Privacy
Privacy Policy
Effective and last updated July 27, 2026
Working draft, July 27, 2026: this policy has not yet been reviewed by legal counsel.
Vector Growth Partners keeps this simple, because this website does very little. It is a static informational site: it sets no cookies of its own, does not track individual visitors, and uses only a privacy-first, cookie-less analytics service from Cloudflare — the same provider that hosts and delivers the site — to measure aggregate traffic.
Who this policy covers
This policy explains how Vector Growth Partners, Inc. (“Vector Growth Partners,” “we,” “us,” “our”) handles personal data in connection with the website at vectorgrowth.com. Vector Growth Partners, Inc. is a corporation incorporated in Illinois, United States, and operates in Israel and the United States. If you contact us by email, phone, or post, this policy also covers how we handle that correspondence.
What we collect
The website does not ask you for any information and has no forms, accounts, or logins. The only personal data associated with an ordinary visit is your IP address and standard request details (such as your browser type and the page requested), which our hosting and content-delivery provider processes in server logs in order to deliver the site and protect it against attacks. We use this only for security, for reliable delivery, and — transiently, without storing it — to derive the aggregate country statistics in our analytics. We do not use it to build profiles, track you across sites, or serve advertising. To make navigation faster, our delivery provider may also instruct your browser to prefetch pages of this site you seem likely to visit next; a prefetched page is requested from our provider like an ordinary visit (and appears in the server logs described above) even if you never open it, involves no third party, and runs no scripts unless you actually visit the page.
We also measure aggregate site traffic with Cloudflare Web Analytics (see “Analytics” below). Those metrics — such as page views, referrers, country, and browser type — are aggregated and do not identify individual visitors.
Why we are allowed to process it
Where the EU or UK General Data Protection Regulation applies, our lawful basis for processing the limited technical data in security logs and the measurement data described under “Analytics” is our legitimate interests (Article 6(1)(f)) in operating, delivering, and protecting our website and in measuring, in aggregate, how it is used. We have weighed these interests against your interests, rights, and freedoms; given the minimal, technical nature of the data, that we do not use it to identify or profile anyone, and the reasonable expectations of visitors to a business website, we have concluded our interests are not overridden.
When you contact us (by email, phone, or post), we process your contact details and the contents of your correspondence on the basis of our legitimate interests in responding to inquiries and keeping ordinary business records and, where your message concerns a possible engagement with us, because processing is necessary to take steps at your request before entering into a contract (Article 6(1)(b)).
Your right to object: where we rely on legitimate interests, you may object at any time, on grounds relating to your particular situation, to our processing of your personal data (Article 21 GDPR / UK GDPR). To object, email us at IT@vectorgrowth.com.
Cookies and tracking
This website does not set any cookies of its own and does not use advertising trackers, tracking pixels, session recording, or similar tracking technologies. The only JavaScript that runs on the site is Cloudflare’s lightweight analytics beacon, which measures traffic without cookies, local storage, or device fingerprinting. Because the site stores nothing on your device for analytics or tracking, we do not show a cookie banner. Our hosting provider, Cloudflare, may set a strictly necessary, short-lived security cookie (such as __cf_bm, which expires within about 30 minutes) to distinguish legitimate visitors from automated traffic; such a cookie falls within the “strictly necessary” exemption from consent and is used only for security, not for tracking.
Analytics
We use Cloudflare Web Analytics to understand, in aggregate, how this site is used — for example, which pages are viewed, from which referrers and countries, and in which browsers. We chose it because it is privacy-first: it uses no cookies and no local storage, does not fingerprint your device, and does not follow you across other websites. The metrics we see are aggregated; we cannot use them to identify you. Cloudflare processes this measurement data on our behalf as our service provider.
Do Not Track
Some browsers can send a “Do Not Track” (DNT) signal. This website does not track visitors across other websites or over time, and no third parties collect personal information about your activity across different websites through this site. Because there is no tracking to turn off, the site treats every visitor the same and does not need to change its behavior in response to a DNT signal. The same is true of opt-out preference signals such as the Global Privacy Control (GPC): because we do not sell or share personal information or use it for targeted advertising, there is nothing for such a signal to opt out of, and every visitor receives the same no-tracking treatment.
Third parties
Fonts, styles, and images are all served directly from vectorgrowth.com. The only third-party resource the site loads is Cloudflare’s analytics beacon described above, and the only external party involved in an ordinary visit is our hosting, delivery, and analytics provider:
- Cloudflare, Inc. hosts and delivers this website, protects it against malicious traffic, and provides our privacy-first web analytics. Cloudflare processes technical information such as your IP address and request details on our behalf, for security, reliable delivery, and aggregate measurement. It acts as our service provider / data processor and may use this data only as permitted by our agreement with it (for example, to secure and operate its network) — not for advertising or for building profiles of visitors.
If you choose to email us, your message is handled by our email provider so that we can receive and reply to it. The site also links out to third-party websites such as LinkedIn; if you follow those links, those sites’ own privacy policies govern what they collect.
International transfers
We operate in Israel and the United States, and our hosting, delivery, and email providers operate globally, so the limited personal data described in this policy — such as your IP address in security logs, or the contents of an email you send us — may be processed outside your country, including in the United States and Israel. Israel benefits from a European Commission adequacy decision (and equivalent UK adequacy regulations). For transfers to the United States, we rely on recognized safeguards such as the EU–U.S. Data Privacy Framework (including its UK Extension) and standard contractual clauses. You can ask us for more information about these safeguards, or a copy of the relevant clauses, using the contact details at the end of this policy.
How long we keep it
We do not keep any database of visitor information of our own. Technical data in security logs is retained by our provider only for a short period, determined by what is needed to detect and mitigate attacks and operate the service, after which it is deleted or anonymized; analytics metrics are retained by Cloudflare only in aggregate form that does not identify you. Correspondence you send us (by email, phone, or post) is kept only as long as needed to respond to you and for our ordinary business records.
How we protect it
The site is served exclusively over encrypted connections (HTTPS, with HTTP Strict Transport Security), behind a strict Content Security Policy, from reputable infrastructure. Just as importantly, we practice data minimization: the site has no forms, no accounts, and no databases of visitor information, so there is very little to protect in the first place. This approach is consistent with security requirements under the laws that apply to us, including the basic security level under Israel’s Protection of Privacy Regulations (Data Security), 5777–2017, which applies to small, low-sensitivity data collections.
Your rights
Depending on where you live, you may have rights over personal data relating to you. Because we hold almost none, in most cases there is little to act on — but you are welcome to contact us and we will respond.
- European Union & United Kingdom (GDPR / UK GDPR)
- You may request access to, correction of, or erasure of your personal data; restrict or object to processing; and request data portability. You also have the right to lodge a complaint with your local supervisory authority (in the UK, the Information Commissioner’s Office). We do not use automated decision-making or profiling, and you are not required to provide us with any personal data to view the site.
- California (CCPA / CPRA)
- The categories of personal information this site handles are identifiers (internet or network identifiers such as your IP address, collected automatically when you visit and used only for security and delivery) and internet or other electronic network activity information (such as pages viewed, collected by our cookie-less analytics and used only in aggregate). The CCPA applies only to businesses that meet certain revenue or data-volume thresholds and may not apply to us; regardless, we honor the rights it describes: California residents may ask to know or access this information, to delete it, and to correct it. We do not sell or share personal information (as those terms are defined under the CCPA/CPRA) and have not done so in the preceding twelve months, so a “Do Not Sell or Share My Personal Information” link is not applicable. We do not collect, use, or disclose sensitive personal information for any purpose that would require a right to limit it. Under California’s “Shine the Light” law, we also do not disclose personal information to third parties for their own direct marketing. We will not discriminate against you for exercising any of these rights. We will respond to a verifiable request within 45 days (extendable once by a further 45 days where reasonably necessary, in which case we will tell you). You may designate an authorized agent to submit a request on your behalf; we may require proof of the agent’s written authorization and may verify your identity directly.
- Other U.S. states
- A growing number of other U.S. states — including Virginia, Colorado, Connecticut, Texas, Oregon, and others — have comprehensive privacy laws. Most of them apply only to businesses that process the personal data of very large numbers of state residents or meet similar thresholds, which this website does not approach; others, such as the Texas law, instead exempt small businesses, which we are — and we do not sell sensitive (or any) personal data in any event. Our practice is the same everywhere in the United States regardless: we extend the same core rights of access, correction, and deletion to every visitor in every state; we do not sell personal data, do not process it for targeted advertising, and do not profile visitors, so the opt-out rights those laws create have nothing to operate on here. For Nevada residents: we do not sell “covered information” as defined in Chapter 603A of the Nevada Revised Statutes.
- Israel (Privacy Protection Law)
- We handle personal data in accordance with Israel’s Privacy Protection Law, 5741–1981, as amended (including Amendment 13, in force since August 2025). We do not build or keep any collection of visitor data of our own: the only personal data connected to a visit is the transient technical data described above, held briefly on our behalf by our hosting and analytics provider for security and aggregate measurement, and none of it constitutes a database requiring registration with, or notification to, the Privacy Protection Authority under the Law as amended. You are never legally required to provide us with personal data; anything you send us (for example, by email) you provide voluntarily. You may contact us to exercise your rights of access and correction under sections 13–14 of the Law, and you may raise concerns with the Privacy Protection Authority. We do not use personal data for “direct mailing” as defined in section 17C of the Law.
To exercise any of these rights, email us at IT@vectorgrowth.com, call us at +1 (408) 421‑7177, or write to us at the postal address in the “Contact us” section below. We may need to verify your identity before responding.
Children
This site is intended for a professional audience and is not directed to children under 13 (or the equivalent age of protection where you live). We do not knowingly collect personal data from children, and we do not sell or share the personal information of any minor under 16.
If you contact us
The contact links on this site open your own email application or phone dialer; they do not transmit anything until you choose to send a message or place a call. When you do, we and our email provider will process your email address and the contents of your message solely to respond to you and to keep a record of our correspondence.
Changes to this policy
We may update this policy from time to time. When we do, we will revise the date at the top of this page. Material changes will be reflected here.
Contact us
Questions about this policy or your personal data? We would be glad to help.
Vector Growth Partners, Inc.2649 N. Mildred Ave., Unit 1N
Chicago, Illinois 60614, USA
Email: IT@vectorgrowth.com
Phone: +1 (408) 421‑7177