Privacy & Data Protection Policy
Discretion, by design. Data protection, by default.
Sky Sovereign Group operates in environments where privacy is not optional — it is the foundation of trust. We treat all personal, operational, and observational data with the highest level of confidentiality, whether you are a client, prospect, partner, or visitor to our site.
1. Our Commitment to Privacy
We are committed to full compliance with the General Data Protection Regulation (GDPR) (EU) 2016/679, as well as relevant national and regional legislation.
In addition, we align our internal protocols with leading international standards, including:
- ISO/IEC 27001 — Information Security Management
- EASA Regulatory Guidelines — Applicable to all drone operations
- Internal vetting and access policies to restrict data visibility to only essential personnel
2. What Data We Collect
We collect minimal information, strictly limited to operational or communication purposes:
- Contact form entries (name, encrypted email, referring contact if applicable)
- Preferred communication method (Signal, secure call, encrypted email, etc.)
- Technical data such as IP address, browser type, and region — used only for website functionality and security
We do not use tracking cookies, ad pixels, or third-party analytics tools that harvest user behavior.
3. How We Use Your Data
Your data may be used for:
- Assessing suitability for contact or onboarding
- Scheduling encrypted communication
- Internal planning and risk assessment
- Regulatory compliance and operational security
We do not use your information for marketing, advertising, or resale under any circumstance.
4. Data Storage & Security
All data is stored using military-grade encryption standards, with access granted only to authorized security-cleared personnel.
- Servers are located in EU-based, ISO-certified data centers
- We implement zero-retention for non-essential communication records
- Encrypted communication platforms (e.g., ProtonMail, Signal) are preferred
5. Third Parties
We do not share data with third parties unless:
- Required by law under a valid warrant or regulatory request
- Explicitly authorized by you in writing for operational coordination (e.g., family office, estate manager, security liaison)
6. Your Rights
Under GDPR, you have the right to:
- Request access to the personal data we hold about you
- Correct, delete, or restrict the use of your data
- Withdraw consent or object to processing
- File a complaint with a data protection authority
For all privacy-related requests, contact:
[email protected]
(Encrypted email available upon request)
7. Updates to This Policy
We review and update this policy periodically to reflect changes in law or internal practices. The latest version is always available on this page.
Effective date: 1 February 2024
Last updated: 22 May 2025