Privacy notice

Privacy notice for this website.

This notice covers the marketing website at priorexperience.io, operated by Sprezzatura Investments, LLC. Data shared under a clinic or pilot agreement is governed by that agreement and the data-handling note. Effective July 28, 2026 · Last updated July 31, 2026.

In short

Prior Experience is a product of Sprezzatura Investments, LLC, a Florida limited liability company. This website collects the contact details you choose to submit through the clinic booking form, plus ordinary server logs. That information is used to respond to you, schedule and prepare the clinic, assess pilot fit, and keep the site running securely — nothing else. It is not sold, not shared for advertising, and not used for unrelated marketing. The site runs no analytics or advertising scripts and sets no tracking cookies. Booking a clinic takes you to Cal.com, the scheduling provider, where the booking itself is made. Claim data and loss runs are never collected through this website; they are handled only under a signed agreement, as described in the data-handling note. Questions and requests go to hello@priorexperience.io.

Who this notice covers, and our role

This notice covers visitors to priorexperience.io and people who submit an inquiry through it — typically captive managers, actuaries, and other professionals evaluating the product. For that website and inquiry information, Sprezzatura Investments, LLC decides how and why it is used (in privacy-law terms, it acts as the business or controller).

Loss runs and claim records submitted under a clinic or pilot agreement are different: the customer controls that data, and Prior Experience processes it on the customer's instructions under the agreement and the data-handling note. If you are a claimant or employee whose information appears in a customer's loss run, the customer that submitted the file is the right first contact for questions about it; we will assist and route requests where we can.

What this site collects, and where it comes from

Information you provide on this site. The clinic request form collects name, work email, company, role, and an optional description of your workflow problem. That is all it asks for, because that is all that is needed to respond and prepare the clinic. The form does not accept file uploads, and you should not paste claim data, personal health information, or claimant identifiers into it. If you email us directly, we receive whatever you choose to include.

Information you provide when booking. The booking buttons open our scheduling page on Cal.com, which is a separate service. What you enter there — your name, email, chosen time, time zone, and any note you add — is collected by Cal.com and passed to us to arrange the meeting. Cal.com's own privacy policy governs what happens on their page, alongside this notice. Do not enter claim data or claimant identifiers when booking; the booking questions do not ask for them and there is no file upload.

Information collected automatically. The web server keeps operational and security logs, described in their own section below. The site collects nothing else automatically: no analytics events, no advertising identifiers, no tracking cookies.

The site does not buy, receive, or append information about you from data brokers or other outside sources.

How each kind of information is used

  • Booking-form details and email correspondence — to respond to you, schedule and prepare the clinic, and assess pilot fit. Not used for unrelated marketing, and no marketing list is built from them.
  • Server logs — to run the site, keep it secure, and diagnose faults. Not used to profile visitors.

This notice describes what actually happens today. If a new use is ever introduced, this notice will be updated before the practice begins — existing information will not be quietly repurposed.

Sale, sharing, and advertising

Personal information collected through this site is not sold, not shared for cross-context behavioral advertising, and not used for targeted advertising, as those terms are defined in U.S. state privacy laws such as the California Consumer Privacy Act. The vendors listed under "Who receives information" process data to run the site; that is a service-provider disclosure, not a sale.

Analytics, cookies, and tracking signals

This site currently loads no analytics or advertising scripts and sets no tracking cookies. If minimal, privacy-respecting analytics (page views and a small set of events such as sample views and booking clicks) are added later, this notice will be updated first; the preference is an analytics setup that does not require a cookie banner.

Because the site does not track visitors across other websites, there is no cross-site tracking for a Do Not Track or Global Privacy Control signal to switch off; pages behave the same whether or not such a signal is present. No third party collects personal information about your activity over time and across other websites through this site.

Operational and security logs

Separately from anything you submit, the web server keeps operational logs. They exist to run the site, keep it secure, and diagnose faults. They are not analytics, they are not used for advertising or to build a profile of visitors, and they are not sold or shared for those purposes.

The main access log records, for each request: the time, the HTTP method, the hostname, the path requested without its query string, the response status and size, how long the request took, and a truncated form of the network address it came from — IPv4 shortened to its first three groups, IPv6 to its first four.

The following are deliberately not kept in that log: query strings, the entire set of request headers, the entire set of response headers, cookies, authorization values, and request bodies. Entries in this log are kept for up to 30 days, and are removed sooner if the log's size limits are reached first. Thirty days is an upper bound, not a promised minimum.

Truncating an address makes it less precise. It does not necessarily make it anonymous, and this notice does not claim that it does — a shortened address can still carry information, particularly in combination with other details.

The server also writes a separate runtime and error log covering things like connection problems, certificate events, and start-up faults. That log is not covered by the filtering described above and can contain a full network address, a port, or a request path when something goes wrong. It is limited by size rather than by age.

Access to both logs is limited to the site owner and any administrator with root or container-level access to the server.

Retention and deletion

Inquiry information is kept while a conversation or pilot evaluation is active, and is deleted no later than 24 months after the last substantive contact with you — sooner on request. Server-log retention is described above (up to 30 days for the access log; size-limited for the runtime log). To request deletion of your inquiry information, email hello@priorexperience.io and it will be deleted, with confirmation, except where a record must be kept for legal reasons.

Who receives information

A small set of service providers process data in order to run the site, and each receives only what its function requires:

  • Hosting. The server infrastructure that delivers the site and holds the logs described above.
  • Email. The provider that handles mail to and from priorexperience.io addresses, including clinic follow-up.
  • Scheduling — Cal.com. Receives the details you enter when booking a clinic: name, email, chosen time, time zone, and any note you add. Cal.com hosts the booking page; it is not embedded in this site and loads no script here.
  • Video meetings — Google Meet. Clinics are held over Google Meet, so a meeting link is generated and your name and email appear in the calendar invitation.

Browsing this site contacts nobody but us. Fonts are served from this site's own server rather than from a font provider, so loading a page makes no request to any third party at all — no scripts, no fonts, no embeds. Cal.com and Google Meet receive information only when you choose to book a clinic or attend one.

Beyond the service providers above, information is disclosed only if required by law or to protect the security of the site, and in a corporate transaction it would remain subject to this notice's commitments.

Your choices and requests

You can request a copy of the inquiry information held about you, ask for it to be corrected, or ask for it to be deleted, by emailing hello@priorexperience.io. Identity is verified in proportion to the request — normally by replying from the email address on file. Requests are answered regardless of where you live, and making one will never affect how you are treated. Depending on your state of residence, some of these may also be legal rights with their own procedures; the practical route is the same email either way.

Children

This website and the pilot are directed to businesses and working professionals, not to children, and the site is not intended for anyone under 18. The site does not knowingly collect information from children. Claim files handled under a pilot agreement can mention minors — a dependent in a claim record, for example — and that data is governed by the agreement and the data-handling note, not by this notice.

Changes to this notice

Material changes are posted on this page, with the "last updated" date revised, before they take effect. Because this notice describes only current practice, any new form, script, vendor, or use of information triggers an update here first.

Contact

Sprezzatura Investments, LLC, a Florida limited liability company · operating Prior Experience
7726 Winegard Rd., 2nd Floor, Orlando, FL 32809, United States
Privacy contact: hello@priorexperience.io (monitored by the founder)