Legal

Privacy Policy

What we collect through this website, why we collect it, and the control you have over it.

Last updated: 15 August 2026

01Who we are

Tinoora is a cybersecurity and digital forensics firm with headquarters in Bonaberi, Douala, Cameroon. We provide digital forensics and incident response, offensive security testing, security audit and compliance, cybersecurity training, managed security operations, and secure software development.

This policy explains what personal data we collect through this website, why we collect it, how long we keep it, and what you can ask us to do with it. It applies to this website only. Personal data we process while delivering services to a client is governed by the engagement contract and any data processing agreement signed with that client, not by this policy.

02Information you give us

When you complete the contact form on this website, we collect and store the details you enter:

  • Your full name
  • Your work email address
  • Your organisation, if you choose to provide it
  • The service you are interested in, if you select one
  • The content of your message
  • Whether you flagged the enquiry as an active or urgent security incident
  • The date and time your message reached us

We also hold whatever you choose to tell us if you contact us by email at contact@tinoora.com or incident@tinoora.com, or by telephone on our emergency hotline. Please do not send confidential evidence, credentials, or regulated personal data of third parties through the web form. If your matter involves material of that kind, call us first and we will agree a secure channel with you.

03Information collected automatically

Like most websites, our hosting infrastructure records technical information each time a page is requested. This typically includes your IP address, your browser and device type, the page you requested, the page that referred you, and the date and time of the request.

We use this information to keep the site available, to diagnose faults, and to detect and investigate abuse or attacks against the site. We do not use it to build a marketing profile of you.

04Cookies and local storage

This website does not set advertising or cross-site tracking cookies.

When you respond to the cookie notice, your choice is saved in your browser under the local storage key tinoora_cookies_accepted so that the notice does not appear on every visit. This value stays in your browser and is not sent to us. Clearing your browsing data removes it and the notice will appear again.

If we later introduce analytics or other non-essential cookies, we will update this policy and ask for your consent before those cookies are set.

05Third parties that receive data when you visit

To display this site correctly, your browser requests fonts from Google Fonts (fonts.googleapis.com and fonts.gstatic.com) and icons from HugeIcons (use.hugeicons.com). Those providers receive your IP address and basic request information as a normal part of serving those files. We do not send them any information from your contact form.

We also rely on service providers for website hosting and email. They process data on our instructions and are not permitted to use it for their own purposes.

06Why we use your information

  • To answer your enquiry and, where relevant, to prepare a proposal at your request
  • To triage and respond to reported security incidents, which may be time critical
  • To keep a record of the enquiries we receive and how they were handled
  • To protect this website and our systems against misuse, fraud, and attack
  • To meet legal, regulatory, and professional obligations that apply to our work

Where the law requires a legal basis for processing, we rely on your consent when you submit the form, on our legitimate interest in responding to enquiries and securing our systems, on taking steps at your request before entering a contract, and on compliance with legal obligations.

07Who we share it with

We do not sell your personal data and we do not share it for advertising.

  • Our hosting and email providers, acting on our instructions
  • Our professional advisers, such as lawyers, auditors, and insurers, where they need it
  • Judicial or regulatory authorities, where we are legally compelled to disclose
  • A successor organisation, if our business or part of it is transferred

08How long we keep it

We keep contact form submissions and related correspondence for up to 24 months from our last contact with you, unless the enquiry becomes a client engagement. In that case the records are retained for the period set out in the engagement contract and for as long as professional, legal, or evidential obligations require.

Technical server logs are kept for a shorter period, normally no longer than 12 months, unless a log is relevant to an ongoing security investigation.

09How we protect it

Traffic between your browser and this website is encrypted in transit. Submissions are stored on systems we control, and access is limited to the members of our team who need it to respond to you. Our staff are bound by confidentiality obligations.

No method of transmission or storage is completely secure. If a breach affects your personal data and presents a risk to you, we will notify you and any competent authority as required by the applicable law.

10Your rights

Subject to the law that applies to you, you can ask us to:

  • Confirm whether we hold personal data about you and give you a copy
  • Correct data that is inaccurate or incomplete
  • Delete data we no longer have a valid reason to keep
  • Restrict or object to how we use your data
  • Provide your data in a portable format, where that right applies
  • Withdraw consent you previously gave, without affecting processing already carried out

To exercise any of these rights, write to contact@tinoora.com. We will respond within 30 days. If you are in the European Economic Area or the United Kingdom, you also have the right to lodge a complaint with your national data protection authority. If you are in Cameroon, you may raise a complaint with the competent national authority.

11International transfers

Our providers may store or process data in countries other than the one you are in. Where data leaves your country, we take reasonable steps to ensure it remains protected to a standard comparable to the one described in this policy, including through contractual commitments with those providers.

12Children

This website is directed at organisations and professionals. It is not intended for children, and we do not knowingly collect personal data from anyone under 18. If you believe a child has sent us personal data, contact us and we will delete it.

13Changes to this policy

We may update this policy as our services, our providers, or the law change. The current version is always published on this page with the date it was last updated. Where a change materially affects your rights, we will make that clear.

14How to contact us

For any question about this policy or about the personal data we hold, contact us by email at contact@tinoora.com, by telephone on +237 677 270 405, or by post at our headquarters in Bonaberi, Douala, Cameroon. For active security incidents, use the emergency hotline rather than email.

Questions about this document? Write to contact@tinoora.com

Contact us