Privacy Policy
Last updated: January 2026 • Chiltern TMC & VRS Cert Environmental Services
End-to-End Encryption
All ESG activity records and meter streams encrypted at rest (AES-256) and in transit (TLS 1.3).
No Advertising
We never sell, monetize, or utilize corporate ESG data for advertising or model training.
GDPR & UAE Law
Full compliance with EU General Data Protection Regulation and UAE Federal Data Protection Law.
1. Introduction
Welcome to Co2 Tool Zero. Your privacy is paramount to us. This Privacy Policy explains how Chiltern TMC and VRS Cert Environmental Services collect, use, process, and safeguard your organizational data and personal credentials when using our cloud-based ESG and carbon footprint management platform.
2. Information We Collect
We collect only the information required to provide deterministic ESG calculations and reporting:
- Account Credentials: Name, business email address, phone number, organization name, and role-based authentication tokens.
- GHG & Operational Telemetry: Facility meter logs, fuel purchases, bill of materials, supplier disclosures, and activity records required for Scope 1, 2, and 3 accounting.
- Technical Audit Logs: Cryptographic calculation hashes, IP address, user actions, and timestamps to maintain external assurance workpapers.
3. How We Protect Your Data
Data security is integrated into our platform architecture. All databases run in isolated tenant environments with multi-level role-based access control (RBAC). Periodic third-party penetration tests and SOC 2 audits guarantee maximum confidentiality.
4. Data Ownership & Export
You retain complete ownership over all environmental records and calculations entered into the platform. You may export raw workpapers, ISO-compliant PDFs, and audit logs at any time.
5. Contact Data Protection Officer
For questions regarding data processing or to exercise your rights under GDPR, please contact our data privacy team at:
