Legal Notices
Privacy Policy
Thank you for choosing to be part of our community at PeopleONE Inc., doing business as ExpertusONE (“Company”, “Expertus”, “we”, “us”, “our”). We are committed to protecting your personal information and your right to privacy. If you have any questions or concerns about this privacy notice or our practices with regard to your personal information, please contact us at info@expertusone.com.
For our client’s data privacy policy, please see the related page.
When you visit our website https://expertusone.com (the “Website”), and more generally, use any of our services (the “Services”, which include the Website and software applications), we appreciate that you are trusting us with your personal information. We take your privacy very seriously. In this privacy notice, we seek to explain to you in the clearest way possible what information we collect, how we use it, and what rights you have in relation to it. We hope you take some time to read through it carefully, as it is important. If there are any terms in this privacy notice that you do not agree with, please discontinue use of our Services immediately.
This privacy notice applies to all information collected through our Services (which, as described above, includes our Website), as well as any related services, sales, marketing, or events.
Please read this privacy notice carefully, as it will help you understand what we do with the information that we collect.
PeopleONE Data Privacy Framework Notice
EU-U.S., UK Extension, and Swiss-U.S. Data Privacy Frameworks
Effective date: 27th August, 2026
1. Scope and organization
This Data Privacy Framework Notice (DPF Notice) describes how PeopleONE, Inc., doing business as ExpertusONE (PeopleONE, ExpertusONE, we, us, or our), handles personal data received in the United States from the European Union, the United Kingdom, and Switzerland in reliance on the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF). This DPF Notice applies to personal data other than human resources data.
PeopleONE, Inc. is a Delaware corporation. No subsidiaries or affiliates are covered by this DPF Notice or the related self-certification unless they are later identified in this Notice, the BBB National Programs Participation Agreement, and the Department of Commerce self-certification.
2. Data Privacy Framework commitment
PeopleONE, Inc. complies with the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF) as set forth by the U.S. Department of Commerce. PeopleONE, Inc. has certified to the U.S. Department of Commerce that it adheres to the EU-U.S. Data Privacy Framework Principles (EU-U.S. DPF Principles) about the processing of personal data received from the European Union and the United Kingdom in reliance on the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF. PeopleONE, Inc. has certified to the U.S. Department of Commerce that it adheres to the Swiss-U.S. Data Privacy Framework Principles (Swiss-U.S. DPF Principles) regarding the processing of personal data received from Switzerland in reliance on the Swiss-U.S. DPF.
If there is any conflict between the terms in this privacy policy and the EU-U.S. DPF Principles and/or the Swiss-U.S. DPF Principles, the Principles shall govern.
To learn more about the Data Privacy Framework (DPF) program, and to view our certification, please visit www.dataprivacyframework.gov.
3. Our role
ExpertusONE provides enterprise learning-management and related software services. We may process personal data as a service provider or processor on behalf of customer organizations and according to their instructions. We may also process limited personal data for our own business purposes, such as managing our website, sales and customer relationships, support, security, and legal obligations. Where we process data solely on behalf of a customer, that customer controls the purposes and means of processing and is generally the appropriate organization to contact first about the data.
4. Types of personal data and purposes
| Category | Examples | Purposes |
|---|---|---|
| Identity and contact data | Name, username or employee identifier, business email, telephone number, postal address, and related contact details. | Accounts, authentication, communications, support, administration, sales, and relationship management. |
| Professional and organizational data | Employer, business unit, department, job title, role, manager, location, hierarchy, and customer-configured profile fields. | Role-based access, assignments, learning administration, organizational reporting, and customer-directed workflows. |
| Learning and service-use data | Enrollments, assignments, attendance, course activity, progress, completion, results, certifications, skills, transcripts, and feedback. | Learning delivery and administration, progress and compliance tracking, and reporting to customers and authorized users. |
| Account, device, and technical data | Login and authentication data, IP address, device and browser data, identifiers, timestamps, audit trails, logs, and security events. | Operating, securing, troubleshooting, monitoring, and improving the services; detecting misuse; maintaining records. |
| Communications and support data | Support requests, correspondence, meeting records, feedback, and information submitted through forms. | Responding to inquiries, support, relationship management, and quality improvement. |
| Website and marketing data | Website activity, cookie or similar-technology identifiers, preferences, campaign interactions, and form submissions. | Website operation and analytics, communications, and marketing, subject to applicable consent and choice requirements. |
| Customer-provided data | Other personal data a customer configures or uploads for its authorized learning and workforce-development purposes. | Processing according to the customer’s documented instructions and applicable contractual requirements. |
Sensitive personal data – We do not intentionally collect sensitive personal data unless it is provided by a customer or individual for an authorized purpose. Where the DPF Principles require affirmative express consent (opt-in) for sensitive personal data, we will obtain that consent or rely on the transferring customer to do so before the data is disclosed to a third party or used for a purpose other than that for which it was originally collected or subsequently authorized.
5. Disclosures to third parties
We may disclose DPF-covered personal data to the following categories of recipients for the stated purposes:
- Customer organizations and their authorized users, administrators, managers, instructors, auditors, or integration endpoints, to provide customer-directed reporting and administration.
- Service providers and agents supporting cloud hosting, infrastructure, security, identity and access management, communications, customer support, analytics, implementation, and other operational functions, subject to appropriate contractual protections.
- Professional advisers, auditors, insurers, and financial or transactional counterparties where reasonably necessary for professional services, corporate transactions, or protection of our rights.
- Public authorities or other parties when required by law, valid legal process, or to protect rights, safety, security, and the integrity of our services.
We do not sell DPF-covered personal data. If we disclose personal data to a non-agent third party or use it for a materially different purpose, we will provide notice and choice as required by DPF Principles. For onward transfers to an agent, we will take reasonable and appropriate steps designed to require the agent to process the data only for limited and specified purposes and to provide at least the same level of protection as required by DPF Principles. PeopleONE, Inc. remains liable under the DPF Principles if its agent processes such personal data in a manner inconsistent with the principles, unless PeopleONE, Inc. proves that it is not responsible for the event giving rise to the damage.
6. Individual rights and choices
EU, UK and Swiss individuals have the right, subject to the DPF Principles, to access personal data about them that we hold and to request its correction, amendment, or deletion where it is inaccurate or has been processed in violation of the DPF Principles. Individuals may also choose to limit certain uses and disclosures of their personal data. To make a request or exercise a choice, contact us using the details in Section 10.
If we process the personal data solely on behalf of an ExpertusONE customer, we may direct the individual to that customer and will support the customer as required by our agreement and the DPF Principles. We may take reasonable steps to verify identity and authority before acting on a request. Rights may be limited where permitted by the DPF Principles.
We will provide an individual opt-out choice, or opt-in for sensitive data, before we share your data with third parties other than our agents, or before we use it for a purpose other than which it was originally collected or subsequently authorized. To request limiting the use and disclosure of your personal information, please contact us using the details in Section 10.
7. Security, data integrity, and purpose limitation
We use reasonable and appropriate administrative, technical, and physical safeguards designed to protect personal data from loss, misuse, unauthorized access, disclosure, alteration, or destruction. We take reasonable steps to limit processing to data relevant for the purposes for which it is processed and, to the extent necessary for those purposes, to keep it accurate, complete, current, and reliable. We retain personal data only for as long as it serves a compatible processing purpose, subject to legal, contractual, security, and recordkeeping requirements.
8. Required disclosures to public authorities
PeopleONE, Inc. may be required to disclose an individual’s personal information in response to lawful requests by public authorities, including to meet national security or law-enforcement requirements.
9. Enforcement authority
PeopleONE, Inc. is subject to the investigatory and enforcement powers of the U.S. Federal Trade Commission.
10. Contacting PeopleONE, Inc.
EU, UK, and Swiss individuals may submit privacy inquiries, complaints, access requests, correction or deletion requests, and choices about use or disclosure using the following contact information:
PeopleONE, Inc.
Attn: Data Privacy Officer
2350 Mission College Blvd, Suite 1000
Santa Clara, CA 95054, United States
Email: privacy@expertusone.com
Telephone: +1 877-827-8160
11. Independent dispute resolution and binding arbitration
In compliance with the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF), PeopleONE, Inc. commits to resolve complaints about our collection or use of your personal information transferred to the U.S. pursuant to the EU-U.S. DPF, UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF. EU, UK, and Swiss individuals with inquiries or complaints should first contact PeopleONE, Inc. using the contact information in Section 10.
PeopleONE, Inc. has further committed to refer unresolved DPF Principles-related complaints to a U.S.-based independent dispute resolution mechanism, BBB NATIONAL PROGRAMS. If you do not receive timely acknowledgment of your complaint, or if your complaint is not satisfactorily addressed, please visit the BBB National Programs DPF complaints page for more information and to file a complaint. This service is provided free of charge to you.
BBB National Programs complaint portal: www.bbbprograms.org/dpf-complaints
If your DPF complaint cannot be resolved through the above channels, under certain conditions, you may invoke binding arbitration for some residual claims not resolved by other redress mechanisms.
Information about Annex I binding arbitration: DPF Annex I
12. Changes to this notice
We may update this DPF Notice consistent with the DPF Principles. We will post the revised Notice and update its effective date. We will notify BBB National Programs of material changes as required by our participation agreement.
13. Relationship with other privacy notices
This DPF Notice supplements the general ExpertusONE Privacy Policy and other applicable notices. Rights and obligations under the DPF are separate from rights that may apply under the EU General Data Protection Regulation, UK General Data Protection Regulations, Swiss Federal Act on Data Protection, or other privacy laws. Nothing in this Notice limits rights available under applicable law.
Cookie Policy
This Cookie Policy explains how PeopleONE Inc. (“Company”, “ExpertusONE”, “we”, “us”, and “our”) uses cookies and similar technologies to recognize you when you visit our websites at https://expertusone.com (“Websites”). It explains what these technologies are and why we use them, as well as your rights to control our use of them.
In some cases, we may use cookies to collect personal information, or that becomes personal information if we combine it with other information.
What are cookies?
Cookies are small data files that are placed on your computer or mobile device when you visit a website. Cookies are widely used by website owners in order to make their websites work or to work more efficiently, as well as to provide reporting information.
Cookies set by the website owner (in this case, PeopleONE Inc.) are called “first party cookies”. Cookies set by parties other than the website owner are called “third party cookies”. Third-party cookies enable third party features or functionality to be provided on or through the website (e.g. like advertising, interactive content, and analytics). The parties that set these third party cookies can recognize your computer both when it visits the website in question and also when it visits certain other websites.
Why do we use cookies?
We use first and third-party cookies for several reasons. Some cookies are required for technical reasons in order for our Websites to operate, and we refer to these as “essential” or “strictly necessary” cookies. Other cookies also enable us to track and target the interests of our users to enhance the experience on our Online Properties. Third parties serve cookies through our Websites for advertising, analytics, and other purposes. This is described in more detail below.
The specific types of first and third-party cookies served through our Websites and the purposes they perform are described below (please note that the specific cookies served may vary depending on the specific Online Properties you visit).
How can I control cookies?
You have the right to decide whether to accept or reject cookies. Essential cookies cannot be rejected as they are strictly necessary to provide you with services. You may set or amend your web browser controls to accept or refuse cookies. As the means by which you can refuse cookies through your web browser controls vary from browser-to-browser, you should visit your browser’s help menu for more information. If you choose to reject cookies, you may still use our website though your access to some functionality and areas of our website may be restricted.
In addition, most advertising networks offer you a way to opt-out of targeted advertising. If you would like to find out more information, please visit http://www.aboutads.info/choices/ or http://www.youronlinechoices.com. The specific types of first and third-party cookies served through our Websites and the purposes they perform are described in the table below (please note that the specific cookies served may vary depending on the specific Online Properties you visit):
Essential website cookies:
These cookies are strictly necessary to provide you with services available through our Websites and to use some of its features, such as access to secure areas.
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider: .zoominfo.com
Service: CloudFlare View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider: .hsadspixel.net
Service: CloudFlare View Service Privacy Policy
Type: server_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider: .hscollectedforms.net
Service: CloudFlare View Service Privacy Policy
Type: server_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider: .hs-scripts.com
Service: CloudFlare View Service Privacy Policy
Type: server_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider: .hubspot.com
Service: CloudFlare View Service Privacy Policy
Type: server_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider:.hs-banner.com
Service: CloudFlare View Service Privacy Policy
Type: server_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider:.hsforms.com
Service: CloudFlare View Service Privacy Policy
Type: server_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider:.hs-analytics.net
Service: CloudFlare View Service Privacy Policy
Type: server_cookie
Expires in: 30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider: .hubapi.com
Service: CloudFlare View Service Privacy Policy
Country: United States
Type:server_cookie
Expires in:30 days
Name: __cfduid
Purpose: Used by Cloudflare to identify individual clients behind a shared IP address, and apply security settings on a per-client basis. This is an HTTP type cookie that expires after 1 year.
Provider:.adsymptotic.com
Service: CloudFlare View Service Privacy Policy
Country: United States
Type: server_cookie
Expires in: 30 days
Analytics and customization cookies:
These cookies collect information that is used either in aggregate form to help us understand how our Websites are being used or how effective our marketing campaigns are, or to help us customize our Websites for you.
Name: hubspotutk
Purpose: This cookie keeps track of a visitor’s identity. It is passed to HubSpot on form submission and used when deduplicating contacts.
Provider: .expertusone.com
Service: Hubspot.com View Service Privacy Policy
Country: United States
Type0: http_cookie
Expires in: 1 year 24 days
Name: _gid
Purpose: Keeps an entry of a unique ID, which is then used to come up with statistical data on website usage by visitors. It is an HTTP cookie type and expires after a browsing session.
Provider: .expertusone.com
Service: Google Analytics View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 1 day
Name: __hstc
Purpose: The main cookie for tracking visitors.
Provider: .expertusone.com
Service: Hubspot.com View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 1 year 24 days
Name:__hssrc
Purpose: Whenever HubSpot changes the session cookie, this cookie is also set to determine if the visitor has restarted their browser.
Provider: .expertusone.com
Service: Hubspot.com View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: session
Name: _ga
Purpose: It records a particular ID used to come up with data about website usage by the user. It is an HTTP cookie that expires after 2 years.
Provider: .expertusone.com
Service: Google Analytics View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 1 year 11 months 29 days
Name: _gat
Purpose: Used to monitor the number of Google Analytics server requests when using Google Tag Manager
Provider: .expertusone.com
Service: Google Tag Manager View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 1 minute
Name: _dc_gtm_UA-#
Purpose: Google Tag Manager uses it to control how a Google Analytics script tag loads. This is an HTTP cookie whose data is deleted after a session.
Provider: .expertusone.com
Service: Google Tag Manager View Service Privacy Policy
Country: United States
Type:http_cookie
Expires in: 1 minute
Name: __hssc
Purpose: This cookie keeps track of sessions.
Provider: .expertusone.com
Service: Hubspot.com View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in:30 minutes
Advertising cookies:
These cookies are used to make advertising messages more relevant to you. They perform functions like preventing the same ad from continuously reappearing, ensuring that ads are properly displayed for advertisers, and in some cases selecting advertisements that are based on your interests.
Name: IDE
Purpose: Used to measure the conversion rate of ads presented to the user. Expires in 1.5 years.
Provider: .doubleclick.net
Service: DoubleClick View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 1 year 11 months 29 days
Name: UserMatchHistory
Purpose: These cookies are associated with a B2B marketing platform, formerly known as Bizo, which is now owned by LinkedIn, the business networking platform. This sub-domain is connected with LinkedIn’s marketing services that enable website owners to gain insight into types of users on their site based on LinkedIn profile data, to improve targeting.
Provider: .linkedin.com
Service: LinkedIn View Service Privacy Policy
Country: United States
Type:server_cookie
Expires in: 30 days
Name: bcookie
Purpose: Used to optimize the range of advertising on Linkedin
Provider: .linkedin.com
Service: Linkedin Ad Analytics View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 1 year 11 months 30 days
Name: test_cookie
Purpose: A session cookie used to check if the user’s browser supports cookies.
Provider: .doubleclick.net
Service: DoubleClick View Service Privacy Policy
Country: United States
Type: server_cookie
Expires in: 15 minutes
Name: lidc
Purpose: These cookies are associated with a B2B marketing platform, formerly known as Bizo, which is now owned by LinkedIn, the business networking platform. This sub-domain is connected with LinkedIn’s marketing services that enable website owners to gain insight into types of users on their site based on LinkedIn profile data, to improve targeting.
Provider: .linkedin.com
Service: LinkedIn View Service Privacy Policy
Country: United States
Type: http_cookie
Expires in: 1 day
What about other tracking technologies, like web beacons?
Cookies are not the only way to recognize or track visitors to a website. We may use other, similar technologies from time to time, like web beacons (sometimes called “tracking pixels” or “clear gifs”). These are tiny graphics files that contain a unique identifier that enable us to recognize when someone has visited our Websites or opened an e-mail including them. This allows us, for example, to monitor the traffic patterns of users from one page within a website to another, to deliver or communicate with cookies, to understand whether you have come to the website from an online advertisement displayed on a third-party website, to improve site performance, and to measure the success of e-mail marketing campaigns. In many instances, these technologies are reliant on cookies to function properly, and so declining cookies will impair their functioning.
How often will you update this Cookie Policy?
We may update this Cookie Policy from time to time in order to reflect, for example, changes to the cookies we use or for other operational, legal, or regulatory reasons. Please, therefore, re-visit this Cookie Policy regularly to stay informed about our use of cookies and related technologies.
The date at the top of this Cookie Policy indicates when it was last updated.
Where can I get further information?
If you have any questions about our use of cookies or other technologies, please email us at info@expertusone.com or by post to:
PeopleONE Inc.
3945 Freedom Circle Ste 1050
Santa Clara, CA 95054
United States
Terms of Use
This site is the property of PeopleONE Inc. All content is copyrighted and protected by worldwide copyright laws and treaty provisions.
By visiting this site, you agree to comply with all applicable copyright laws and to prevent any unauthorized use of its content. If you do not agree to the terms of use, please do not use this site or the content therein.
ExpertusONE does not grant any express or implied rights under any patents, trademarks, copyrights, or trade secret information. You may use content offered for downloading, such as white papers and case studies, for personal use only and subject to any rules accompanying that content. You may not use the content in a manner that exceeds the rights granted for your use. You may not reproduce, reprint, copy, store, publicly display, broadcast, transmit, modify, translate, port, publish, sublicense, assign, transfer, sell, a loan, or otherwise distribute the content created for Expertusone.com or PeopleONE Inc. without our prior written consent.
As a service to visitors, our site provides relevant information from third parties, including analyst reports, news articles, and links to websites not controlled by ExpertusONE. If you use these resources, recognize that ExpertusONE makes no warranty or representation regarding, and does not endorse, any linked websites or the information they provide.
Note that the term “partner” appears throughout this website. ExpertusONE uses this term for convenience and simplicity to denote business relationships that involve common interests and activities. It does not indicate a precise legal relationship.
Platform Information
Platform: Microsoft Teams
Operator: Microsoft Corporation
Help Documents: https://support.office.com/en-us/teams
Terms: https://www.microsoft.com/en-us/legal/intellectualproperty/copyright/default.aspx
Privacy Policy: https://privacy.microsoft.com/en-us/privacystatement
Platform: Slack
Operator: Slack Technologies, Inc.
Help Documents: https://get.slack.help
Terms and Privacy Policy: https://slack.com/legal
Trademarks
ExpertusONE, the ExpertusONE logo, ExpertusONE Mobile, ExpertusONE Commerce, ExpertusONE Insights, ExpertusONE Meetings, ExpertusONE Gamification, ExpertusONE API, ExpertusONE Content, and ExpertusONE for Salesforce.com are trademarks or registered trademarks of PeopleONE Inc. Other company and product names may be trademarks of their respective owners and are hereby recognized.