing (such as interview questions, ideas, drafts, and notes) is kept as part of the gameplay record, as you wrote it, so anything you chose to type about yourself remains in that text. You do not have to ask for this and there is nothing to opt into; it happens on its own. Signing in is what keeps an account alive: every time you sign in, the deletion clock starts over, so an account you are still using is never deleted, and a fresh warning is sent before any later deletion.
(b) You can delete your account yourself at any time. Sign in, go to My Account, and use the delete-account option at the bottom of the page. This applies to student and instructor accounts alike. The one exception is an account you sign in to with a username, where your instructor created the account and holds your password: that option is not shown, because the account is not yours alone to close. Ask your instructor, or write to us at dpo@ventureblocks.com and we will delete it for you. It is deleted automatically in any case once it falls dormant, as described in (a).
(c) Instructor accounts (including the instructor accounts our reseller and affiliate partners hold) are kept while the account is open, because an instructor's licenses, courses, and student roster depend on it. Delete the account (see (b)) or write to us and we will delete it for you.
(d) Records we are required to keep. Invoices, receipts, and transaction records are retained for as long as tax, accounting, and audit law requires, even after an account is deleted.
(e) Backups. We retain secure daily backups that cannot be altered, so deleted information persists in backups until those backups themselves expire. See section 7(e).
You may request a copy of, correction of, or deletion of all your personal information at any time by contacting us at dpo@ventureblocks.com or by contacting our EU or UK representative (see section 12). This is not limited to users in the E.U. per GDPR regulations, but is rather available to all users.
(4) DISCLOSURES AND SHARING OF YOUR PERSONAL INFORMATION
We may disclose information about you to any of our employees, officers, agents, suppliers or subcontractors insofar as reasonably necessary for the purposes as set out in this privacy policy.
In addition, we may disclose your personal information:
(a) to the extent that we are required to do so by law
(b) in connection with any legal proceedings or prospective legal proceedings
(c) in order to establish, exercise or defend our legal rights (including providing information to others for the purposes of fraud prevention and reducing credit risk)
(d) to the purchaser (or prospective purchaser) of any business or asset which we are (or are contemplating) selling
(e) to any person who we reasonably believe may apply to a court or other competent authority for disclosure of that personal information where, in our reasonable opinion, such court or authority would be reasonably likely to order disclosure of that personal information
The website has the following Data Processors with whom personal information may be shared:
- Amazon Web Services, Inc. (product: Amazon Web Services), for hosting the infrastructure used by VentureBlocks. Your information is provided to servers owned by AWS because we are using their servers to host our websites and applications.
- OpenAI OpCo, LLC. (product: OpenAI API), for generating the in-simulation character responses and the feedback on your work. What is sent is the text you write while playing (the interview questions you ask, the idea you draft, and the resulting conversation), together with a pseudonymous identifier of the form vb-1234 that OpenAI uses for abuse prevention. We do not send your name, email address, or organization ourselves. What you type is another matter: the text you write is sent as you wrote it, so if you put your own name, your email address, or anything else about yourself into a question, an idea, or a draft email, that goes too. Parts of the simulation invite you to introduce yourself, so this is not unusual. We cannot filter it out, and what you choose to type is outside our control. Please do not enter personal information you would not want sent. What happens to that content at OpenAI: OpenAI states that content sent to its API is not used to train its models, is retained on its systems for up to 30 days for abuse monitoring, and is then deleted automatically, unless it is legally required to keep it longer or the content is flagged for review. There is no mechanism, for us or for you, to have a specific piece of content deleted from OpenAI's systems earlier than that; a deletion request made to us therefore covers our own systems and backups (see above), and the copies at OpenAI are deleted on OpenAI's own automatic schedule. This processing is not optional in the current simulation. Our earlier simulation used no AI at all, and an institution that did not want OpenAI involved could ask to use it; that version is discontinued for new courses, so any course created now uses AI. Existing courses already running the earlier version are unaffected and continue without AI. The advanced skills block has always used AI.
- Twilio Inc. (product: SendGrid), for managing the automated sending of electronic communications from the website. This includes notification emails, password resets, account and billing related emails, and other emails sent as a result of actions you take while using the website, or to notify you. We also use this Data Processor for marketing emails for instructor accounts and demo requests received on our website.
- Calendly LLC. (product: Calendly), for scheduling and hosting sales and support phone and video calls with instructors. This is necessary to schedule calls in a user friendly way.
- Stripe, Inc. (product: Stripe), for processing payments using credit or debit cards. This is necessary to support on-demand license purchases.
- Zoom Communications, Inc. (product: Zoom), for conducting video calls. This is necessary because when scheduling a call with us, users can indicate they wish to have a Zoom call.
- Proton AG (product: Proton Mail), a Swiss company whose servers are located in Switzerland, for sending and receiving electronic communications to/from customers and partners. Your name, your email address, and the contents of that correspondence are shared with this Data Processor for the purpose of communicating with you.
Upcoming change, effective 21 September 2026: we are replacing Proton AG with Fastmail Pty Ltd, an Australian company with data centers in the United States, as the provider hosting the mailboxes we use for correspondence. Until that date Proton AG remains our mail provider and nothing about your data changes. This is our correspondence email only. It is not the platform your students play on, and it is not the service that sends automated VentureBlocks email, which stays with Twilio, Inc. If you are an institution whose student data we process, Clause 9(a) of the Data Protection Addendum gives you until that date to object; the full notice is at the end of Annex III there.
This list is the same list that appears as Annex III (List of Sub-processors) of our Data Protection Addendum, which is the version with contractual force. If the two ever disagree, Annex III governs. Clause 9 of that Addendum sets out the notice you receive before we add a new sub-processor and your right to object.
We reserve the right to publish anonymous aggregate information about our users, which does not contain any personally identifiable information. For example, information such as "5,000 students used VentureBlocks this month" or "90% of students reach level 8 when playing". We may also publish aggregate information (not individual information) for other users playing the same simulation as you. For example, information such as "your classmates most frequently ask leading questions".
Except as provided in this privacy policy, we will not provide your information to third parties.
For student accounts, the instructor who added you to their simulation is able to see your name, email or username, whether you have an active license, whether you have played the simulation, an estimate of time spent playing, your current and high scores, your level, reflection question answers, notes taken, and other details of your simulation and gameplay. If your student account has a username instead of an email, and your password is managed by your instructor, they are able to see your password (this does not apply to users who use email to sign in). For student accounts, we will not disclose your information to other users of the website except for (a) the instructor who created your simulation ("your instructor"), and (b) any instructors or users for whom your instructor explicitly requested we grant access to your simulation analytics data (for example, if there are program administrators or co-instructors who your instructor wants to have access to your information). We may provide your instructor with additional simulation information upon your instructor's request. We may also provide information about your license to a partner account if that partner account is associated with your purchase of a license. This information will not include your name and contact information but rather information specific to your license, such as whether it was purchased, when it was purchased, whether it was activated, when it was activated, and other information. Partner accounts may include retail stores, online stores, publishers, and other VentureBlocks users who may resell VentureBlocks licenses.
For instructor accounts, when you add a student to your simulation, we send them your name by email, along with your course name, course section, and course number so that they are able to identify the purpose of the email. If an instructor or partner account transfers licenses to another instructor or partner account, the first and last name of the user who initiated the transfer is shared with the recipient, and the email of the recipient (which was entered by the sender) is sent to the sender in an email confirmation. If you use the feature that allows you to share a sign up link (URL) for students, anyone with access to the URL will be able to view your name, along with your course name, course section, and course number so that they are aware of the course they are registering for; in this case we do not guarantee the privacy of this URL and this personal information because it is up to you to keep it private. We may also provide information about licenses purchased by you to a partner account if that partner account is associated with your purchase of a license. This information will not include your name and contact information but rather information specific to your licenses, such as when they were purchased, whether they were assigned to students, whether they were activated, when they were activated, and other information. This information may also include a count of license information by instructor, for example to report to a partner how many instructors and students are using licenses sold by that partner. In this case your personal information is not shared and the existence of your account is used in a tally. Partner accounts may include retail stores, online stores, publishers, and other VentureBlocks users who may resell VentureBlocks licenses. We will not disclose your information to other users of the website, including other instructors, and also students (except for the aforementioned situations).
(5) SECURITY OF YOUR PERSONAL INFORMATION
We will take reasonable technical and organizational precautions to prevent the loss, misuse or alteration of your personal information.
We will store all the personal information you provide on our secure (password- and firewall- protected) servers. All electronic transactions you make to or receive from us will be encrypted using SSL technology, with the possible exception of email as some email services do not use SSL and we do not have control over this.
Of course, data transmission over the internet is inherently insecure, and we cannot guarantee the security of data sent over the internet.
You are responsible for keeping your password and user details confidential. We will not ask you for your password (except when you log in to the website or app).
(6) LEGAL BASIS FOR COLLECTING AND PROCESSING YOUR PERSONAL INFORMATION (EEA, UK, AND SWISS VISITORS/USERS ONLY) UNDER GDPR
This section applies if you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland when we collect your personal information. It applies because of where you are, not because of your nationality. GDPR protects anyone in these territories regardless of citizenship, and does not attach to citizens who are located elsewhere.
Which role we play depends on whose data it is, and on what we are doing with it. VentureBlocks Inc. acts in two different capacities, and it matters which one applies to you:
(a) We are the Data Controller for information we decide the purposes and means of processing ourselves. This covers instructor accounts (including those held by reseller and affiliate partners), students who buy their own license directly from us, visitors to our website, and our own sales, marketing, billing, security, and support activity. We determine what is collected and why, and the legal basis is described below.
(b) We are a Data Processor for student personal information that a school, university, or other institution provides to us or has us collect so that its students can use VentureBlocks, that is, where an instructor purchases licenses and adds students to a course. In that case the institution is the Data Controller, it decides what is collected and why, and we process that information on its instructions and as described in our Data Protection Addendum, which supplements this Privacy Policy. If you are such a student and you want your information corrected or erased, you may come to us directly. We will tell your institution and act on your request in coordination with it, because the institution decides what happens to the information it asked us to hold. You can also go to your institution directly, and you can always delete your own account yourself (see section 3).
Both roles can apply to the same piece of information at the same time. Where we act as a Data Processor for an institution under (b), we also act as a Data Controller for that same information to the limited extent that we process it for security, fraud prevention, billing, support, compliance with our legal obligations, and maintaining and improving the service, including the anonymous aggregate information described in section 4. We decide the purposes and means of that limited processing ourselves, and the legal basis for it is described below. Everything else we do with that information, we do on the institution's instructions. Please see the bottom of this page for contact information for our Data Protection Officer.
Our legal basis for collecting, processing, and otherwise using the personal information described on this page depends on the specific personal information in question and the context in which we collect it. However, we will normally collect personal information from you only where we have consent to do so, where we require the personal information to perform a contract with you, or where the processing is in our legitimate interests and not overridden by your data protection interests or fundamental rights and freedoms. In some cases, we may also have a legal obligation to collect personal information from you.
(7) REVIEWING, UPDATING, AND REMOVING YOUR PERSONAL INFORMATION UNDER GDPR
You have the following GDPR data protection rights:
(a) You may request us to provide you with any personal information we hold about you.
(b) You may request us to update any personal information we hold about you.
(c) You may object to processing of your personal information, ask us to restrict processing of your personal information or request portability of your personal information.
(d) If the personal information we have collected about you was collected with your consent, you may withdraw your consent at any time. Doing so will not affect the lawfulness of any data collection or processing prior to when consent was withdrawn, and it will not affect the processing of your personal information on other legal grounds than consent.
(e) You may request we delete your personal information from our system. This applies to every kind of user — student and instructor alike, including the instructor accounts partners hold.
You do not have to ask, in most cases. Student accounts are deleted automatically once they fall dormant, and student and instructor accounts can be deleted from the My Account page at any time, except for username accounts held by an instructor. See section 3.
Exercising this right is free of charge. Deleting personal information will immediately invalidate all licenses for students whose information is destroyed and they will no longer have access to any part of the website services; the unused portion of a license that deletion invalidates is not refunded. Destroying data will not destroy it from our data backups; we retain secure daily backups of all user data, which cannot be altered, and therefore student data cannot be destroyed from backups until the backups themselves are destroyed. For this reason the deletion of personal information from our systems and backups will take us 30 days.
You may also have the right to make a GDPR complaint to the relevant Supervisory Authority. A list of Supervisory Authorities is available here: https://ec.europa.eu/justice/data-protection/bodies/authorities/index_en.htm. If you need further assistance regarding your rights, please contact us using the contact information provided below and we will consider your request in accordance with applicable law. In some cases our ability to uphold these rights for you may depend upon our obligations to process personal information for security, safety, fraud prevention reasons, compliance with regulatory or legal requirements, or because processing is necessary to deliver the services you have requested. Where this is the case, we will inform you of specific details in response to your request.
(8) FOR EU, SWISS, and UK INDIVIDUALS: DATA PRIVACY FRAMEWORK NOTICE FOR PERSONAL DATA TRANSFERS TO THE UNITED STATES.
VentureBlocks Inc. complies with the EU-U.S. Data Privacy Framework program (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework program (Swiss-U.S. DPF) as set forth by the U.S. Department of Commerce. VentureBlocks Inc. has certified to the U.S. Department of Commerce that it adheres to the EU-U.S. Data Privacy Framework Principles (EU-U.S. DPF Principles) with regard to the processing of personal data received from the European Union in reliance on the EU-U.S. DPF and from the United Kingdom (and Gibraltar) in reliance on the UK Extension to the EU-U.S. DPF. VentureBlocks Inc. has certified to the U.S. Department of Commerce that it adheres to the Swiss-U.S. Data Privacy Framework program Principles (Swiss-U.S. DPF Principles) with regard to the processing of personal data received from Switzerland in reliance on the Swiss-U.S. DPF. If there is any conflict between the terms in this privacy policy and the EU-U.S. DPF Principles and/or the Swiss-U.S. DPF Principles, the Principles shall govern. To learn more about the Data Privacy Framework (DPF) program, and to view our certification, please visit https://www.dataprivacyframework.gov/.
Your personal information and all data collected from you is stored on servers hosted by Amazon Web Services in the eu-west-3 (Paris, France) region. Our application servers and our databases are in the European Union; they are not in the United States. Access to all data is restricted and limited to members of VentureBlocks Inc.
Two things do leave that region, and we describe them here so the picture is complete. First, some of the Data Processors listed in section 4 are located in the United States or elsewhere, and personal information reaches them as described in that section; those are onward transfers, and the paragraph below on onward transfers explains our responsibility for them. Second, invoices and other business records may also be held on a business computer in the United States, as described in section 1(f).
The Federal Trade Commission has jurisdiction over VentureBlocks Inc. compliance with the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF.
Pursuant to the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF, EU, UK, and Swiss individuals have the right to obtain our confirmation of whether we maintain personal information relating to you in the United States. Upon request, we will provide you with access to the personal information that we hold about you. You may also may correct, amend, or delete the personal information we hold about you. An individual who seeks access, or who seeks to correct, amend, or delete inaccurate data transferred to the United States under the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, or the Swiss-U.S. DPF, should direct their query to dpo@ventureblocks.com. If requested to remove data, we will respond within a reasonable timeframe.
We will provide an individual opt-out or opt-in choice before we share your data with third parties other than our agents, or before we use it for a purpose other than which it was originally collected or subsequently authorized. To request to limit the use and disclosure of your personal information, please submit a written request to dpo@ventureblocks.com.
In certain situations, we may be required to disclose personal data in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.
In the context of an onward transfer, VentureBlocks Inc. has responsibility for the processing of personal information it receives under the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF, and subsequently transfers to a third party acting as an agent on its behalf. The EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF organization shall remain liable under the Principles if its agent processes such personal information in a manner inconsistent with the Principles, unless the organization proves that it is not responsible for the event giving rise to the damage.
In compliance with the EU-US Data Privacy Framework Principles, VentureBlocks Inc. commits to resolve complaints about your privacy and our collection or use of your personal information transferred to the United States pursuant to the DPF Principles. European Union, Swiss and United Kingdom individuals with DPF inquiries or complaints should first contact VentureBlocks Inc. at:
By mail:
VentureBlocks Inc.
Attn: Privacy Officer
40 Alyssa Ct
Southington, CT 06489
USA
By email:
VentureBlocks Inc. has further committed to refer unresolved privacy complaints under the DPF Principles to an independent dispute resolution mechanism, Data Privacy Framework Services, operated by BBB National Programs. If you do not receive timely acknowledgment of your complaint, or if your complaint is not satisfactorily addressed, please visit https://bbbprograms.org/programs/all-programs/dpf-consumers/ProcessForConsumers for more information and to file a complaint. This service is provided free of charge to you.
If your DPF complaint cannot be resolved through the above channels, under certain conditions, you may invoke binding arbitration for some residual claims not resolved by other redress mechanisms. See https://www.dataprivacyframework.gov/framework-article/ANNEX-I-introduction
(9) THIRD PARTY WEBSITES
The website contains links to other websites. We are not responsible for the privacy policies or practices of third party websites.
(10) POLICY AMENDMENTS
We may update this privacy policy from time-to-time by posting a new version on our website. A revised version applies from the date it is published, which is the same way our Terms of Use, our End User License Agreement, and our Data Protection Addendum are amended. You should check this page occasionally to ensure you are happy with any changes.
One change does not work that way: adding a sub-processor to Annex III of the Data Protection Addendum takes effect only after the prior notice required by Clause 9(a) of that Addendum, which gives you a right to object before the change happens.
We may also notify you of changes to our privacy policy by email.
(11) CONTACT INFORMATION
If you have any questions about this privacy policy or our treatment of your personal information, please contact us using the information below.
By mail:
VentureBlocks Inc.
Attn: Anton Yakushin
40 Alyssa Ct
Southington, CT 06489
USA
By email:
(12) GDPR CONTACTS
Every privacy matter in this policy routes to one address: dpo@ventureblocks.com. That is where to write to exercise any of your rights, to raise a Data Privacy Framework inquiry or complaint, or to object to a change of sub-processor. legal@ventureblocks.com is for legal correspondence generally, and support@ventureblocks.com is our general support address. All three are monitored by us, and a data protection request that arrives at any of them will be routed to our Data Protection Officer. We respond to requests concerning your rights within one month of receipt; where a request is particularly complex, or we have received several from you, we may extend that period by up to two further months, and we will tell you within the first month if we do. In every case the deadline runs from when your request first reached us, not from when it was routed.
Data Protection Officer (DPO):
By mail:
VentureBlocks Inc.
Attn: Anton Yakushin
40 Alyssa Ct
Southington, CT 06489
USA
By email:
Representative for data subjects in the EU and UK:
We value your privacy and your rights as a data subject and have therefore appointed Prighter Group with its local partners as our privacy representative and your point of contact for the following regions:
- United Kingdom (UK)
- European Union (EU)
- Switzerland
Prighter gives you an easy way to exercise your privacy-related rights (e.g. requests to access or erase personal data). If you want to contact us via our representative, Prighter or make use of your data subject rights, please visit the following website: https://prighter.com/q/18109389109
(13) DATA PROTECTION ADDENDUM
This Privacy Policy is supplemented by the Data Protection Addendum, which applies where we act as a Data Processor on behalf of an institution (see section 6).