Privacy policy
This policy explains what information we handle from inquiry through delivery and after-sales support, why we use it, and the choices available to you.
- Effective date
- August 1, 2026
- Version
- 2.0
1. Scope and responsibility
This policy applies to the public website, inquiry forms, customer centre, project delivery, file exchange, payment records, and support communications provided through this service. The service operator is responsible for deciding how personal information is used for these activities. Contact us through the website contact channel for privacy questions; no physical address is represented by this policy.
2. Information you provide
An inquiry may include your name, business contact details, company, country or region, time zone, preferred contact method, project goals, budget range, URLs, technical context, and any text or files you choose to provide. Account and profile forms may contain updated contact and organisation information. Please do not submit identity documents, passwords, private keys, payment-card details, or unrelated personal data unless a secure method has been expressly agreed.
3. Service and account records
We create records needed to manage the engagement, including inquiry status, quote versions, accepted terms version and language, deposits, project milestones, delivery and revision history, after-sales tickets, notifications, and security-relevant activity. These records allow both parties to understand the agreed scope and the current state of the work.
4. Project files and technical data
Files submitted for scoping, delivery, revision, or support may be stored in Cloudflare R2 object storage. Associated metadata can include file name, size, type, uploader, project, storage key, and timestamps. Logs, screenshots, URLs, device or browser details, and reproduction steps may be processed when needed to diagnose a reported issue. Customer content is not made public merely because it is uploaded.
5. Payments and financial records
The service records business payment information such as amount, currency, reference, status, payer context, related quote or project, and timestamps. It does not collect or store full card numbers, card security codes, or online-banking credentials. A bank, payment service, or other provider may process a payment under its own privacy terms. Financial, tax, fraud-prevention, and audit records may need to remain after other account information is deleted.
6. Email and support communications
Transactional messages may be sent through Purelymail, including account notices, quote and project updates, delivery notices, and support replies. We retain the content and delivery state needed to provide an auditable service and troubleshoot failed delivery. Email is not guaranteed to be confidential in transit, so do not send credentials or highly sensitive information by ordinary email.
7. How and why information is used
- Assess inquiries, communicate about feasibility, and prepare quotes
- Create and secure accounts, authenticate sessions, and prevent abuse
- Plan, perform, deliver, revise, and support the agreed work
- Record acceptance, payment, project, file, and after-sales events
- Meet accounting, tax, legal, security, and dispute-handling obligations
- Maintain service reliability and improve workflows using appropriately limited operational data
8. Grounds for processing
Depending on your location and the activity, information is processed because it is necessary to answer your request or perform an accepted quote, to comply with law, to protect accounts and operate the service responsibly, or because you have given consent. Where consent is the applicable ground, it may be withdrawn for future processing. Withdrawal does not invalidate earlier processing or records that must be retained on another lawful ground.
9. Service providers and disclosure
Information may be disclosed only as reasonably necessary to infrastructure, hosting, database, Cloudflare R2 object-storage, Purelymail email, payment, professional-adviser, security, and support providers; to people authorised to work on the engagement; or when required to protect rights, users, or comply with law. Providers may process data in other countries and are expected to handle it only for the relevant service. We do not sell personal information or share it for behavioural advertising.
10. Security and access
We use role-based access, authenticated customer areas, encrypted transport where deployed, protected session cookies, controlled object access, backups, and operational logging appropriate to the service. Access is limited to people and systems with a delivery, support, security, or legal need. No internet service can promise absolute security; notify us promptly if you believe an account, link, or file has been exposed.
11. Retention and deletion
Information is kept only as long as reasonably needed for the inquiry, accepted quote, project, after-sales period, security, backup cycle, accounting, legal claims, and applicable retention duties. Unsuccessful inquiry material may be removed or de-identified when it is no longer operationally necessary. Deletion requests do not require removal of records that must be retained for law, fraud prevention, dispute evidence, or system integrity; residual backup copies expire through normal backup rotation.
12. Your rights and choices
Subject to applicable law, you may ask to access, correct, export, restrict, object to, or delete personal information, and may complain to an appropriate regulator. We may need to verify the requester and clarify the scope before acting. You can update certain profile details in the customer centre, manage cookies in your browser, and choose not to provide optional inquiry information, although this may limit our ability to assess or deliver the work.
13. Children, third-party data, and customer duties
The service is intended for people able to enter a business engagement and is not directed to children. If you provide information about employees, users, or other people, you are responsible for having authority and giving any notices required by law. Do not use the service to upload unlawfully obtained, excessive, or specially protected personal information without first agreeing appropriate safeguards.
14. Changes and contact
A material policy update receives a new version and effective date, and the current version is shown on the legal page. A quote acceptance records the presented terms version and language. Questions, rights requests, or complaints may be submitted through the contact or support channel. Applicable privacy and consumer law prevails where it grants rights that this policy cannot limit.