Information we collect
When you contact us through our forms, email, or scheduled calls, we collect the information you provide — typically your name, work email, optional phone number, organization, role, organization type, business trigger, desired timeline, source attribution, consent, and any optional description you submit.
When you use Enterprise Trust Score™ — SOC 2 Deal Readiness, your assessment answers stay in your browser until you choose to unlock the full report. At that point, we collect your name, work email, company, role, team size, primary customer segment, assessment responses, decision-readiness response, readiness and deal-pressure scores, engagement-fit classification, recommended path, and consent choices so we can generate and deliver the report and respond appropriately. Historical version 1 and version 2 reports remain supported under their original assessment logic.
When you use Enterprise Trust Score™ — AI Governance Readiness, your structured assessment answers stay in your browser until you choose to unlock the full report. At that point, we collect your name, work email, company, role, optional company or LinkedIn URL, urgency, desired outcome, assessment responses, generated score and findings, attribution and consent choices so we can generate and deliver the report, protect the service and route appropriate follow-up.
The AI Governance Readiness assessment does not need confidential system content. Do not enter passwords, credentials, API keys, access tokens, customer records, detailed vulnerabilities, confidential architecture or sensitive production data.
We also collect limited attribution data associated with an assessment visit, such as source, medium, campaign, content, term, the referring site and path, and the landing path. We use bounded fields and do not intentionally place your name, email, company, or assessment answers in analytics events or attribution URLs.
When you visit ektreasure.com, our hosting provider (Vercel) automatically logs technical request data — IP address, user-agent, and request paths — used solely for operating the site and protecting it against abuse.