Privacy Policy
BOOM BOARD Gestão e Transformação Ltda
CNPJ: 35.953.865/0001-57
Last updated: 06/17/2025
Contact: ops@deumboom.com
1. Who we are
We are a company specialized in organizational culture diagnosis and management, headquartered in Santa Catarina, Brazil. We operate in a B2B model, providing services to companies of different sizes and industries.
BOOM is the owner and responsible party for all websites with the domains deumboom.com and deumboom.com.br, acting as the data controller when processing your personal data.
By accessing our websites, requesting contact, downloading materials and content made available, interacting with BOOM at events, participating in webinars, using our solutions, or responding to our surveys, you will be asked to accept this Privacy Notice. This indicates that you are aware of and agree to the collection and processing of your data by BOOM for such purposes.
2. Who is the Data Protection Officer (DPO)?
Primary DPO: Amanda Cris Miglioranza
Contact email: ops@deumboom.com
3. What data is collected? And how?
We collect only the personal data strictly necessary to ensure the authenticity of responses and the proper organization of the analysis database in the projects carried out. The only mandatory data are department and the last 4 digits of the CPF (Brazilian tax ID), used exclusively to confirm that only authorized individuals participate in the surveys.
Other data such as name, corporate email, WhatsApp number, date of hire, date of birth, and work location are optional and provided only if the contracting company wishes to conduct additional segmentations or personalize communication.
This data is securely processed and used exclusively for operational and statistical purposes, without any link to the individual content of the responses.
Data collection methods vary according to your interaction with our solutions:
Data provided by contracting companies: For internal diagnostics, we receive directly from companies a database containing the data necessary for sending surveys and organizing the analysis. The mandatory data are department and the last 4 digits of the CPF. The others may be included at the contractor’s discretion.
Data entered directly by the user: In interactions with BOOM’s public channels, such as (1) downloading materials, (2) requesting contact, (3) registering for webinars or events, (4) participating in public surveys, or (5) sending messages via forms.
Website browsing data: During navigation, we automatically collect technical information through cookies and similar technologies, such as IP address, browser type, approximate location, visit duration, and page interactions. For more details, see our Cookie Notice.
Marketing and informational materials: We may request basic data when you choose to access exclusive content from BOOM or partners. If data is shared with third parties, this will be clearly stated.
Events organized or supported by BOOM: When registering for events we promote, we may collect data such as name, email, and company to enable your participation and send related information.
4. What are the legal bases for processing the collected data?
BOOM will process your personal data for the purposes described in this Privacy Notice based on:
Execution of a contract signed with the contracting company, or to carry out preliminary procedures related to your request for contact, participation in events, or access to materials.
Legitimate interest, especially to improve our services, send institutional communications, and offer content related to our work in organizational culture, always respecting your expectations and rights.
Legal or regulatory obligations, or for the regular exercise of rights in administrative, judicial, or arbitration proceedings.
Consent, when required by law, which may be withdrawn at any time without prejudice to the legality of processing carried out prior to withdrawal.
5. What is the purpose of the collected personal data?
We use collected personal data to:
Allow your access to BOOM’s solutions
Ensure the secure sending and response of internal surveys
Generate customized reports by area, department, generation, date of hire, geographic location, or group
Improve the experience with our services and content
Contact you if requested
Send communications, materials, or invitations about events, courses, or surveys
Monitor service quality and interactions
Use anonymized or aggregated data for benchmarking, continuous product improvement, algorithm development, and generation of statistical intelligence, without any possibility of individual or organizational identification
6. With whom do we share collected data?
We hire service providers that support us in carrying out our activities, such as email platforms, automation tools, and data hosting. These providers may have access to personal information solely to perform the services they were contracted for. All are carefully selected, have contracts with confidentiality clauses, and must follow security and data protection standards compatible with the LGPD.
We may make available content developed in partnership with other companies. If you download materials linked to partners, your data may be shared with these organizations, which will be clearly identified at the time of collection.
If you participate in events promoted or supported by BOOM, your data may be shared with sponsors, subject to your consent.
We may also share data when necessary to comply with legal obligations, court orders, or to exercise or defend rights in administrative, judicial, or arbitration proceedings.
7. Information security measures and storage
Some of the data processed by BOOM is stored and processed using widely adopted corporate technologies, whose servers may be located outside Brazil. These providers adopt recognized information security standards and comply with applicable legal requirements.
BOOM implements technical and administrative measures to protect your data against unauthorized access, leaks, alterations, or any form of misuse. Our security practices include:
Restricted data access control, with authentication and user profile permissions
Data encryption in transit and, when applicable, at rest
Use of unique identifiers (IDs) for pseudonymization and analysis without direct exposure of personal data
Organized data storage in controlled-access areas, with periodic backups per internal policy
Logging and secure disposal of data after the agreed retention period (generally 30 days after final delivery)
Use of HTTPS protocols in all our systems
Internal monitoring of operational flows and continuous attention to potential security incidents
Despite all efforts, it is important to acknowledge that no system is completely immune to risk. The nature of the internet and digital systems involves variables beyond our control, and there is always a possibility, albeit remote, of unauthorized access by malicious third parties.
8. How long do we keep your data?
We store your data only for as long as necessary to fulfill the purposes for which it was collected. After this period, the data is deleted or anonymized.
You may request deletion at any time.
Additionally, BOOM retains technical backups of data for up to 90 days, solely for disaster recovery or operational failure purposes. After this period, backups are automatically and securely deleted.
9. What are your data privacy rights?
You may exercise your rights under the Brazilian General Data Protection Law (LGPD), such as confirmation of processing, access, correction, portability, objection, withdrawal of consent, or deletion of your data, by sending a request to dpo@deumboom.com. The response time is up to 15 business days, in accordance with current legislation.
10. How to stop receiving marketing emails?
You can click the unsubscribe link at the bottom of any emails received.
If you later complete another form on our website, you may begin receiving communications again, in which case you will need to unsubscribe once more if desired.
11. Updates
This Privacy Notice may be updated. We recommend reviewing it periodically. If there are significant changes, we will request renewed acceptance.
Privacy Policy
BOOM BOARD Gestão e Transformação Ltda
CNPJ: 35.953.865/0001-57
Last updated: 06/17/2025
Contact: ops@deumboom.com
1. Who we are
We are a company specialized in organizational culture diagnosis and management, headquartered in Santa Catarina, Brazil. We operate in a B2B model, providing services to companies of different sizes and industries.
BOOM is the owner and responsible party for all websites with the domains deumboom.com and deumboom.com.br, acting as the data controller when processing your personal data.
By accessing our websites, requesting contact, downloading materials and content made available, interacting with BOOM at events, participating in webinars, using our solutions, or responding to our surveys, you will be asked to accept this Privacy Notice. This indicates that you are aware of and agree to the collection and processing of your data by BOOM for such purposes.
2. Who is the Data Protection Officer (DPO)?
Primary DPO: Amanda Cris Miglioranza
Contact email: ops@deumboom.com
3. What data is collected? And how?
We collect only the personal data strictly necessary to ensure the authenticity of responses and the proper organization of the analysis database in the projects carried out. The only mandatory data are department and the last 4 digits of the CPF (Brazilian tax ID), used exclusively to confirm that only authorized individuals participate in the surveys.
Other data such as name, corporate email, WhatsApp number, date of hire, date of birth, and work location are optional and provided only if the contracting company wishes to conduct additional segmentations or personalize communication.
This data is securely processed and used exclusively for operational and statistical purposes, without any link to the individual content of the responses.
Data collection methods vary according to your interaction with our solutions:
Data provided by contracting companies: For internal diagnostics, we receive directly from companies a database containing the data necessary for sending surveys and organizing the analysis. The mandatory data are department and the last 4 digits of the CPF. The others may be included at the contractor’s discretion.
Data entered directly by the user: In interactions with BOOM’s public channels, such as (1) downloading materials, (2) requesting contact, (3) registering for webinars or events, (4) participating in public surveys, or (5) sending messages via forms.
Website browsing data: During navigation, we automatically collect technical information through cookies and similar technologies, such as IP address, browser type, approximate location, visit duration, and page interactions. For more details, see our Cookie Notice.
Marketing and informational materials: We may request basic data when you choose to access exclusive content from BOOM or partners. If data is shared with third parties, this will be clearly stated.
Events organized or supported by BOOM: When registering for events we promote, we may collect data such as name, email, and company to enable your participation and send related information.
4. What are the legal bases for processing the collected data?
BOOM will process your personal data for the purposes described in this Privacy Notice based on:
Execution of a contract signed with the contracting company, or to carry out preliminary procedures related to your request for contact, participation in events, or access to materials.
Legitimate interest, especially to improve our services, send institutional communications, and offer content related to our work in organizational culture, always respecting your expectations and rights.
Legal or regulatory obligations, or for the regular exercise of rights in administrative, judicial, or arbitration proceedings.
Consent, when required by law, which may be withdrawn at any time without prejudice to the legality of processing carried out prior to withdrawal.
5. What is the purpose of the collected personal data?
We use collected personal data to:
Allow your access to BOOM’s solutions
Ensure the secure sending and response of internal surveys
Generate customized reports by area, department, generation, date of hire, geographic location, or group
Improve the experience with our services and content
Contact you if requested
Send communications, materials, or invitations about events, courses, or surveys
Monitor service quality and interactions
Use anonymized or aggregated data for benchmarking, continuous product improvement, algorithm development, and generation of statistical intelligence, without any possibility of individual or organizational identification
6. With whom do we share collected data?
We hire service providers that support us in carrying out our activities, such as email platforms, automation tools, and data hosting. These providers may have access to personal information solely to perform the services they were contracted for. All are carefully selected, have contracts with confidentiality clauses, and must follow security and data protection standards compatible with the LGPD.
We may make available content developed in partnership with other companies. If you download materials linked to partners, your data may be shared with these organizations, which will be clearly identified at the time of collection.
If you participate in events promoted or supported by BOOM, your data may be shared with sponsors, subject to your consent.
We may also share data when necessary to comply with legal obligations, court orders, or to exercise or defend rights in administrative, judicial, or arbitration proceedings.
7. Information security measures and storage
Some of the data processed by BOOM is stored and processed using widely adopted corporate technologies, whose servers may be located outside Brazil. These providers adopt recognized information security standards and comply with applicable legal requirements.
BOOM implements technical and administrative measures to protect your data against unauthorized access, leaks, alterations, or any form of misuse. Our security practices include:
Restricted data access control, with authentication and user profile permissions
Data encryption in transit and, when applicable, at rest
Use of unique identifiers (IDs) for pseudonymization and analysis without direct exposure of personal data
Organized data storage in controlled-access areas, with periodic backups per internal policy
Logging and secure disposal of data after the agreed retention period (generally 30 days after final delivery)
Use of HTTPS protocols in all our systems
Internal monitoring of operational flows and continuous attention to potential security incidents
Despite all efforts, it is important to acknowledge that no system is completely immune to risk. The nature of the internet and digital systems involves variables beyond our control, and there is always a possibility, albeit remote, of unauthorized access by malicious third parties.
8. How long do we keep your data?
We store your data only for as long as necessary to fulfill the purposes for which it was collected. After this period, the data is deleted or anonymized.
You may request deletion at any time.
Additionally, BOOM retains technical backups of data for up to 90 days, solely for disaster recovery or operational failure purposes. After this period, backups are automatically and securely deleted.
9. What are your data privacy rights?
You may exercise your rights under the Brazilian General Data Protection Law (LGPD), such as confirmation of processing, access, correction, portability, objection, withdrawal of consent, or deletion of your data, by sending a request to dpo@deumboom.com. The response time is up to 15 business days, in accordance with current legislation.
10. How to stop receiving marketing emails?
You can click the unsubscribe link at the bottom of any emails received.
If you later complete another form on our website, you may begin receiving communications again, in which case you will need to unsubscribe once more if desired.
11. Updates
This Privacy Notice may be updated. We recommend reviewing it periodically. If there are significant changes, we will request renewed acceptance.
Privacy Policy
BOOM BOARD Gestão e Transformação Ltda
CNPJ: 35.953.865/0001-57
Last updated: 06/17/2025
Contact: ops@deumboom.com
1. Who we are
We are a company specialized in organizational culture diagnosis and management, headquartered in Santa Catarina, Brazil. We operate in a B2B model, providing services to companies of different sizes and industries.
BOOM is the owner and responsible party for all websites with the domains deumboom.com and deumboom.com.br, acting as the data controller when processing your personal data.
By accessing our websites, requesting contact, downloading materials and content made available, interacting with BOOM at events, participating in webinars, using our solutions, or responding to our surveys, you will be asked to accept this Privacy Notice. This indicates that you are aware of and agree to the collection and processing of your data by BOOM for such purposes.
2. Who is the Data Protection Officer (DPO)?
Primary DPO: Amanda Cris Miglioranza
Contact email: ops@deumboom.com
3. What data is collected? And how?
We collect only the personal data strictly necessary to ensure the authenticity of responses and the proper organization of the analysis database in the projects carried out. The only mandatory data are department and the last 4 digits of the CPF (Brazilian tax ID), used exclusively to confirm that only authorized individuals participate in the surveys.
Other data such as name, corporate email, WhatsApp number, date of hire, date of birth, and work location are optional and provided only if the contracting company wishes to conduct additional segmentations or personalize communication.
This data is securely processed and used exclusively for operational and statistical purposes, without any link to the individual content of the responses.
Data collection methods vary according to your interaction with our solutions:
Data provided by contracting companies: For internal diagnostics, we receive directly from companies a database containing the data necessary for sending surveys and organizing the analysis. The mandatory data are department and the last 4 digits of the CPF. The others may be included at the contractor’s discretion.
Data entered directly by the user: In interactions with BOOM’s public channels, such as (1) downloading materials, (2) requesting contact, (3) registering for webinars or events, (4) participating in public surveys, or (5) sending messages via forms.
Website browsing data: During navigation, we automatically collect technical information through cookies and similar technologies, such as IP address, browser type, approximate location, visit duration, and page interactions. For more details, see our Cookie Notice.
Marketing and informational materials: We may request basic data when you choose to access exclusive content from BOOM or partners. If data is shared with third parties, this will be clearly stated.
Events organized or supported by BOOM: When registering for events we promote, we may collect data such as name, email, and company to enable your participation and send related information.
4. What are the legal bases for processing the collected data?
BOOM will process your personal data for the purposes described in this Privacy Notice based on:
Execution of a contract signed with the contracting company, or to carry out preliminary procedures related to your request for contact, participation in events, or access to materials.
Legitimate interest, especially to improve our services, send institutional communications, and offer content related to our work in organizational culture, always respecting your expectations and rights.
Legal or regulatory obligations, or for the regular exercise of rights in administrative, judicial, or arbitration proceedings.
Consent, when required by law, which may be withdrawn at any time without prejudice to the legality of processing carried out prior to withdrawal.
5. What is the purpose of the collected personal data?
We use collected personal data to:
Allow your access to BOOM’s solutions
Ensure the secure sending and response of internal surveys
Generate customized reports by area, department, generation, date of hire, geographic location, or group
Improve the experience with our services and content
Contact you if requested
Send communications, materials, or invitations about events, courses, or surveys
Monitor service quality and interactions
Use anonymized or aggregated data for benchmarking, continuous product improvement, algorithm development, and generation of statistical intelligence, without any possibility of individual or organizational identification
6. With whom do we share collected data?
We hire service providers that support us in carrying out our activities, such as email platforms, automation tools, and data hosting. These providers may have access to personal information solely to perform the services they were contracted for. All are carefully selected, have contracts with confidentiality clauses, and must follow security and data protection standards compatible with the LGPD.
We may make available content developed in partnership with other companies. If you download materials linked to partners, your data may be shared with these organizations, which will be clearly identified at the time of collection.
If you participate in events promoted or supported by BOOM, your data may be shared with sponsors, subject to your consent.
We may also share data when necessary to comply with legal obligations, court orders, or to exercise or defend rights in administrative, judicial, or arbitration proceedings.
7. Information security measures and storage
Some of the data processed by BOOM is stored and processed using widely adopted corporate technologies, whose servers may be located outside Brazil. These providers adopt recognized information security standards and comply with applicable legal requirements.
BOOM implements technical and administrative measures to protect your data against unauthorized access, leaks, alterations, or any form of misuse. Our security practices include:
Restricted data access control, with authentication and user profile permissions
Data encryption in transit and, when applicable, at rest
Use of unique identifiers (IDs) for pseudonymization and analysis without direct exposure of personal data
Organized data storage in controlled-access areas, with periodic backups per internal policy
Logging and secure disposal of data after the agreed retention period (generally 30 days after final delivery)
Use of HTTPS protocols in all our systems
Internal monitoring of operational flows and continuous attention to potential security incidents