Overview of current practices
This website includes a public marketing site and an authenticated Client Portal used by invited clients and authorized studio administrators.
Visitors can browse public pages and, if they choose, submit information through production lead forms. Those forms send inquiry details by email through a third-party email delivery provider (Resend). Public form submissions are not stored in an application database as a product feature of the marketing site.
Invited users may sign in to the Client Portal to access project workspaces. Portal accounts are invitation-based; the portal is not offered as open public self-registration.
Portal data may include project and business details, contact information associated with invited accounts, uploaded project files, messages and comments, revision/change requests, approvals, proposals, contracts, billing schedules and invoices, and records of offline or manually recorded payments. Transactional notifications and emails may be sent for project, account, or commercial activity.
Online card payment processing is not currently offered through the Client Portal.
Fictional portfolio concept demos may include interactive example forms that are intentionally not connected to inquiry delivery. Those demos are not production data-collection channels.
Information we collect
We collect information that you voluntarily submit through the production forms and Client Portal features described below. Please do not submit passwords for other services, payment card details, government identification numbers, or other unnecessary sensitive information through public inquiry forms.
Contact form (/contact)
When you submit the Contact form, we receive: name; email address; business/company name (optional); subject; and message.
Start a Project form (/start-a-project)
When you submit the Start a Project form, we receive: full name; business/company name; email address; current website URL (optional); selected project/service needs; design direction (optional); additional style/reference notes (optional); estimated budget; desired timeline; and project description.
Free Website Audit form (/free-website-audit)
When you submit the Free Website Audit form, we receive: name; business/company name; email address; website URL; primary goal for the website; and optional notes about what you would most like to improve.
The website URL is normalized for delivery (for example, adding https:// when a scheme is omitted). The application does not fetch, crawl, or analyze the submitted website as part of form processing.
Client Portal accounts and project workspaces
When you are invited to the Client Portal and create or use an account, we may process account and profile information such as name, email address, and role needed to authenticate and authorize access.
Within assigned projects, portal use may involve project details; uploaded and downloaded files; messages and discussion comments; revision or change requests; approvals and related notes; proposals and contracts; billing schedules and invoices; and offline or manually recorded payment status information maintained for the project.
Administrators may also manage client, project, invitation, and commercial records needed to operate the service.
Anti-spam field
The production forms include a hidden technical honeypot field intended to discourage automated submissions. It is not a requested contact field for people using the site. If that field is filled, the submission is treated as automated abuse prevention and is not delivered as an inquiry email.
How information is collected
Information is collected when a visitor chooses to complete and submit one of the connected production forms listed above.
Portal information is collected when an invited user signs in and uses portal features, and when authorized administrators create or update project, commercial, or invitation records.
Concept/demo interactions on portfolio concept pages (including the Vetta reservation demo and Northwell inquiry demo) are design demonstrations. In the current implementation they do not transmit inquiries through the production email delivery path.
How information is used
Submitted inquiry information and Client Portal information are used to:
- Receive and review questions, project inquiries, and website-audit requests
- Respond by email where a reply is appropriate
- Evaluate potential project fit and next steps
- Provide and operate the Client Portal for invited clients and authorized administrators
- Support project collaboration, including files, messages, requests, approvals, proposals, and contracts
- Maintain billing schedules, invoices, and offline or manually recorded payment records where applicable
- Send transactional notifications and emails related to portal, project, or commercial activity
- Help protect the forms, portal, and site from obvious automated abuse or unauthorized access
The current website implementation does not use submitted form or portal information for advertising profiling, behavioral marketing, newsletters, lead resale, or AI model training.
Service providers
Production form submissions are transmitted through Resend, an email delivery service provider, so the inquiry can be delivered to the configured business destination mailbox.
Submitted form fields are included in the outbound message content. The visitor’s email address is used as a Reply-To value so a response can be addressed to the person who submitted the form. The From and To addresses used for delivery are configured by the site operator and are not chosen by the form.
The Client Portal and related project data are operated using hosting and backend service providers configured for the application (including authentication, database, and file storage services). Transactional notification emails, when sent, may also use an email delivery provider.
Ontani Studio does not control independent privacy or security practices of third-party providers. Review each provider’s own privacy documentation for details.
Storage and retention
Public production form submissions are not stored in an application database as a marketing-site product feature. Inquiry messages may still remain in the receiving business email mailbox and in systems operated by the email delivery provider for as long as those systems retain message data.
Client Portal account, project, file, communication, commercial, and billing records are stored in the application’s configured database and file storage so the portal service can be provided.
A fixed retention schedule has not been published for this website or portal. Information may be kept as reasonably needed to provide the service, maintain basic business records, address disputes, support security review, or meet legal obligations that may apply.
Automatic technical information
The application code for this website does not implement its own intentional collection of IP addresses, device fingerprints, or similar identifiers as a marketing product feature.
Hosting, authentication, database, storage, and network infrastructure used to serve the website and Client Portal may process standard technical information ordinarily involved in delivering web pages, authenticating users, storing files, and sending email (for example, connection metadata handled by servers or providers).
Fonts and media
This site uses Next.js font loading (`next/font`) so typefaces are prepared for self-hosted delivery with the application rather than relying on visitor-side third-party font requests as the primary loading method.
Portfolio and concept imagery used on the site is served from local site assets. The current implementation does not load portfolio photography from third-party image CDNs as a product feature.
Security
Reasonable technical and organizational measures appropriate to a marketing website, email-based inquiry workflow, and invitation-based Client Portal are used to help protect the site, portal, and related data.
No method of internet transmission or electronic storage is completely free of risk. We do not guarantee that information will remain free from unauthorized access, alteration, or loss.
Children
This website and Client Portal are directed to businesses and professional contacts. They are not intentionally directed to children, and we do not knowingly seek personal information from children through the production inquiry forms or portal.
Questions and requests
Depending on where you live, you may have rights or choices regarding personal information under applicable law.
If you have a question about this policy or a request related to an inquiry you submitted or a Client Portal account, contact us using the email address listed in the Privacy contact section below. We will review requests in light of applicable law and what information we can locate.
This section is not an exhaustive statement of rights under any specific statute.
California residents
California residents may have rights regarding personal information under applicable California law. Current data practices include voluntary inquiry submissions delivered by email and Client Portal project/account information for invited users.
This policy does not assert that the business is or is not subject to any particular California privacy statute, and it does not create a “Do Not Sell or Share” mechanism for advertising use cases that are not part of the current implementation.
International visitors
If you submit information or use the Client Portal from outside the United States, understand that your information may be processed in connection with U.S.-based business operations and service providers used to operate the website, portal, and email delivery.
This section is informational and is not a full description of international transfer mechanisms under any specific non-U.S. privacy regime.
Third-party links
This website may link to third-party websites or documents (including a service provider’s privacy policy). Those third parties operate independently. Their privacy practices are governed by their own policies, and we are not responsible for their content or practices.
Changes to this policy
We may update this Privacy Policy as the website, Client Portal, forms, or supporting services change. The effective date at the top of this page will be revised when the policy is updated.
Continued use of the website or Client Portal after an update means the revised policy applies to information handled after the update takes effect, subject to applicable law.
Privacy contact
For privacy questions related to this website or the Client Portal, email hello@ontanistudio.com.
We do not publish a phone number for privacy requests on this website.