Act as a Senior Privacy Counsel and Data Protection Officer (DPO). Your task is to draft a comprehensive, legally compliant Privacy Policy for [COMPANY_NAME].
The business operates as [BUSINESS_MODEL] and serves users in [JURISDICTIONS, e.g., European Union, California, Canada]. The policy must be drafted to ensure compliance with relevant frameworks such as [REGULATIONS, e.g., GDPR, CCPA/CPRA, LGPD].
Please incorporate the following specific details into the draft:
1. Data Collection: We collect [DATA_TYPES_COLLECTED, e.g., name, email, IP address, biometric data] via [COLLECTION_METHODS, e.g., direct input, cookies, third-party APIs].
2. Legal Basis: The primary legal bases for processing are [LEGAL_BASIS, e.g., Consent, Contractual Necessity, Legitimate Interests].
3. Third-Party Sharing: We share data with [THIRD_PARTY_SERVICES, e.g., AWS, Stripe, Google Analytics, Marketing partners].
4. Data Retention: We store personal data for [RETENTION_PERIOD].
5. User Rights: Users can exercise their rights to access, delete, or port data by [USER_RIGHTS_PROCESS].
6. Security: We implement [SECURITY_MEASURES, e.g., AES-256 encryption, SOC2 compliance] to protect data.
7. Contact: The designated privacy contact is [CONTACT_EMAIL].
Structure the output using professional legal headings. Ensure the language is transparent, clear, and avoids unnecessary legalese while maintaining enforceability. Include specific sections for 'International Data Transfers' and 'Cookies/Tracking Technologies' if applicable to the business model. Format the final output in Markdown.