Last updated: [1/29/2026]
Noctua Advisory (“we”, “us”, “our”) is committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect personal data when you visit our website or contact us in relation to our advisory services. We handle personal data with care, confidentiality, and in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR) where applicable.
Data Controller: Noctua Advisory Contact Email: contact@noctuaadvisory.com. For the purposes of applicable data protection laws, Noctua Advisory acts as the data controller for personal data collected through this website.
We may collect and process the following categories of personal data: a) Information You Provide Voluntarily When you submit a form or contact us, we may collect: Full name, Email address, Phone number (if provided), Country or jurisdiction, Description of your situation, and any other information you choose to provide. b) Technical and Usage Information When you visit our website, we may automatically collect limited technical information such as: IP address, Browser type and device information, Pages visited and basic usage data. This information is collected solely to ensure website functionality, security, and performance.
We do not request or require sensitive access information. You should never submit passwords, private keys, recovery phrases, or account access credentials through our website or forms. Noctua Advisory will never request this information.
We use personal data strictly for legitimate and limited purposes, including: Reviewing and responding to inquiries, Conducting confidential case reviews, Communicating regarding potential or active engagements, Providing advisory and documentation services, Ensuring website security and functionality, Complying with legal, regulatory, and professional obligations. We do not sell personal data and do not use it for unsolicited marketing.
Where GDPR applies, we process personal data based on one or more of the following legal grounds: Consent – where you voluntarily submit information for an inquiry or case review; Legitimate interests – where processing is necessary to assess, manage, and support advisory engagements; Contractual necessity – where processing is required to perform services agreed with you; Legal obligations – where processing or retention is required by law or regulation. Where processing is based on consent, such consent may be withdrawn subject to legal, contractual, and professional obligations, including record-keeping, compliance, and the proper management of ongoing engagements.
We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including: Advisory and case management obligations, Legal and regulatory requirements, Professional record-keeping standards. Requests for deletion or restriction of personal data will be assessed in accordance with applicable laws and professional obligations and may not apply where retention is required.
We do not share personal data with third parties except in the following circumstances: With your explicit consent, Where required by law, regulation, or lawful authority, Where necessary to engage professional service providers (such as secure hosting or IT services), subject to confidentiality and data protection obligations. We do not disclose personal data for advertising, profiling, or commercial resale.
Where personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as standard contractual clauses or equivalent protections, in accordance with applicable data protection laws.
We implement appropriate technical and organizational measures to protect personal data against unauthorized access, loss, misuse, or disclosure. These measures include secure hosting environments, access controls, and confidentiality practices. However, no online transmission can be guaranteed to be completely secure, therefore we cannot assure their entire security.
Where applicable under GDPR or similar data protection laws, you may have the right to: request access to your personal data, request correction of inaccurate or incomplete data, request restriction of processing in certain circumstances, object to processing based on legitimate interests, where applicable, request deletion of personal data, subject to legal, contractual, and professional retention obligations. These rights are not absolute and may be limited where processing is necessary to comply with legal or regulatory requirements or to perform an ongoing engagement. To exercise these rights, please contact: contact@noctuaadvisory.com
Our website may use limited cookies strictly necessary for its operation, security, and basic functionality. We do not use cookies for advertising, profiling, or behavioral tracking purposes. If optional cookies (such as analytics) are introduced in the future, this Privacy Policy will be updated accordingly. You may control or disable cookies through your browser settings, although this may affect website functionality.
Our website may contain links to external websites. We are not responsible for the privacy practices or content of third-party sites and encourage you to review their privacy policies separately.
We may update this Privacy Policy from time to time to reflect legal, regulatory, or operational changes. Any updates will be posted on this page with a revised “Last updated” date.
If you have questions about this Privacy Policy or how personal data is handled, please contact:
Noctua Advisory
contact@noctuaadvisory.com