Privacy Policy

Effective September 2026 · Sui-Generis LLC operating as Bureau483
This privacy policy was written for clarity, not to obscure. If you have questions, email [email protected].
Table of Contents
  1. Introduction
  2. Legal Entity and Contact
  3. Information We Collect
  4. How We Collect It
  5. How We Use It
  6. Cookies and Analytics
  7. Data Sharing and Subprocessors
  8. Data Retention
  9. Security
  10. Your Rights
  11. Children
  12. Changes
  13. Contact
1. Introduction

Bureau483 (operated by Sui-Generis LLC) provides FDA enforcement intelligence to life science consulting firms. This policy explains what information we collect, how we use it, and your rights.

2. Legal Entity and Contact

We respond to inquiries within 5 business days.

3. Information We Collect
  • Account and contact: name, email, firm name, role
  • Form submissions: territory interest, services offered, messages
  • Usage data: pages visited, features used, session duration
  • Device and browser: browser type, operating system, IP address
  • Communications: emails and support requests you send us
  • Payment: processed by Stripe — Bureau483 does not store card numbers or payment details
4. How We Collect It
  • Directly from you via forms and account creation
  • Automatically via analytics (privacy-respecting, no advertising trackers)
  • From payment processor Stripe when you complete a purchase
5. How We Use It
  • To deliver weekly intelligence reports and dashboard access
  • To communicate about your territory license
  • To respond to inquiries and support requests
  • To improve the product based on usage patterns
  • To comply with legal obligations

We do not sell your personal information. We do not use your information to train AI models. We do not share your information with advertisers.

6. Cookies and Analytics
  • We use privacy-respecting analytics to understand how the site is used
  • We do not use advertising cookies or cross-site tracking
  • You may opt out of analytics by contacting [email protected]
7. Data Sharing and Subprocessors

We share data only with these service providers:

  • Stripe — payment processing
  • Google Workspace — email and calendar ([email protected])
  • Cloudflare — hosting, access control, security, DNS
  • Hetzner — server infrastructure (Germany)

We do not share data with advertisers, data brokers, or third-party marketers.

8. Data Retention
  • Account and license data: retained while active plus 12 months after termination
  • Form submissions and inquiries: 24 months
  • Usage logs: 6 months
  • Payment records: as required by law
9. Security
  • All data transmitted over HTTPS
  • Dashboard protected by Cloudflare Access with email one-time PIN
  • Access controls on all internal systems
  • We cannot guarantee absolute security — no system can
10. Your Rights

You may at any time:

  • Request access to your personal data
  • Request correction of inaccurate data
  • Request deletion of your data
  • Opt out of marketing communications
  • California residents have additional rights under CCPA

Contact [email protected] for any request. We respond within 5 business days.

11. Children

Bureau483 is a B2B product not directed at anyone under 18. We do not knowingly collect data from minors.

12. Changes

We will notify territory license holders of material changes by email at least 14 days before they take effect. Continued use after changes constitutes acceptance.

13. Contact

[email protected] · bureau483.com · Rocky Top, Tennessee