What this site collects, and what it does not.
Headland Safety runs a small website with no accounts, no advertising and no tracking. The only personal information it handles is what you type into the contact form and send on purpose.
What the site collects
Nothing, until you send it. Every page is a static file. There is no account, no login, no shopping cart, no newsletter and no advertising network, so reading the site does not build a record about you beyond the ordinary server records described below.
Personal information reaches us when you send it: through the contact form, by email, or on the phone.
This notice covers headlandsafety.com. It does not cover LinkedIn or any other site we link to. Those run under their own terms.
When you send a message
The contact form asks for:
- your name
- your company and site, on the full form
- an email address we can reply to
- what prompted the question
- how you found Headland, optional
- whether your organization is a captive member, optional
Before the form will send, Cloudflare Turnstile checks that it is being filled in by a person. That check looks at your browser, not at you, and it is described under cookies and analytics below.
Submitting it adds two things you did not type: which page the form was on, and the country Cloudflare reports for the request. Both go into the same email. The form also carries two spam checks — a field hidden from people that automated submissions tend to fill in, and a note of when the page loaded. Neither collects anything about you.
All of it becomes one email to travis@headlandsafety.com. Nothing is written to a database, because there is no database. We use what you send to answer you and, if the enquiry becomes work, to scope and deliver it. We do not sell it, rent it, share it for advertising, or add you to a mailing list.
Cookies and analytics
The site sets no cookies of its own and runs no advertising or social tracking scripts. The fonts, styles and JavaScript it uses are served from headlandsafety.com. There is no cookie banner because there is nothing to consent to.
One script comes from elsewhere. The two pages carrying a contact form load Cloudflare Turnstile, which confirms the form is being filled in by a person rather than by a bot. It examines the browser instead of asking you to pick out traffic lights, Cloudflare states it is not used to profile people across sites, and it runs nowhere else on the site. Without it the form would be a free channel for anyone who wanted to fill our mailbox.
No analytics of any kind runs on the site today. If that changes it will be a cookieless measurement tool, and this page will name it.
Cloudflare, which serves the site, may set a short-lived cookie to filter automated traffic. That is a security function rather than tracking.
Hosting and server records
The site runs on Cloudflare. Like any host, Cloudflare processes the technical details of each request — IP address, time, the page requested, browser and operating system — to serve the page and to protect the site from attack and abuse. Those records are Cloudflare's, held under their terms, and we do not build a profile from them.
The site has one server-side route, the contact endpoint. It stores nothing. It validates the form and hands it to the mail provider.
Who else handles it
Three services touch an enquiry, each doing one job:
- Cloudflare — hosting, DNS and domain registration. Serves every page and holds the request records above, and runs the Turnstile check on the form.
- Resend — delivers the contact form as an email. Your message passes through their system on the way to us.
- Microsoft 365 — the mailbox where enquiries land and the reply is written.
Each acts on our instructions and for that purpose only. Nobody else receives your details. We do not sell personal information.
How long we keep it
An enquiry stays in the mailbox as business correspondence. If it becomes an engagement, the correspondence stays with the project record and the engagement agreement governs what happens to client information itself. There is no automatic deletion schedule. If you would rather your message did not sit there, say so and we will delete it.
What you can ask us to do
Email travis@headlandsafety.com and ask what we hold about you, ask for it to be corrected, or ask for it to be deleted. We will do it and confirm when it is done. There is no form and no fee.
Depending on where you live you may have further statutory rights over your personal information. Ask, and we will handle the request under the law that applies to you.
Security, and its limits
The site is served over HTTPS only. It carries a content-security policy that forbids inline scripts and names the only origins a page is allowed to load anything from, so a third party cannot quietly inject a tracker into a page. The mail provider's API key lives in the server environment and never reaches a browser.
None of that makes email a secure channel. Do not send confidential incident files, personal medical information, or anything privileged through the contact form. Describe the situation in general terms and we will agree a suitable way to exchange the rest.
Changes to this notice
If what the site does with personal information changes, this page changes with it and the effective date at the top moves. The version on this page is the one in force.
How to reach us
Headland Safety, LLC, Greater Greenville-Spartanburg, SC.
Email travis@headlandsafety.com or call +1 (864) 416-4487.
The terms of use cover what the content on this site is and what it is not.