When you bring us a device, or enroll in our managed services, we come into contact with information that belongs to you — your files, your business systems, sometimes sensitive or proprietary data. Here's our commitment: we use that data only to do the job you've hired us to do. We troubleshoot, we fix, we support — and then we stop touching it. We don't store it longer than we need to, we don't share it beyond what it takes to deliver the service you've paid for, and we never sell it or use it for anything else.
Depending on the service, this may include: (a) your contact and account information (name, business name, phone, email, billing information); (b) information about your equipment and systems (device inventory, network configuration, software versions); (c) Client Data we encounter while performing a service — meaning the actual files, records, or systems content present on your equipment or network in the course of diagnosing or resolving an issue; and (d) for Managed Services clients, system health and security telemetry collected through monitoring tools, as described in our Remote Access and Monitoring Consent / Acceptable Use Policy.
We use the information described above solely to provide, troubleshoot, and support the services you have requested and paid for — including diagnosing issues, performing repairs, delivering managed services, processing billing, and maintaining a record of the work performed. We do not use your data for advertising, marketing to third parties, profiling, artificial intelligence model training, or any purpose unrelated to delivering the services you've engaged us for.
We do not sell, rent, or trade your data to anyone. We share information only in the following limited circumstances: (a) with specific technology vendors and subcontractors ("Sub-processors") we use to deliver the services you've engaged us for — for example, a backup platform to store a backup you've enrolled in, or a password manager to secure shared credentials; (b) when required by law, legal process, or a valid governmental request; or (c) with your prior consent. We do not share your data with unrelated third parties for their own independent purposes.
The categories of Sub-processors we currently use are:
A current list of the specific vendors behind these categories is available on request.
We keep Client Data only as long as necessary to deliver the services you've engaged, satisfy our own recordkeeping and legal obligations, or as otherwise described in your Order Form. When a Managed Services engagement ends, our standard practice for removing access and offboarding is described in our Master Services Agreement.
We maintain administrative, technical, and physical safeguards designed to protect the data in our care, consistent with industry-standard practices for a managed services provider of our size. No safeguard is perfect, and the limits of this commitment are described more fully in our Master Services Agreement.
If you have questions about the data we've encountered while servicing your equipment or systems, or want to request that we delete data we're no longer using to support an active engagement, contact us using the information below. Because we are typically processing data on your behalf, rather than for our own purposes, some requests — particularly deletion requests affecting an active engagement — may need to be coordinated with the service itself.
This Notice describes our own data handling practices. The Utah Consumer Privacy Act and comparable state privacy laws generally apply only to larger businesses meeting specific revenue and data-volume thresholds; Utah Technology Solutions does not currently meet those thresholds and is not independently subject to those laws as of the date of this Notice. We've written this Notice as a voluntary description of our practices — and to support the compliance obligations of clients who are themselves subject to such laws — rather than as a representation that a specific law applies to us.
Our services are directed at businesses and individual consumers seeking equipment repair or IT services, not at children. We do not knowingly collect personal information directly from children.
We may update this Notice from time to time to reflect changes in our practices or applicable law. The version posted at this page is the current version.
Questions about this Notice or our data practices can be directed to policies@utahtechnologies.com.