Digisite
Privacy & Policies

Our Commitment to Your Privacy.

We value your trust and are dedicated to protecting your personal information. This page outlines how we collect, use, and safeguard your data.

Data Collection & Use

Information We Collect

  • Personal Identification:

    When creating accounts: Names, email addresses, phone numbers, and business details.

  • Payment Details:

    Processed through PCI-DSS compliant gateways (Stripe, PayPal). Full details are encrypted at payment processor level.

Automated Data Collection

  • Usage Analytics:

    We collect IP addresses, browser types, device information, and page interaction data through self-hosted Matomo analytics. Data anonymized after 14 months automatically.

  • Server Logs:

    Maintained for 90 days including timestamps, requested URLs, and HTTP status codes. Used exclusively for security monitoring and performance optimization.

Cookies & Tracking

Essential Cookies

Session cookies for login state (JWT tokens valid for 24hrs), CSRF protection tokens, and shopping cart functionality. These cannot be disabled without breaking site functionality.

Analytical Cookies

Optional cookies for traffic analysis using Fathom Analytics. Track page views and referral sources without personal data. Controlled through cookie consent banner.

Data Protection

Security Measures

  • AES-256 encryption for data at rest
  • SSL/TLS 1.3+ for data in transit
  • Quarterly penetration testing
  • Role-based access controls

Third-Party Sharing

We share data only with necessary service providers under GDPR-compliant DPAs:

  • Cloud hosting providers (Vercel)
  • Email service providers (Resend)
  • Customer support platforms (Notion)

Your Rights

Access & Portability

Request complete data export in machine-readable format (JSON/CSV) within 30 days. Includes all stored personal data and activity logs.

Deletion Requests

Right to be forgotten under GDPR. Financial records retained for 7 years. Other data purged within 90 days.

International Transfers

Data primarily processed in India with safeguards for international transfers:

  • EU-US Data Privacy Framework compliance
  • Standard Contractual Clauses (SCCs)
  • Data localization options available

Contact Our DPO

Response within 6 hours | Identification verification required