Taking too long? Close loading screen.
Enshored

Privacy Policy

Effective as of 8/1/2026

Privacy Statement

Enshored, LLC and its subsidiaries and affiliates (“Enshored,” “we,” “us,” or “our”) are committed to conducting business with integrity and responsibility. Protecting the privacy and security of your personal data is central to our values and our legal commitments.

To fulfill this promise, we maintain a comprehensive data privacy program designed to respect and safeguard individual rights. Because data privacy requires strong data protection, we implement robust technical, physical, and organizational security measures to preserve the confidentiality, integrity, and availability of the personal information we process.

Contents

I. About Us

Enshored is a global Business Process Outsourcing (BPO) company providing customer experience (CX), content moderation, sales and marketing support, and back-office solutions, among others. We serve business clients across diverse industries worldwide, including digital health, e-commerce, fintech, SaaS, social media, and travel technology.

When we refer to our “Services” in this Privacy Notice, we mean:

  • Our Digital Platforms (“Sites”): Websites, external platforms, and apps owned and controlled by us, including https://www.enshored.com/.
  • Outsourced BPO Solutions: Customer service, content moderation, sales and marketing, and back-office support delivered to our corporate Clients.
  • Marketing & Business Development: Campaigns, websites, social media activities, marketing calls, and emails created or sent by Enshored (“Marketing”).

Our Services are intended for a business and general audience and are not directed to children under the age of 13.

Our Roles Under Data Privacy Laws

Depending on how we interact with your personal information, Enshored fulfills two distinct roles under applicable Data Privacy Laws:

  • As a Data Controller: We act as a Controller when collecting and processing personal information related to our prospective and existing Clients, Client representatives, employees, vendors, and suppliers. This Privacy Notice applies directly to data processed in this capacity.
  • As a Data Processor: We act as a Processor when processing personal information on behalf of our Clients—such as data belonging to our Clients’ end-customers, users, or employees. In these cases, we process data strictly according to a written contract with the Client (the Data Controller). The Client’s Privacy Notice governs that data, rather than this document.

II. Scope of this Privacy Notice

We value transparency and want you to understand how we collect, use, store, share, protect, and dispose of your personal information.

Who This Notice Applies To

This Privacy Notice applies when Enshored acts as a Data Controller, which includes personal information collected from:

  • Website Visitors: Individuals who visit or interact with Enshored’s Sites.
  • Clients & Business Partners: Representatives, officers, employees, partners, independent contractors, and authorized users of our corporate Clients.
  • Prospective Clients: Representatives, officers, and employees of prospective clients.
  • Vendors, Service Providers: Representatives, officers, and employees of our vendors, suppliers and service providers.

Note for Client End-Users: If you are an end-customer, user, or employee of an Enshored Client (a “Client Data Subject”), Enshored acts as a Data Processor on behalf of that Client. Your personal information is governed by your relationship with that Client and their privacy notice, rather than this document.

Exclusions

This Privacy Notice does not cover:

  • Practices of third-party companies or individuals that Enshored does not own, manage, or control.
  • External third-party websites, applications, or platforms linked to or accessible from our Sites.

Applicable Privacy Laws

This notice complies with applicable data protection laws across our operating jurisdictions, including:

  • Philippines: Data Privacy Act of 2012 (RA 10173).
  • European Union & United Kingdom: EU General Data Protection Regulation (EU GDPR), UK GDPR, and the UK Data Protection Act 2018.
  • Canada: Personal Information Protection and Electronic Documents Act (PIPEDA), Alberta and British Columbia PIPA, and Quebec’s Law 25 and other provincial privacy laws to the extent they take effect.
  • United States: Enacted state privacy laws, including California (CCPA/CPRA), Colorado, Connecticut, Delaware, Florida, Indiana, Iowa, Kentucky, Maryland, Minnesota, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Rhode Island, Tennessee, Texas, Utah, and Virginia and other state privacy laws to the extent they take effect.

Key Definitions

  • Personal Information / Personal Data: Any information that identifies, relates to, describes, or could reasonably be linked (directly or indirectly) with a particular individual or household. It excludes anonymized, de-identified, aggregated, or publicly available data exempted by law.
  • Sensitive Personal Information: High-risk data requiring enhanced safeguards and subject to stricter regulatory controls (e.g., health, financial, biometric, genetic, or government-issued identification data).
  • Processing: Any operation performed on personal data, including collecting, storing, retrieving, consulting, analyzing, sharing, erasing, or destroying data.
  • Client: A commercial entity that contracts with Enshored to receive our BPO and operational services.
  • Client’s Data Subject: An individual (end-customer, user, or employee of a Client) whose personal data Enshored processes strictly on behalf of and according to the instructions of our Client.

III. Personal Information We Collect

We collect personal information from our Clients, prospective Clients, Client representatives, and visitors to our Sites. Depending on how you interact with us, we collect information through different means: directly from you, from our Clients, automatically as you navigate our Sites or from other sources.

A. Information Provided Directly from You or Our Clients

We collect information directly when you communicate with our sales, customer support, procurement, operations or other internal teams via email, phone, web forms, or business events, as well as during Client contract negotiation and Client onboarding or directly from our Clients. Personal information includes:

  • Identifiers: Full name, business email address, mailing address, phone number, and job title/role.
  • Commercial & Business Data: Company name, billing address, communication preferences, message content, contract terms, subscription details, and engagement records.
  • Platform Account Data: Usernames, login credentials, access timestamps, and audit/login logs when using an Enshored-managed platform.
  • Inquiries & Communications: Details provided voluntarily through our Site’s contact features, such as our “Let’s Talk” forms or interactive chat widgets.

B. Information Collected Automatically (Site Navigational & Email Campaign Technical Data)

When you navigate our Sites, we automatically collect technical and usage data using cookies, web beacons, and third-party analytics tools (including Google Analytics, Google AdSense, and Google Display Network Impression Reporting). For more details on how Google handles data collected through these tools, please review Google’s Privacy & Terms Policy.

Automatically collected categories include:

  • Digital Identifiers: IP addresses, unique cookie IDs, and online device identifiers.
  • Internet & Network Activity Data: Web browser type, browser language, device type, operating system settings, pages or files viewed, search queries, feature interactions, and system activity or crash reports.
  • Geolocation Data: General or precise location derived from your IP address or device settings. You can control or opt out of location collection at any time through your device settings or browser preferences (though disabling location may limit certain Site features).
  • Performance & Analytics Cookies: analytics data regarding how you interacted with our email campaigns (opens, click rate, CTR, reply rate, bounces, unsubscribes, spam reports, read time and device analytics).

C. Information Collected from Other Sources

In order to enhance our ability to provide relevant marketing, offers and services to you and update our records, we may obtain information about you from other sources, such as public databases, social media platforms, joint marketing partners, affiliate programs, data providers, as well as from other third parties.

  • Identifiers: Name, mailing addresses, job titles, email addresses, phone numbers, intent data (or user behavior data), social media profiles, social media URLs and custom profiles, interests (from your public postings).

IV. Our Purpose and Basis for Collection

We collect and process personal information only when reasonably necessary to provide our Services, operate our business, fulfill legal obligations, or pursue legitimate business interests under applicable data privacy laws.

Depending on how you interact with us, our legal bases for processing include:

  • Contractual Necessity: To allow execution of contract or perform our contract with you or our Clients.
  • Legitimate Business Interests: To operate, secure, and improve our business and services.
  • Legal Compliance: To comply with statutory, regulatory, or legal mandates.
  • Consent: Where you have explicitly authorized us to process your data for a specific purpose.

We process your personal information for the following purposes:

For provision of our Services

1. Service Delivery & Account Management (Servicing)

  • Fulfilling Contracts: Administering client accounts, delivering outsourced BPO solutions, and honoring contractual obligations.
  • Client Communications: Sending invoices, transactional records, operational updates, contract-related notices, send you product, service and new feature information and/or information about changes to our terms, conditions, and policies.
  • Customer Support: Responding to inquiries, feedback, support requests, and complaints.

2. Quality Assurance & Service Improvement (Quality Improvement)

  • Analytics & Intelligence: Conducting data science and business intelligence analysis on operational metrics to enhance service delivery.
  • Audits & Training: Performing internal quality audits, performance reviews, and staff coaching.
  • Platform Diagnostics: Monitoring system performance, running diagnostics, and debugging errors to ensure platform functionality.
  • User Research & Optimization: Analyzing Site interaction data (such as click paths) and platform usage patterns to optimize user interface, layout, and overall experience.

3. Security & Fraud Prevention (Security)

  • Identity Verification: Conducting due diligence, confirming individual or business identities to protect against unauthorized access.
  • Threat Mitigation: Monitoring systems to prevent, detect, and investigate security incidents, fraud, or illegal activities.
  • System Maintenance: Maintaining physical, technical, and operational safety standards across our infrastructure.

For marketing, sales and advertising activities (Marketing)

We process personal data to conduct marketing campaigns, generate sales leads, and provide relevant updates regarding our business. Specifically, this includes:

  • Promotional Communications: Delivering news, updates, educational content, event invitations, and service offers that you have subscribed to or expressed interest in receiving.
  • Content Personalization: Tailoring communications and website experiences to deliver individualized content and service offerings aligned with your business interests.
  • Lead Generation & Outreach: Identifying and managing prospective business opportunities through industry events, targeted commercial outreach, and referral networks.
  • Inquiry Management: Processing, responding to, and following up on sales inquiries submitted through our web forms or direct communication channels.

Compliance, Legal Obligations, and Dispute Resolution (Legal)

We process personal data to fulfill our statutory obligations, enforce our agreements, and protect our legal rights. Specifically, this includes:

  • Legal & Regulatory Compliance: Meeting statutory obligations, satisfying regulatory reporting requirements, and maintaining business records as required by law.
  • Contract Enforcement: Enforcing our Terms and Conditions, Master Services Agreements, and other legal contracts.
  • Investigations & Dispute Resolution: Processing complaints, investigating potential contract breaches or illegal conduct, and implementing preventive risk measures.
  • Identity Verification & Internal Audits: Verifying identity credentials and conducting internal governance, operational, and financial audits.
  • Legal Claims & Defense: Establishing, exercising, or defending our legal rights and interests in judicial, administrative, or regulatory proceedings.

V. Disclosure of Your Personal Information

The summary table below details the categories of personal and sensitive personal information we collect, our collection sources, the purposes for processing, and the third parties with whom we share it. In compliance with the California Consumer Privacy Act (CCPA) and applicable state laws, this section is reviewed annually and reflects our data practices over the preceding twelve (12) months.

Operational Disclosures vs. “Sale” or “Sharing” of Data

  • Operational Disclosures: We disclose personal information to third-party service providers and vendors strictly for legitimate business and operational purposes (such as service delivery, quality assurance, fraud prevention, IT security, and legal compliance).
  • “Sale” or “Sharing” for Advertising: Enshored does not sell personal information for monetary compensation. However, like many digital companies, we utilize third-party analytics and advertising tools to analyze website traffic and deliver relevant online ads. Under certain privacy laws (including the CCPA/CPRA), making online identifiers or browsing activity available to these third-party ad networks may be legally defined as a “sale” or “sharing” of personal data.

How to Opt Out: You can opt out of cookie-based tracking and the “sale” or “sharing” of your online identifiers at any time by following the steps outlined in the Your Privacy Choices page or adjusting your cookie preferences.

DATA SUBJECT CATEGORY OF DATA EXAMPLE DATA ELEMENTS PURPOSES BEHIND COLLECTION, USE, AND SHARING CATEGORIES OF THIRD PARTIES WE DISCLOSE TO
Clients, prospective Clients, Client representatives Identifiers Name, email address, phone number, company name, position/title, intent data (or user behavior data), social media profiles, social media URLs and custom profiles, interests (from your public postings) Servicing; Marketing; Legal; Quality Improvement; Security Service Providers

Corporate Subsidiaries and Affiliates

Commercial & Business Data Company name, billing address, communication preferences, message content, contract terms, subscription details, and engagement records.
Platform Account Data Usernames, login credentials, access timestamps, and audit/login logs when using an Enshored-managed platform.
Inquiries & Communications Details provided voluntarily through our Site’s contact features, such as our “Let’s Talk” forms or interactive chat widgets.
Performance & Analytics Cookies Analytics data regarding how you interacted with our email campaigns (opens, click rate, CTR, reply rate, bounces, unsubscribes, spam reports, read time and device analytics).
Site Visitors Digital Identifiers IP addresses, unique cookie IDs, and online device identifiers.
Internet & Network Activity Data Web browser type, browser language, device type, operating system settings, pages or files viewed, search queries, feature interactions, and system activity or crash reports.
Geolocation Data General or precise location derived from your IP address or device settings. You can control or opt out of location collection at any time through your device settings or browser preferences (though disabling location may limit certain Site features).

We share personal information with the following categories of recipients to fulfill the operational and business purposes outlined in this Privacy Notice:

  • Third-Party Service Providers & Vendors: We share data with non-affiliated service providers, including IT/telephony hosts, customer support platforms, email delivery systems, professional consultants, and auditors. These providers are bound by strict contractual obligations to maintain confidentiality and process data solely for the designated services.
  • Subsidiaries and Corporate Affiliates: We share personal data within the Enshored Group for internal administrative and operational efficiency. Affiliates handle your data in a manner consistent with this Privacy Notice or their respective privacy policies.
  • Business & Advertising Partners: Where permitted by law, we may share information with commercial partners and advertising networks to deliver relevant offers, co-branded promotions, or targeted advertisements.
  • Corporate Transactions: In the event of a merger, acquisition, corporate consolidation, asset sale, or reorganization (including bankruptcy proceedings), personal information may be transferred as part of the transaction’s assets.
  • Legal Compliance & Rights Protection: We may disclose personal data to regulatory authorities, court officials, law enforcement, or legal counsel to:
    1. Comply with applicable legal or governmental mandates;
    2. Enforce our Terms and Conditions and contractual agreements;
    3. Protect the rights, privacy, safety, or property of Enshored, our affiliates, our users, or the public; and
    4. Pursue available legal remedies or limit operational damages.
  • With Your Direction or Consent: We share information with third parties whenever you explicitly direct or authorize us to do so.

Aggregated & De-Identified Data: Information that has been anonymized, aggregated, or de-identified such that it can no longer reasonably identify an individual is not considered personal data. Enshored may share non-personal or statistical data with third parties for legitimate business purposes at our discretion.

VI. Data Retention

We will only keep your personal information for as long as it is necessary for the purposes set out in this privacy notice, unless a longer retention period is required or permitted by law (such as tax, accounting or other legal requirements).

When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize such information, or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.

VII. Data Security

We implement reasonable and appropriate organizational, technical, and physical safeguards designed to protect your personal information against unauthorized access, disclosure, alteration, loss, or theft.

Our security framework is tailored to the sensitivity, volume, and storage format of the data under our care and includes:

  • Access Controls & Internal Policies: Restricting access to personal data strictly to authorized personnel on a “need-to-know” basis throughout the information lifecycle.
  • Technical Safeguards: Implementing encryption protocols, firewalls, secure network infrastructure, and endpoint protection software across electronic systems.
  • Governance Oversight: Maintaining a designated Privacy Officer to monitor regulatory compliance and oversee our data privacy program.
  • Workforce Training: Conducting regular, mandatory data security and privacy training for all Enshored personnel.
  • Incident Response Protocols: Enforcing structured procedures to receive, investigate, and mitigate potential security incidents or breaches.

Security Disclaimer & Incident Reporting:

While we enforce rigorous security protocols, no data transmission over the internet or electronic storage system can be guaranteed to be 100% secure. If you have reason to believe that your interaction with us or your account security has been compromised, please notify us immediately via our Contact Us section.

VIII. Your Rights

Subject to applicable Data Privacy Law, you may have certain rights to know, access, update, port your personal data, correct inaccuracies, delete, restrict processing of your personal information in our custody and control.

For security purposes, we will verify your identity when you request to exercise your data privacy rights. For certain types of requests, we may also need to ask you for additional information to verify your identity. Once we have verified your identity (and your agent, as applicable), we will respond to your request as appropriate.

Your right over your personal information depends on the Data Privacy Law applicable where you reside:

A. Canadian Privacy Rights

For additional information for residents of Canada, click here.

B. California Privacy Rights

For additional information for residents of the State of California, click here.

C. Other US Privacy Rights

For additional information for residents of other US states, click here.

D. GDPR Privacy Rights

For additional information for residents of European countries, including the United Kingdom and Switzerland, click here.

E. Exercising Your Rights

You can submit a request to exercise your statutory rights (such as access, correction, deletion, or data portability) through the following channels:

1. How to Submit a Request

  • By Email: Send your request to [email protected].
    • Subject Line: Please use the format “<Your State/Country> Consumer Privacy Request”.
    • Email Body: Clearly describe the specific privacy right you wish to exercise and include sufficient detail to help us understand and process your request.
  • By Phone: Call us toll-free at (276) 888-3505.

2. Identity Verification Process

To safeguard your personal information against unauthorized access or fraud, we must verify your identity before processing your request. During verification, we evaluate:

  • The feasibility of matching data provided in your request against records maintained in our systems; and
  • The risk of improper data disclosure, ensuring that releasing information does not compromise the privacy rights and freedoms of others.

3. Submitting Requests via an Authorized Agent

You may designate an authorized agent to submit a privacy request on your behalf. To process an agent-submitted request, we require:

  • Written, signed permission from you authorizing the agent to act on your behalf, or a valid Power of Attorney under applicable state/national law.
  • Verification of the agent’s identity and credentials.

Enshored reserves the right to contact you directly to confirm the agent’s authority or verify your identity to prevent fraudulent requests.

4. Children’s Privacy (Minors Under 13)

Our Sites and Services are designed for a business audience and are not directed to children under 13 years of age. We do not knowingly collect or solicit personal information from children under 13. If you believe a child under 13 has provided personal data to us, please contact us immediately at [email protected], and we will take prompt action to remove the information.

5. Requests Regarding Client Data (Enshored as a Service Provider / Data Processor)

When Enshored operates as a Service Provider or Data Processor for our corporate Clients, we process personal information strictly under their direction and instructions.

Important Note: If your request relates to personal data handled by Enshored on behalf of one of our Clients (such as end-user or customer data), please submit your request directly to that Client (the Data Controller). If you contact us regarding Client-managed data, we will redirect your request to the appropriate Client for action.

IX. Changes to this Privacy Notice

We may update this privacy notice from time to time. The updated version will be indicated by an updated “Revised” date and the updated version will be effective as soon as it is accessible. If we make material changes to this privacy notice, we may notify you either by prominently posting a notice of such changes or by directly sending you a notification. We encourage you to review this privacy notice frequently to be informed of how we are protecting your information.

X. Contact Us

If you have any questions, or complaints, regarding the collection or use of your personal information or the content of this notice, please contact our Privacy Officer at the coordinates below.

Privacy Officer
[email protected]

Enshored, LLC: 3505 Long Beach Boulevard Suite 1C, Long Beach, CA 90807-3946, United States

Enshored Inc.: 16th Floor, JMT Building, ADB Avenue, Ortigas Center, Pasig City, Metro Manila 1605, Philippines

Enshored Portugal Unipessoal Lda: Rua Julieta Ferrão, n.º 10, Piso 13.º B, 1600-131, Lisboa, Portugal

We respect your privacy rights and commit to the security of your personal information. If you do not agree to how we process your personal information as discussed in this Privacy Notice, please reach out to us.

Cookie Policy

A “cookie” is a small file stored on your device that contains information about your device. We may use cookies to provide basic relevant ads, website functionality, authentication (session management), usage analytics (web analytics), and to remember your settings, and generally improve our websites and Services. For a complete list and more information about our use of cookies, please read our Cookie Policy.

Your Privacy Choices

To learn about and exercise your right to opt out of the “sale” or “sharing” of your personal information, please visit Your Privacy Choices.