Contents
- 1. Who We Are
- 2. Scope of This Notice
- 3. Information We Collect
- 4. Sources of Information
- 5. Why We Collect It
- 6. Categories of Recipients
- 7. Sale & Sharing of Personal Information
- 8. Your Privacy Rights
- 9. How to Exercise Your Rights
- 10. Direct Marketing & CAN-SPAM
- 11. Cookies & Tracking
- 12. Retention
- 13. Data Security
- 14. International Transfers
- 15. Children's Information
- 16. Changes
- 17. Complaints
Who We Are
CM Beyer North America LLC (“we”, “us”, “our”) is the North American subsidiary of CM Beyer Limited (UK). We are the business responsible for handling personal information collected through this website and through our US operations.
Scope of This Notice
This privacy notice applies to personal information collected by CM Beyer North America LLC:
- Through this website (cmbeyer.com)
- Through our request forms and email correspondence
- During the delivery of our services to US clients
- Through our marketing and business development activity
Where this notice contains state-specific sections (for example, California Privacy Rights), those sections apply only to residents of the relevant state. Other sections apply to all individuals whose personal information we process.
Information We Collect
The categories of personal information we collect, drawn from the CCPA category list:
We do not collect sensitive personal informationUnder the CPRA, sensitive personal information includes government IDs, financial account credentials, precise geolocation, and racial or ethnic origin. It also covers religious beliefs, union membership, contents of mail/email/text, genetic data, biometric identifiers, health information, and sexual orientation. The CPRA gives consumers the right to limit use of sensitive PI. in the ordinary course of business. If you choose to provide such information (for example, in a job application), we handle it under applicable state law, including the CPRA right to limit use and disclosure.
Sources of Information
We collect personal information from:
- Directly from you (forms, email, phone calls, meetings)
- Automatically through your interaction with our website (server logs, analytics)
- From publicly available business sources (LinkedIn, company websites, business directories)
- From service providers acting on our behalf
- From our UK parent company in connection with group-level operations
Why We Collect It (Business Purposes)
We use personal information for the following business purposes (CCPA categories):
- Performing services on behalf of our clients
- Providing customer service and responding to inquiries
- Processing payments and billing
- Conducting marketing and business development consistent with applicable law
- Security, fraud prevention and protection of legal rights
- Internal research and analytics to improve our services
- Compliance with legal obligations (IRS, FinCEN where applicable, state regulators)
- Processing job applications
Categories of Recipients
We disclose personal information to the following categories of third party for the business purposes described above:
- Service providers — hosting providers, email services, analytics platforms, accounting software (acting as contractors under written agreements that restrict use to specified purposes)
- Clients — where disclosure is necessary to deliver the services you have engaged us to provide
- Professional advisers — accountants, attorneys, and auditors acting under professional obligations of confidentiality
- Parent company — CM Beyer Limited (UK) for group-level reporting and consolidated services
- Regulators & law enforcement — where the law or legal process requires disclosure
- Business acquirers — in the event of a sale, merger, or restructuring, subject to confidentiality protections
Sale & Sharing of Personal Information
Because we do not sell or share for cross-context behavioral advertising, no “Do Not Sell or Share My Personal Information” link is operationally necessary. Residents of states that confer the right to opt out of sale or sharing may still submit a verifiable request at any time. We will treat it as confirmation that the opt-out applies to any future change in our practices.
Your Privacy Rights
Depending on the state where you live, you may have the following rights over your personal information:
Non-discrimination. We will not deny our services, charge different prices, or provide a different level of service because you have exercised your privacy rights. The only exceptions are those the relevant state law permits.
How to Exercise Your Rights
To exercise any of your rights, submit a verifiable consumer request through one of the following methods:
- Email: privacy@cmbeyer.com with subject line “Privacy Request – [Right]”
- Mail: Privacy Officer, CM Beyer North America LLC, 5830 E 2nd St, Ste 7000 #32543, Casper WY 82609, USA
- Form: Privacy Request form in our Support Center
We will acknowledge your request within ten (10) business days and respond substantively within forty-five (45) calendar days. Where required by law we may extend this period by 45 more days and will notify you of the extension and the reason.
We will verify your identity before disclosing any personal information. Verification may include matching information you provide with information we already hold. If we cannot verify your identity to the standard required by applicable law, we will deny the request and explain why.
Authorized agents. You may appoint an authorized agent to make a request on your behalf. The agent must provide a signed permission or power of attorney, and we may require you to verify your identity directly with us.
Direct Marketing & CAN-SPAM
Outreach to business contacts is part of how we operate. We send commercial email in compliance with the CAN-SPAM Act (15 U.S.C. § 7701 et seq.). That law requires accurate headers and routing information, clear identification of the message as an advertisement, and a valid physical postal address. It also requires a functional opt-out mechanism, honored within ten business days.
You may opt out of marketing at any time by replying to any marketing email with “unsubscribe”, by using the unsubscribe link in any email, or by contacting privacy@cmbeyer.com.
We conduct telephone outreach in compliance with the Telephone Consumer Protection Act (TCPA) and the Telemarketing Sales Rule (TSR), including the National Do Not Call Registry. We do not use automated dialers or pre-recorded messages.
Cookies & Tracking
Our website uses cookies and similar technologies (including localStorage) for essential functionality, analytics, and preference storage. We do not use third-party advertising cookies, and we do not share personal information for cross-context behavioral advertising.
You can manage your preferences through the cookie banner or your browser settings. For full detail see our Cookie Policy. We honor Global Privacy Control (GPC) signals from browsers as a request to opt out where applicable state law requires it.
Retention
We keep personal information only as long as necessary for the purposes we collected it for, or as US federal and state law requires:
Data Security
We use reasonable administrative, technical, and physical safeguards designed to protect personal information from unauthorized access, disclosure, alteration, and destruction:
- Encryption in transit (TLS/SSL) for all web traffic and email
- Access controls limiting data access to authorized personnel
- Regular security reviews of systems and processes
- Staff training on data handling and confidentiality
- Contractual safeguards with service providers
No method of transmission over the Internet or method of electronic storage is 100% secure. In the event of a security breach affecting your personal information, we will notify affected individuals and applicable regulators as state breach-notification laws require.
International Transfers
Our UK parent company CM Beyer Limited, and service providers located outside the United States, may receive or access some of the personal information we collect.
The UK International Data Transfer Agreement (IDTA) governs transfers to our UK parent. The UK provides a level of data protection that most major frameworks recognize as essentially matching their own. By using our services or website, you consent to the transfer of your information to the United States and, where applicable, to the United Kingdom.
Children's Information
Our services target businesses and business professionals. In line with the Children's Online Privacy Protection ActA US federal law (15 U.S.C. §§ 6501-6506) covering websites and online services directed to children under 13. We do not collect information that we know comes from children under 13. (COPPA), we do not collect personal information that we know comes from a child under 13. Under applicable state laws, including the CCPA/CPRA, we apply the same rule to minors under 16. If we learn that we have collected information from a child, we will delete it without delay.
Changes to This Notice
We may update this notice as our business or the law changes. The effective date above reflects the current version. Where changes are material, we will take reasonable steps to notify you — for example, by posting a prominent notice on our website or by email where we have your address.
Complaints
If you have a concern about how we handle your personal information, please contact privacy@cmbeyer.com first. We will acknowledge your complaint within ten business days and respond substantively within forty-five days.
If you are not satisfied with our response, you may complain to a relevant regulator:
1-877-FTC-HELP



