Security & Data Protection Statement
Effective Date: July 15, 2026
At IORServices.pro, a division of Consultare Inc. Group ("Company," "we," "our," or "us"), we recognize that our clients entrust us with important business information relating to international trade, import compliance, and regulatory activities.
Protecting the confidentiality, integrity, and availability of client information is a fundamental part of our business operations. We are committed to implementing commercially reasonable administrative, technical, and organizational safeguards designed to protect the information entrusted to us.
Our Commitment
We maintain a security-focused approach to protecting information throughout the delivery of our professional services.
Our objective is to reduce security risks while supporting the confidentiality and integrity of client information used in connection with our services.
Although no information system or method of electronic transmission can be guaranteed to be completely secure, we continually evaluate and improve our security practices as our business and technology evolve.
Information We Protect
Depending on the services provided, we may receive and process information including:
- Client contact information
- Company information
- Import documentation
- Commercial invoices
- Packing lists
- Bills of lading
- Certificates of Origin
- Product specifications
- Supplier documentation
- FDA-related documentation
- USDA Organic documentation
- FSVP documentation
- Product labels
- Shipment information
- Regulatory correspondence
- Compliance reports
- Contract documents
- Payment and billing information
Information is collected only to the extent reasonably necessary to provide the requested services or comply with applicable legal obligations.
Administrative Safeguards
We implement administrative measures that may include:
- Security and confidentiality policies
- Employee and contractor confidentiality obligations
- Role-based access principles
- Internal procedures for handling client information
- Vendor and service provider oversight, where appropriate
- Periodic review of internal security practices
- Controlled access to client information based on business need
Technical Safeguards
We use commercially reasonable technical safeguards appropriate to the services we provide, which may include:
- Secure website communications using encryption in transit (HTTPS/TLS)
- Authentication controls for authorized users
- Access management procedures
- Firewalls and network security measures
- Endpoint protection technologies
- System monitoring and logging
- Regular software updates and security patching
- Malware protection
- Backup and recovery procedures
The specific technologies and controls we use may change over time as security practices evolve.
Physical Safeguards
Where applicable, we implement reasonable physical safeguards designed to protect business information from unauthorized access, loss, or theft.
These measures may include controlled access to workspaces, secure storage of records, and secure disposal of confidential documents.
Confidentiality
Information provided by clients is treated as confidential and is used solely for legitimate business purposes associated with the requested services.
Access to client information is limited to personnel, contractors, or authorized service providers who require the information to perform their responsibilities.
Third-Party Service Providers
To deliver our services, we may engage trusted third-party providers, including:
- Secure cloud hosting providers
- Payment processors
- Customer relationship management (CRM) platforms
- Document management systems
- Collaboration platforms
- Customs brokers
- Freight forwarders
- Accredited laboratories
- Organic certification bodies
- Regulatory consultants
We make reasonable efforts to work with service providers that maintain appropriate security practices. However, each provider is responsible for the security of its own systems and services.
Client Responsibilities
Security is a shared responsibility.
Clients are encouraged to:
- Protect usernames and passwords
- Use strong, unique passwords
- Enable multi-factor authentication where available
- Secure their own systems and devices
- Verify the accuracy of information submitted
- Avoid sending sensitive information through unsecured channels unless specifically requested
- Notify us promptly if they believe their account or information has been compromised
Data Retention
We retain information only for as long as reasonably necessary to:
- Provide requested services
- Fulfill contractual obligations
- Comply with legal or regulatory requirements
- Resolve disputes
- Enforce agreements
- Maintain appropriate business records
After the applicable retention period, information may be securely deleted, destroyed, anonymized, or archived in accordance with our records management practices and legal obligations.
Incident Response
If we become aware of a security incident affecting information under our control, we will:
- Investigate the incident
- Take reasonable steps to contain and mitigate its impact
- Restore affected systems where appropriate
- Comply with applicable legal notification requirements
The timing and scope of any notification will depend on the nature of the incident and applicable law.
No Guarantee of Absolute Security
While we employ commercially reasonable safeguards, no method of data transmission, storage, or electronic communication can be guaranteed to be completely secure.
Accordingly, IORServices.pro cannot guarantee absolute security and disclaims liability to the fullest extent permitted by law for unauthorized access or security events beyond our reasonable control.
Continuous Improvement
Cybersecurity threats continue to evolve.
We periodically review and update our administrative, technical, and organizational safeguards to improve the protection of client information and adapt to changing technologies, threats, and business requirements.
Related Policies
This Security & Data Protection Statement should be read together with our:
- Privacy Policy
- Cookie Policy
- Terms of Service
- Acceptable Use Policy
- Disclaimer
Together, these documents describe how we collect, use, protect, and manage information while providing our professional services.
Contact Us
If you have questions regarding our security practices or the protection of your information, please contact:
IORServices.pro
A Division of Consultare Inc. Group
Email: info@consultareinc.com
Website: https://iorservices.pro