Legal and policy information

Privacy

This policy explains how the rebuilt LFS website handles information submitted through the protected project brief.

Before the site is used to conclude commercial contracts, the operator’s legally required identity information must be completed in the deployment settings. No identity, registration number or address has been invented in this build.

The public website is designed without advertising pixels, third-party analytics or embedded social widgets by default. Standard server logs may still record technical request information needed for security and operation.

The project brief collects only information entered by the visitor, together with locale, page, time and a security-oriented network hash.

Submitted information is used to review the requested project, prevent abuse and maintain a record of the request. Lead payloads are encrypted at rest with AES-256-GCM using a server-side key.

No automatic marketing subscription is created by submitting the brief. Data is not sold and is not sent to advertising platforms by the included code.

Only an authorised administrator can decrypt and review requests. The operator should define a retention period appropriate to the actual legal basis and delete records that are no longer required.

The admin workspace supports status changes, CSV export and deletion. Exports must be stored and transferred securely.

Do not submit sensitive personal information that is not necessary for the initial project assessment. You may request access, correction or deletion through the protected form.

Browser theme preference is stored locally on the device. It is not transmitted as part of the brief.

To submit a privacy-related request, use the protected project brief and state “Privacy request” at the beginning of the project goal.

To submit a privacy-related request, use the protected project brief and state “Privacy request” at the beginning of the project goal.

Last updated 21 August 2026