FacilGuard Facility Solutions LLC
Effective Date: August 5, 2026
Last Updated: August 5, 2026
1. Introduction
This Privacy Policy explains how FacilGuard Facility Solutions LLC (“FacilGuard,” “we,” “us,” or “our”) collects, uses, shares, and protects information in connection with www.facilguard.com (the “Site”).
FacilGuard Facility Solutions LLC is a Virginia limited liability company located at 5510 Cherokee Avenue, Suite 300, Alexandria, Virginia 22312.
This policy covers information collected through the Site. It does not cover information we receive directly from clients in the course of performing work, which is governed by the applicable service agreement.
2. Who This Site Is For
FacilGuard serves commercial clients only — facility management companies, commercial property management companies, business owners, and building owners. The Site is directed to businesses and business representatives, not to individuals acting in a personal, family, or household capacity.
Information submitted through this Site is generally business contact information provided by people acting on behalf of an organization.
3. Information We Collect
3.1 Information You Give Us
When you submit our contact form, call us, or email us, we collect what you choose to provide. Our contact form requests:
- Your name
- Company or organization name
- Business email address
- Business phone number
- Property type and property address
- A description of the work or issue
We do not require or request Social Security numbers, financial account information, payment card data, government identification numbers, health information, or any other sensitive personal data through this Site. Please do not submit sensitive or confidential information through the contact form. It is not a secure channel.
3.2 Information Collected Automatically
When you visit the Site, certain information is collected automatically by our hosting, security, and analytics providers:
- IP address (which our analytics provider truncates or anonymizes)
- Browser type and version, operating system, and device type
- Pages viewed, time spent, and referring URL
- Approximate geographic location derived from IP address (typically city or region level)
- Date and time of access
- Server log data recorded by our hosting provider
3.3 Information We Do Not Collect
We do not operate user accounts, logins, or customer portals on this Site. We do not process payments through this Site. We do not host a blog with comments or any other user-generated content.
4. Cookies and Similar Technologies
The Site uses a limited number of cookies:
| Purpose | Set by | What it does |
| Security and bot management | Cloudflare | Distinguishes legitimate visitors from automated traffic and helps protect the Site from abuse. Necessary for the Site to function securely. |
| Spam prevention on forms | Cloudflare Turnstile | Verifies that a form submission comes from a person rather than an automated script. |
| Analytics | Google Analytics 4 | Measures how visitors find and use the Site, in aggregate. |
We do not use cookies for advertising, retargeting, cross-site tracking, or building marketing profiles. We do not run advertising pixels on this Site.
Most browsers let you block or delete cookies through their settings. Blocking security-related cookies may prevent parts of the Site from working correctly.
Do Not Track and Global Privacy Control. Because we do not track visitors across third-party websites or sell personal data, our practices do not change in response to Do Not Track or Global Privacy Control browser signals.
5. How We Use Information
We use the information described above to:
- Respond to inquiries and schedule assessments or work
- Contact you by phone or email about your request
- Evaluate whether a requested scope and property location fall within our service area and capabilities
- Prepare estimates, proposals, and service agreements
- Maintain records of inquiries and communications
- Understand how the Site is used and improve its content and performance
- Protect the Site against spam, fraud, and abuse
- Comply with legal obligations and enforce our Terms of Use
Marketing email. We send marketing or promotional email only to people who have affirmatively signed up to receive it. Submitting the contact form does not sign you up for marketing email — those are separate actions. If you do subscribe, every marketing message we send will include a working unsubscribe link and our physical mailing address, and we will honor an unsubscribe request promptly. You may also unsubscribe at any time by emailing cs@facilguard.com.
6. We Do Not Sell Your Information
FacilGuard does not sell personal data. We do not rent, trade, or otherwise exchange personal information for monetary consideration, and we do not share it with third parties for their own marketing or advertising purposes.
7. Who We Share Information With
We share information only as follows:
Service providers. We use third-party providers to operate the Site. Each has access only to the information needed to perform its function:
| Provider | Function |
| Bluehost | Website hosting; stores the Site and its database, including form submissions |
| Cloudflare | Content delivery, DNS, security filtering, and bot protection |
| Google (Analytics) | Website usage analytics |
| Bluehost (mail.facilguard.com) | Outbound mail server that delivers form notification emails to cs@facilguard.com |
| Email marketing platform | Delivery of marketing email, if and only if you have subscribed |
Subcontractors and partners. Where a job requires trade work that FacilGuard does not self-perform, we share only the information necessary for a qualified subcontractor to perform that work — typically the property location, site access details, and a description of the scope. We do not otherwise share your information with subcontractors or partners.
Legal and safety. We may disclose information where required by law, subpoena, court order, or governmental request, or where we believe disclosure is necessary to protect our legal rights, safety, or property, or that of others.
Business transfer. If FacilGuard is involved in a merger, acquisition, or sale of assets, information may be transferred as part of that transaction.
8. How Long We Keep Information
| Information | Retention |
| Contact form submissions (website database) | 24 months from submission, then deleted |
| Email correspondence | Retained in our business email records per our normal record-keeping practices |
| Client records associated with performed work | Retained as required for business, tax, warranty, and legal purposes |
| Marketing email subscription records | Until you unsubscribe, plus a suppression record retained thereafter so we do not contact you again |
| Analytics data | 14 months |
| Server and security logs | Retained by our hosting and security providers per their standard periods |
Inquiries that do not result in work are periodically purged from the website database.
9. Security
We use reasonable administrative and technical safeguards to protect information collected through the Site, including HTTPS encryption for all traffic, a web application firewall and bot filtering, access controls on the website administration area, limits on repeated failed login attempts, and routine software updates and backups.
No method of transmission or storage is completely secure. We cannot guarantee absolute security, and you submit information through the Site at your own risk.
10. Your Choices
- Do not submit information. You can browse the Site without submitting a form. You may also contact us by phone at (703) 544-8266 instead.
- Opt out of analytics. You can install the Google Analytics Opt-out Browser Add-on or block analytics cookies in your browser.
- Request access, correction, or deletion. Contact us at cs@facilguard.com and we will respond to reasonable requests concerning information you submitted through the Site. We may need to verify your identity and may retain information where required for legal, tax, or contractual reasons.
- Unsubscribe from marketing email. Use the unsubscribe link in any marketing message, or email cs@facilguard.com. This does not affect operational messages about work already underway.
- Stop hearing from us. Ask us to stop contacting you and we will honor that request, subject to any obligations under an active service agreement.
11. State Privacy Laws
The Virginia Consumer Data Protection Act (Va. Code § 59.1-575 et seq.) defines a “consumer” as a Virginia resident acting only in an individual or household context, and expressly excludes individuals acting in a commercial or employment context. It also applies only to businesses meeting specified volume thresholds. Because FacilGuard serves commercial clients exclusively and does not meet those thresholds, the VCDPA does not generally apply to information collected through this Site.
We nonetheless handle information in a manner consistent with the principles of that law, and we will respond to reasonable requests regarding information collected through this Site regardless of whether a specific statute requires us to.
If you believe a privacy law in your state applies to information you submitted, contact us at cs@facilguard.com and we will review the request.
12. Children
This Site is directed to businesses and is not intended for anyone under 18. We do not knowingly collect information from children. If you believe a child has submitted information through this Site, contact us and we will delete it.
13. Location of Processing
FacilGuard operates in the United States and provides services in Northern Virginia. This Site is intended for users located in the United States. Information collected through the Site is processed and stored in the United States, which may have different data protection standards than other countries.
14. Third-Party Links
The Site may link to third-party websites. We are not responsible for the privacy practices or content of those sites. Review their privacy policies before providing information to them.
15. Changes to This Policy
We may update this Privacy Policy from time to time. Changes take effect when posted, and the “Last Updated” date above will change. Material changes will be noted on this page. Please review this policy periodically.
16. Contact Us
Questions, concerns, or requests concerning this Privacy Policy:
FacilGuard Facility Solutions LLC 5510 Cherokee Avenue, Suite 300 Alexandria, Virginia 22312 Phone: (703) 544-8266 Email: cs@facilguard.com
NOTES FOR REVIEW — DELETE BEFORE PUBLISHING
Version 1.1 — August 5, 2026. Effective date set; retention periods set at 24 months (forms) and 14 months (analytics); marketing email language added; subcontractor sharing narrowed as instructed; SMTP provider named.
Two items still need action from you:
- Set GA4 retention to 14 months. Admin → Data Settings → Data Retention. The default is 2 months. The policy now states 14 — make the setting match the document, not the other way round.
- Enforce 24-month form retention in Fluent Forms. The policy commits you to deleting submissions after 24 months. Put a calendar reminder on it, or the commitment is fiction.
Three items to add when they happen:
- CRM (Zoho or otherwise). The moment form data flows into a CRM, that vendor becomes a processor and must be added to the Section 7 table by name. Also confirm which region’s data centers the account uses — Zoho operates US, EU, India, and Australia data centers, and Section 13 states that data is processed in the United States. If the account is provisioned outside the US, Section 13 needs rewording.
- Email marketing platform. Section 7 currently carries a generic placeholder row. Replace it with the actual platform name once chosen.
- Newsletter signup form. The policy now covers marketing email, but the site has no signup mechanism. If you add one, it must be a separate, clearly-labeled opt-in — not a pre-checked box on the contact form, and not implied consent from a contact-form submission. Bundled consent is the most common CAN-SPAM problem for small businesses.
Why this policy is written the way it is:
- It describes your actual stack. Cloudflare, Bluehost, Fluent Forms, FluentSMTP, and GA4 are named because they all touch visitor data. A generic template listing services you do not use — or omitting ones you do — is a misrepresentation, and it is the most common defect in small-business privacy policies.
- Section 11 is the useful one. The Virginia Consumer Data Protection Act defines “consumer” as a Virginia resident acting in an individual or household context and expressly excludes people acting in a commercial or employment context, so your B2B contacts fall outside it. It has no revenue threshold; applicability turns on processing 100,000+ consumers, or 25,000+ plus deriving over half of gross revenue from selling data. You will not meet either. Your commercial-only positioning does real regulatory work here. The policy still commits to honoring reasonable requests, which costs nothing and reads well to a facility manager running vendor diligence.
- Section 6 is a clean, unqualified “we do not sell data” statement. Some procurement checklists screen for exactly this.
- No cookie consent banner is specified. Not required under current US law given your visitor profile, and it would add weight and friction to a site whose stated priority is speed. Revisit if you add advertising pixels or retargeting.
- Sections 3.1 and 9 both warn against submitting sensitive information. Facility managers sometimes paste more into a form field than they should.
One operational point: this policy makes commitments — 24-month retention, 14-month analytics, honoring deletion requests, marketing email only on opt-in. Those are commitments, not decoration. When the CRM goes in, this document changes at the same time.
Attorney review: I am not a lawyer and this is not legal advice. This is a well-structured draft grounded in your actual technical setup and current Virginia law, and it should save meaningful attorney time — but have counsel review it before publishing, particularly Sections 7, 8, and 11.
Who we are
Our website address is: https://facilguard.com.
Comments
When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
Media
If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.
Cookies
If you leave a comment on our site you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.
If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.
When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
If you edit or publish an article, an additional cookie will be saved in your browser. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.
Embedded content from other websites
Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.
Who we share your data with
If you request a password reset, your IP address will be included in the reset email.
How long we retain your data
If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.
What rights you have over your data
If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.
Where your data is sent
Visitor comments may be checked through an automated spam detection service.