Bilateral NDA By Default
Every consultation, repository review, and architecture document is treated under bilateral NDA standards.
Zero Ad Tracking
No third-party pixel trackers, no data brokers, and zero behavioral marketing cookies.
Permanent Purge Guarantee
Production query dumps and temporary diagnostic traces are purged immediately upon sprint completion.
1. Scope & Purpose
This Privacy Policy applies to all interactions with Muhammad Ajmal through this website (muhammad-ajmal.com), scheduled consultation calls via Cal.com, direct correspondence, and formal technical consulting engagements. As an engineering practice focused on mission-critical backends, databases, and enterprise AI integrations, client trust and technical integrity are paramount.
2. Information We Collect
We limit data collection exclusively to what is strictly necessary to conduct technical evaluations, discuss engineering requirements, and deliver consulting services:
- Contact & Booking Details: Name, professional work email address, company or project URL, and session agendas submitted via our contact form or Cal.com appointment widget.
- Technical Consultation Artifacts: Problem statements, system architecture diagrams, performance bottleneck descriptions, stack specifications, and repository read-only tokens voluntarily shared for code auditing.
- Server & Security Logs: Standard HTTP request logs (IP address, user-agent, timestamp) collected by our hosting infrastructure purely to prevent automated denial-of-service (DDoS) attacks, brute-force requests, and rate-limit violations.
3. Client Confidentiality & Non-Disclosure (NDA)
We treat all client technical infrastructure, database schemas, API keys, revenue metrics, and proprietary business logic as confidential trade secrets:
- Pre-Contractual Confidentiality: Even before a formal bilateral Non-Disclosure Agreement (NDA) is executed, technical notes gathered during preliminary discovery calls are held strictly confidential.
- Case Study Anonymization: In public case studies or portfolio benchmarks, enterprise client identities, proprietary IP, domain names, and production metrics are rigorously sanitized, blurred, or NDA-protected unless explicit written consent is granted.
- No Third-Party Resale or Sharing: Your data is never sold, leased, traded, or shared with third-party advertisers or recruitment agencies.
4. Data Security Protocols & Infrastructure
All interactions, code audit files, and communications adhere to high-grade security engineering standards:
- Encryption in Transit: 100% of traffic is served over TLS 1.3 with modern cipher suites and Strict-Transport-Security (HSTS).
- Ephemeral Diagnostic Logs: Database query trace dumps (e.g., EXPLAIN ANALYZE exports) and temporary profiling snapshots provided during performance audits are stored on encrypted local volumes and purged within 14 days of audit delivery.
- Minimal Access Permissions: For code reviews, we request temporary, least-privilege read-only GitHub or GitLab collaborator access, which should be revoked immediately upon delivery.
5. Third-Party Services
This website integrates a minimal number of trusted service providers strictly for workflow efficiency:
- Cal.com: Facilitates calendar bookings for architecture and sprint scoping calls. Data submitted is processed in accordance with Cal.com’s SOC2-compliant privacy policies.
- GitHub: Used for repository collaboration, issue tracking, and CI/CD automated test verification.
6. Your Data Rights & Erasure Requests
Regardless of your jurisdiction (including GDPR, CCPA, and global privacy frameworks), you have the right to request a complete record of any communications held, request corrections, or request immediate and permanent deletion of your inquiry records and consultation notes.
7. Contact & Data Privacy Inquiries
For any questions regarding this Privacy Policy, bilateral NDA execution prior to discovery calls, or to request data erasure, contact directly: