Legal
Privacy Policy
High Street Management Enterprises, LLC
Effective Date: 4/26/2026
Last Updated: 7/6/2026
1. Introduction
High Street Management Enterprises, LLC d/b/a High Street Management (“Company,” “we,” “us,” or “our”) is committed to protecting the privacy and security of your information. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you use our consulting services, visit our website, or otherwise interact with us.
By engaging our services or using our website, you consent to the practices described in this Privacy Policy. If you do not agree with this policy, please do not use our services.
2. Information We Collect
2.1 Business Contact Information
We collect information necessary to establish and maintain our consulting relationship:
- Name, title, and role within your organization
- Business email address and phone number
- Company name and business address
- Billing and payment information
2.2 Retail Business Data
As part of our consulting services, we collect and process:
- Sales transaction data (dates, amounts, quantities, SKUs)
- Inventory data (stock levels, product information, costs)
- Customer transaction data
- Store location and performance data
- Vendor and supplier information
- Point-of-sale system data and reports
- Historical business performance metrics
2.3 Technical and Usage Information
When you visit our website or use our applications:
- IP address and browser type
- Device information and operating system
- Pages visited and time spent on pages
- Cookies and similar tracking technologies
3. How We Use Your Information
We use your information to provide retail operations consulting services, develop Open-to-Buy plans and sales forecasts, analyze inventory and sales data, create custom reports and recommendations, implement and maintain technology solutions, develop and maintain customer business applications, and process data through our proprietary algorithms and tools.
We also use information for business operations including processing payments, communicating about services, responding to inquiries, managing client relationships, and maintaining records for legal and regulatory compliance.
4. How We Share Your Information
4.1 We Do Not Sell Your Information
We do not sell, rent, or trade your personal information or business data to third parties.
4.2 Service Providers
We may share information with trusted third-party service providers who assist us including cloud hosting providers (Microsoft Azure), payment processors, email and communication platforms, analytics and monitoring services, and IT infrastructure and security services. All service providers are contractually bound to protect your information and use it only for specified purposes.
4.3 Legal Requirements
We may disclose information when required by law to comply with subpoenas, court orders, or legal processes, to respond to government or regulatory requests, to protect our rights, property, or safety, to investigate fraud or security incidents, or to enforce our Terms of Service.
Nothing in this Policy will prevent or restrict us from (a) complying with federal, state, or local laws or complying with a court order or subpoena to provide information; (b) complying with a civil, criminal, or regulatory inquiry, investigation, subpoena, or summons by federal, state, or local authorities; (c) cooperating with law enforcement agencies concerning conduct or activity that we, our affiliates or associates reasonably and in good faith believe may violate federal, state, or local law; (d) cooperating with a government agency request for emergency access to your personal information if a natural person is at risk or in danger of death or serious physical injury provided that: (i) the request is approved by a high-ranking agency officer for emergency access to your personal information; (ii) the request is based on the agency’s good faith determination that it has a lawful basis to access the information on a nonemergency basis; and (iii) the agency agrees to petition a court for an appropriate order within three days and to destroy the information if that order is not granted; (e) exercising or defending legal claims; and/or (f) using or disclosing your personal information for the purposes listed above.
4.4 Aggregated Data
We may share anonymized, aggregated data that cannot identify you or your business for industry benchmarks and trends, general market insights, statistical analyses, and research.
5. Data Security
We implement comprehensive security measures to protect your information:
- Encryption: Data encrypted in transit (TLS/SSL) and at rest (AES-256)
- Access Controls: Role-based access and multi-factor authentication
- Network Security: Firewalls, intrusion detection, and monitoring
- Secure Infrastructure: Azure-compliant hosting and Supabase hosting with RLS
- Regular Audits: Security assessments and vulnerability testing
- Employee Training: Data protection and security awareness programs
We take the security of your personal information seriously. We implement a variety of technical, organizational, and physical safeguards to protect your data from unauthorized access, alteration, or destruction. However, please note that no method of data transmission or storage is 100% secure, and we cannot guarantee absolute security.
6. Data Retention
We retain your information for the duration of our consulting relationship and as long as necessary to provide services. Following termination of services:
- Business contact information: [3 years]
- Transaction and historical data: [7 years] for tax and accounting purposes
- Reports and deliverables: Available to you for [1 year]
- Anonymized data: Retained indefinitely for benchmarking
We may retain information longer when required by applicable laws and regulations, ongoing legal proceedings, or legitimate business needs.
7. International Data Transfers
Your information is primarily stored and processed in the United States on Microsoft Azure infrastructure. If you are located outside the United States, please be aware that your information may be transferred to, stored, and processed in the United States where our servers are located and we operate. By using our website and our services, you consent to the transfer of your information to the United States.
8. Cookies and Tracking Technologies
We use essential cookies (required for website functionality and security), analytics cookies (help us understand how visitors use our site), and preference cookies (remember your settings and preferences). You can control cookies through your browser settings. Note that disabling certain cookies may limit website functionality.
We sometimes work with trusted third-party service providers to help us better understand visitor behavior. These providers may only use the information they collect on our behalf to support our business operations and improve our services.
We may also use third-party tools that help us understand which organizations are visiting our websites and to measure and improve our marketing. These tools may use cookies or similar technologies and collect technical and usage data (such as IP address, device and browser information, and pages viewed). In some cases, this information may be matched with business information from third-party sources to help us update our records and improve how we communicate with organizations that show interest in our events.
9. Third-Party Links and Services
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of these external sites. Our services integrate with third-party systems (POS systems, cloud storage, etc.). Your use of these systems is subject to their respective privacy policies.
If we utilize third-party artificial intelligence (AI) application programming interfaces (APIs) as part of our services, we ensure that such third-party AI API providers are subject to a vetting process and are contractually required to: (a) process data only for specified purposes as directed by us; (b) maintain security standards consistent with this privacy policy; (c) not use client data to train their models without the client’s express consent; and (d) comply with all applicable data protection laws. We do not transmit personally identifiable information (PII) to third-party AI APIs.
10. Your Privacy Rights
You have the right to:
- Access the information we hold about you
- Request corrections to inaccurate information
- Receive a copy of your data in a portable format
- Request deletion of your information (subject to legal retention requirements)
- Request restriction of processing in certain circumstances
- Opt out of marketing communications at any time
California residents have additional rights under CCPA/CPRA including the right to know what personal information is collected, whether it is sold or shared, and to opt out of sale/sharing of personal information.
11. Children’s Privacy
Our services are not directed to individuals under 13 years of age. We do not knowingly collect information from individuals under the age of 13. If we become aware that we have inadvertently collected such information, we will take steps to delete it as soon as possible.
12. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, legal or regulatory requirements, new service offerings, or user feedback. Material changes will be communicated by posting the updated policy on our website and email notification to active clients. The “Last Updated” date at the top indicates when changes were last made.
13. Contact Information
For questions about this Privacy Policy or our data practices:
High Street Management Enterprises, LLC
Email: info@highstmgmt.com
Phone: 315-367-2366
Address: 134 Beresford Ln Minoa NY, 13116
We strive to respond to all privacy inquiries within [5] business days.
This Privacy Policy is designed to inform you of our practices. If you have questions or concerns, please contact us using the information provided above.