Privacy Policy

Last updated: January 26, 2025

Introduction

Welcome to Sutro Space ("we", "us", or "our"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our no-code website builder platform (the "Service").

Sutro Space empowers individuals and businesses to create professional websites without coding knowledge. Our platform includes features such as drag-and-drop editing, template libraries, custom domain support, booking systems, enquiry management, media storage, and analytics. In providing these services, we handle various types of data responsibly and transparently.

We comply with applicable data protection laws, including the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and other relevant privacy regulations. By using our Service, you agree to the collection and use of information in accordance with this policy.

Information We Collect

We collect several types of information to provide and improve our Service. The data we collect falls into the following categories:

Account Information

When you create an account with Sutro Space, we collect:

  • Full name and email address
  • Login credentials (password stored with industry-standard encryption)
  • Business or organization name (if applicable)
  • Profile photo or avatar (optional)
  • Account preferences and notification settings
  • Subscription tier and payment information

Website and Content Data

To build, host, and maintain your websites, we collect and store:

  • All website content including text, headings, descriptions, and body copy
  • Images, videos, documents, and other media files you upload
  • Website structure, navigation menus, and page layouts
  • Template selections and design customizations (colors, fonts, spacing)
  • Custom domain names or Sutro Space subdomain configurations
  • SEO metadata including page titles, descriptions, and keywords
  • Website configuration files and settings
  • Version history and edit logs for content changes

Enquiries and Bookings Data

When you enable enquiry forms or booking systems on your website, we collect and store data submitted by your visitors:

  • Contact information: names, email addresses, phone numbers, and postal addresses
  • Enquiry messages, questions, and correspondence
  • Appointment booking details including dates, times, and service preferences
  • Booking status updates (pending, confirmed, cancelled, completed)
  • Communication history and timestamps
  • Custom form field data specific to your business needs
  • IP addresses of form submissions (for security and spam prevention)

Note: You act as a data controller for visitor information collected through your website. You are responsible for obtaining necessary consents and complying with applicable privacy laws when collecting data from your visitors.

Analytics and Usage Information

To improve our Service and provide insights about your website performance, we automatically collect:

  • Website visitor analytics (page views, unique visitors, traffic sources)
  • User behavior data (pages visited, time on site, bounce rates)
  • Device information (type, operating system, screen resolution)
  • Browser type, version, and language preferences
  • IP addresses and approximate geographic location
  • Referrer URLs and search engine keywords
  • Performance metrics (page load times, error rates)
  • Feature usage patterns within the Sutro Space dashboard

Cookies and Tracking Technologies

We use cookies and similar technologies to enhance your experience:

  • Essential Cookies: Required for authentication, security, and basic functionality
  • Preference Cookies: Remember your settings, language, and customization choices
  • Analytics Cookies: Help us understand how you use the platform
  • Session Storage: Temporary data to maintain your working session

You can control cookie preferences through your browser settings, though disabling certain cookies may limit functionality of the Service.

Payment Information

For paid subscriptions, we collect:

  • Billing name and address
  • Payment method details (processed securely by our payment partners)
  • Transaction history and invoice records
  • Tax identification information (if applicable)

Note: We do not directly store complete credit card numbers. Payment processing is handled by PCI-compliant third-party providers (e.g., Stripe, PayPal).

How We Use Information

We use the information we collect for the following purposes:

Service Delivery

To create, host, and maintain your websites on our platform, including providing subdomain hosting and managing your website content.

Communication

To send you account-related notifications, service updates, technical notices, security alerts, and respond to your support requests.

Feature Functionality

To enable enquiry forms and appointment booking features on your websites, and to help you manage communications with your visitors.

Platform Improvement

To analyze usage patterns, troubleshoot technical issues, develop new features, and improve the overall quality of our Service.

Security and Compliance

To protect against fraud, unauthorized access, and to ensure compliance with our Terms and Conditions and applicable laws.

Data Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties.We only share your data in the following limited circumstances:

Essential Service Providers

We may share data with trusted third-party service providers who assist us in operating our platform:

  • Cloud hosting services - to store and deliver your website content
  • Email delivery services - to send notifications and communications
  • Analytics providers - to understand usage patterns and improve our Service
  • Payment processors - to handle subscription payments securely

These providers are contractually obligated to protect your data and only use it for the purposes we specify.

Legal Requirements: We may disclose information if required by law, court order, or governmental regulation, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections.

Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience and gather information about how our Service is used.

What Are Cookies?

Cookies are small text files stored on your device that help us recognize you, remember your preferences, and provide a personalized experience.

Types of Cookies We Use:

  • Essential Cookies: Required for the Service to function properly, including authentication and security features.
  • Functional Cookies: Remember your preferences and settings to enhance your experience.
  • Analytics Cookies: Help us understand how users interact with our Service so we can improve it.

You can control cookie settings through your browser preferences. However, disabling certain cookies may limit your ability to use some features of our Service.

Data Retention and Security

Data Retention

We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.

  • Account data is retained while your account is active
  • Website content is retained until you delete it or close your account
  • Analytics data may be retained in anonymized form for statistical purposes
  • Upon account deletion, we remove or anonymize your personal data within 90 days

Security Measures

We implement industry-standard security measures to protect your data:

  • Encryption of data in transit (SSL/TLS) and at rest
  • Secure authentication and password protection
  • Regular security audits and monitoring
  • Access controls limiting who can view your data
  • Backup and disaster recovery procedures

While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.

Your Rights and Choices

You have certain rights regarding your personal information. Depending on your location, these may include:

Access

Request a copy of the personal data we hold about you.

Correction

Update or correct inaccurate or incomplete information.

Deletion

Request deletion of your personal data, subject to legal obligations.

Data Portability

Receive your data in a structured, commonly used format.

Objection

Object to certain types of data processing.

Withdraw Consent

Withdraw consent for data processing where applicable.

To exercise these rights, please contact us at:

support@sutro.space

We will respond to your request within 30 days.

Children's Privacy

Our Service is not intended for children under the age of 13 (or the applicable age of consent in your jurisdiction). We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately, and we will take steps to delete such information.

International Data Transfers

Sutro Space operates globally, and your information may be transferred to and maintained on servers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ from those in your jurisdiction.

By using our Service, you consent to the transfer of your information to various locations where we operate and maintain infrastructure. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable data protection regulations, including the use of standard contractual clauses approved by relevant authorities.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will:

  • Update the "Last updated" date at the top of this page
  • Notify you via email or through a prominent notice on our Service
  • Provide a summary of significant changes if applicable

We encourage you to review this Privacy Policy periodically. Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy.

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Sutro Space

Email: support@sutro.space

We take your privacy seriously and will address your inquiries promptly and professionally. We aim to respond to all privacy-related requests within 30 days.