This policy sets out what personal data Diwizi collects, including through cookies, why it is collected, who it is shared with, and what you can require of us. It covers diwizi.com and the lead capture forms Diwizi runs outside the site, including those on LinkedIn.
Last updated: 11 August 2026.
The data controller for the processing described here is:
Company register (Brazil) CNPJ 23.849.859/0001-75
Rua Bom Jesus, 212, Sala 1904, Juveve
Curitiba, PR, 80035-010, Brazil
Privacy contact: contact@diwizi.com
Diwizi is established in Brazil and has no establishment in the EU or the UK. Where the GDPR or the UK GDPR applies to you as a visitor, the rights below are honoured regardless.
Very little, at moments you can identify. There is no account, no members area and no cross session profiling of visitors.
Present on service pages and blog articles. It collects your name, email, website address, budget range and the message you write. The page you sent it from and your browser language travel with it, so the reply arrives with context. Submissions go to a mailbox on the site's own server.
The form uses a hidden field that humans leave empty, a simple arithmetic question and a timestamp from when the page loaded. These exist only to discard automated submissions. None of it identifies you or is used for anything else.
Diwizi runs lead generation ads on LinkedIn. When you submit one, LinkedIn shares the fields you authorised at that moment, typically name, work email, company and job title, filled in from your own profile. That collection happens inside LinkedIn under its own privacy policy. What we do with the data afterwards is governed by this document.
The server records IP address, date, time, page requested and browser identification, as any web server does. These logs exist for security and diagnostics. They are not combined with form submissions and are never used for advertising.
Since 11 August 2026 diwizi.com loads Google Tag Manager (container GTM-PTPZNQZN) across the whole site, including the home page, the service pages and every blog article. Tag Manager is a delivery mechanism: it loads the measurement tags configured inside it, which is how we understand which articles bring people in and which lead to an enquiry.
Tags delivered this way can set cookies in your browser and share data, including your IP address and pages viewed, with Google. Where those tags include advertising products, that data may also be used for audience building by Google.
What is not done: nothing on this domain records your screen, replays your session, or builds a profile of you across visits from data we hold ourselves.
How to refuse: you can block third party cookies in your browser, use private browsing, or install a content blocker. The site works normally without any of it. If you are in the EU or the UK and want your data removed after the fact, write to contact@diwizi.com and it will be deleted.
| Data | Purpose | Lawful basis (GDPR Art. 6) |
|---|---|---|
| Name, email, website, budget, message | Reply to your enquiry and assess whether working together makes sense | 6(1)(b): steps at your request prior to a contract |
| Name, email, company, role from LinkedIn | Follow up on the offer or material that prompted your submission | 6(1)(b), since you submitted the form |
| Business contact details for outbound prospecting | Introduce services to companies likely to have an interest | 6(1)(f): legitimate interests, detailed in the next section |
| Server access logs | Security, abuse prevention and technical diagnostics | 6(1)(f): legitimate interests in keeping the service secure |
| Cookies and identifiers set through Google Tag Manager | Understanding which content brings visitors and which leads to an enquiry | 6(1)(a): consent, where required in your jurisdiction |
| IP address exposed to Google Fonts | Serving the typography the pages are built with | 6(1)(f): legitimate interests in delivering the site as designed |
Diwizi does outbound business to business prospecting. We may contact professionals whose work details are publicly available, or who reached us through a referral, to introduce paid media services.
The lawful basis is legitimate interests under Article 6(1)(f). Applying it commits us to three things in practice:
You have an absolute right to object to direct marketing under Article 21(2), and we will stop on request. Write to contact@diwizi.com. If you are in the UK, the Privacy and Electronic Communications Regulations also apply, and the same request covers them.
Diwizi does not sell personal data, does not pass it to data brokers, and does not use it to build advertising audiences.
Pages and mailboxes sit on a server rented from a hosting company, which has technical access to the infrastructure in order to keep it running.
Google Tag Manager runs on the blog and delivers the measurement tags configured in it. Google processes the resulting data as described in its own privacy terms.
Every page loads typography from Google Fonts. Your browser connects to Google servers, which log the IP address. No cookie or identifier is set by this.
Where a lead originates from an ad form, LinkedIn collects the data and passes it to us, acting as controller for its own part of that process.
The scheduling button leads to an external service. Nothing is sent there until you click, and whatever you enter on the booking page is subject to that provider's policy.
Diwizi is based in Brazil and the providers above are largely in the United States, so your data is processed outside the EEA and the UK. Brazil is not covered by a European adequacy decision, and transfers rely on the standard contractual terms of the providers concerned and on Article 49(1)(b) where the transfer is necessary to perform a contract at your request.
Under the GDPR and the UK GDPR you may, at any time and free of charge:
Write to contact@diwizi.com. We respond within 30 days. We may ask you to confirm your identity first, which exists to protect you from someone else making a request in your name.
If you are not satisfied with the outcome, you can complain to your national data protection authority. In the UK that is the Information Commissioner's Office, at ico.org.uk. In the EU it is the supervisory authority of the country where you live.
The whole site runs over HTTPS. Access to mailboxes and to the server is restricted and password protected. Form submissions pass automation checks before any record is created.
No measure removes risk entirely. Where a security incident is likely to result in a risk to individuals, we will notify the relevant authority and the people affected as required by Articles 33 and 34.
If this policy changes, the date at the top changes with it. Changes that materially affect how your data is handled are communicated by email to anyone already in contact with us.