Effective Date: 1 January 2026
Welcome to ServerDots #
At ServerDots Ltd (“ServerDots“, “we“, “our“, or “us“), safeguarding the privacy and security of your personal information is a responsibility we take seriously. Whether you are browsing our website, purchasing hosting services, registering a domain name, managing a virtual private server, operating a dedicated server, or contacting our support team, we are committed to processing your information lawfully, fairly, transparently, and securely.
This Privacy Policy explains how ServerDots collects, uses, stores, shares, protects, and otherwise processes your personal information when you interact with our websites, products, services, applications, customer portal, communications, or any other platform operated by us.
Our goal is to provide clear and transparent information about our data handling practices while ensuring compliance with applicable privacy and data protection laws, including but not limited to:
- United Kingdom General Data Protection Regulation (UK GDPR)
- Data Protection Act 2018 (United Kingdom)
- EU General Data Protection Regulation (EU GDPR), where applicable
- California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), where applicable
- Other applicable data protection and privacy laws governing our operations and the services we provide
This Privacy Policy applies to all visitors, customers, affiliates, business partners, applicants, and users who access or use our Services.
By accessing our websites or using our Services, you acknowledge that you have read, understood, and agreed to the collection, use, disclosure, and processing of your information as described in this Privacy Policy.
1. Company Information #
ServerDots Ltd is a private limited company incorporated in the United Kingdom.
For the purposes of applicable data protection legislation, ServerDots Ltd acts as the Data Controller in relation to the personal information described in this Privacy Policy.
Company Name
ServerDots Ltd
Website
https://serverdots.com
Client Area
https://my.serverdots.com
Privacy & Data Protection Contact
[email protected]
2. Scope of this Privacy Policy #
This Privacy Policy applies whenever you:
- Visit our website.
- Browse our products or services.
- Create an account.
- Purchase any product or service.
- Register or transfer a domain name.
- Order Shared Hosting.
- Order WordPress Hosting.
- Order Reseller Hosting.
- Order Linux VPS.
- Order Windows VPS.
- Order Dedicated Servers.
- Purchase SSL Certificates.
- Purchase Email Hosting.
- Use our Website Builder.
- Contact Sales.
- Contact Technical Support.
- Submit support tickets.
- Use Live Chat.
- Browse our Knowledgebase.
- Subscribe to newsletters.
- Participate in promotions.
- Join our Affiliate Program.
- Communicate with us via email or other electronic means.
- Interact with any future services provided by ServerDots unless a separate privacy policy specifically governs those services.
This Privacy Policy applies regardless of the device or platform you use to access our Services.
3. Our Privacy Principles #
At ServerDots, privacy is built upon the following principles:
- We collect only the information reasonably necessary to provide and improve our Services.
- We process personal information lawfully, fairly, and transparently.
- We implement appropriate technical and organizational safeguards to protect personal information.
- We do not sell your personal information to third parties.
- We limit access to personal information to authorized personnel who require it to perform their duties.
- We retain information only for as long as necessary to fulfil the purposes outlined in this Privacy Policy or as required by law.
- We continually review and improve our privacy and security practices to address evolving legal requirements, technological developments, and cybersecurity risks.
4. Definitions #
For the purposes of this Privacy Policy, the following terms have the meanings set out below:
Account
A registered customer profile created to access or manage one or more Services provided by ServerDots.
Affiliate
A person or organization participating in ServerDots’ referral or affiliate programme.
Applicable Data Protection Laws
All laws, regulations, and legally binding requirements governing the processing of personal information, including UK GDPR, EU GDPR (where applicable), the Data Protection Act 2018, CCPA/CPRA and any successor legislation.
Client Area
The secure customer portal available at https://my.serverdots.com, through which customers can manage services, billing, support requests, account settings, and other account-related functions.
Cookies
Small text files stored on a user’s device that help websites recognize users, maintain sessions, remember preferences, improve functionality, and analyze website usage.
Customer
Any natural person, legal entity, organization, reseller, or business that purchases, accesses, or uses the Services provided by ServerDots.
Data Controller
The natural or legal person that determines the purposes and means of processing personal information.
Personal Information
Any information relating to an identified or identifiable natural person, including information that can directly or indirectly identify an individual.
Processing
Any operation performed on personal information, whether by automated or manual means, including collection, recording, organization, storage, use, disclosure, transmission, analysis, restriction, deletion, or destruction.
Services
All products, services, software, platforms, websites, applications, support services, and infrastructure provided by ServerDots, including but not limited to Shared Hosting, WordPress Hosting, Reseller Hosting, Virtual Private Servers (VPS), Dedicated Servers, Domain Registration, SSL Certificates, Email Hosting, Website Builder, and any related services.
Website
The primary website operated by ServerDots located at https://serverdots.com, together with any subdomains, portals, or associated websites operated by ServerDots.
5. Acceptance of this Privacy Policy #
By visiting our Website, creating an Account, purchasing Services, or otherwise interacting with ServerDots, you acknowledge that you have read and understood this Privacy Policy.
Where required by applicable law, your continued use of our Services following the publication of updates to this Privacy Policy constitutes your acceptance of those changes.
If you do not agree with this Privacy Policy, you should discontinue use of our Services.
6. Changes to this Privacy Policy #
Technology, legal requirements, industry standards, and our business operations evolve over time. Accordingly, ServerDots may amend, modify, or update this Privacy Policy from time to time.
When material changes are made, we will update the “Last Updated” date at the beginning of this document and, where required by law, provide additional notice through our Website, Client Area, or email.
We encourage you to review this Privacy Policy periodically to remain informed about how we protect your personal information.
7. Information We Collect #
To provide, operate, maintain, secure, and improve our Services, ServerDots collects information directly from you, automatically through your use of our Services, and, in limited circumstances, from trusted third-party sources.
The type and amount of information we collect depends on the products or services you use, how you interact with us, and the choices you make regarding your privacy preferences.
We strive to collect only the information that is reasonably necessary for legitimate business purposes, legal compliance, fraud prevention, service delivery, customer support, and the continued improvement of our Services.
7.1 Information You Provide Directly
We collect information that you voluntarily provide when you:
- Create a customer account.
- Place an order.
- Register or transfer a domain name.
- Purchase hosting services.
- Purchase VPS or Dedicated Server services.
- Purchase SSL Certificates.
- Purchase Email Hosting.
- Subscribe to newsletters.
- Contact Sales.
- Contact Technical Support.
- Submit support tickets.
- Participate in promotions or surveys.
- Join our Affiliate Program.
- Contact us through Live Chat.
- Communicate with us via email or other electronic channels.
Depending on your interaction with ServerDots, the information you provide may include the categories described below.
7.2 Account Registration Information
When you create an account with ServerDots, we may collect information necessary to establish, administer, and secure your account.
This may include:
- Full name
- Company or organization name (if applicable)
- Username
- Password (stored in encrypted or hashed form)
- Email address
- Telephone number
- Billing address
- Country of residence
- State or province
- City
- Postal or ZIP code
- Account registration date and time
- Preferred language
- Account preferences
- Customer identification number
- Account status
Providing accurate and up-to-date information helps us verify your identity, provide support, process transactions, and maintain the integrity of your account.
You are responsible for ensuring that the information associated with your account remains accurate and current.
7.3 Order and Billing Information
When you purchase products or services from ServerDots, we collect information necessary to process your order, manage your account, generate invoices, and comply with applicable legal and financial obligations.
This information may include:
- Customer name
- Company name
- Billing address
- Email address
- Telephone number
- Purchased products and services
- Order history
- Invoice details
- Payment status
- Currency
- Applicable taxes
- Promotional codes
- Order dates
- Renewal dates
- Cancellation requests
- Refund requests
- Transaction references
We use this information to deliver the services you have requested, maintain accurate financial records, detect fraudulent activity, and provide customer support.
7.4 Payment Information
Payments for ServerDots services may be processed through authorized third-party payment providers.
Depending on your selected payment method, payment-related information may include:
- Payment method
- Transaction identifier
- Payment status
- Billing currency
- Invoice number
- Payment timestamps
- Partial payment details required for transaction verification
For your security, ServerDots does not store complete payment card numbers, card verification values (CVV/CVC), or other sensitive authentication data on its own systems.
Payment information is processed in accordance with the security standards and privacy practices of the respective payment service providers.
7.5 Customer Communications
Whenever you communicate with ServerDots, we may retain records of those communications.
This includes communications submitted through:
- Support tickets
- Live Chat
- Contact forms
- Sales enquiries
- Abuse reports
- Customer feedback
- Surveys
- Feature requests
- Complaint submissions
Communication records may include:
- Your name
- Email address
- Subject line
- Message content
- Attachments
- Technical information you voluntarily provide
- Dates and times of communication
- Internal notes relating to the resolution of your request
These records help us provide consistent customer support, resolve disputes, improve our Services, investigate abuse, and comply with applicable legal obligations.
7.6 Hosting Service Information
When you order or manage hosting services, we collect information necessary to provision, maintain, and support your hosting environment.
Depending on the services you use, this information may include:
- Hosting plan
- Assigned server
- Domain name(s)
- IP address allocation
- Nameserver configuration
- Hosting account username
- Resource allocations
- Installed applications and software configurations
- Control panel preferences
- Backup preferences
- SSL configuration
- Email configuration
- Website settings
This information is processed solely for the purpose of providing the requested services, ensuring operational stability, maintaining security, and delivering technical support.
7.7 Domain Registration Information
When you register, transfer, renew, or manage a domain name through ServerDots, we collect and process information necessary to facilitate domain registration and management.
This may include:
- Registrant name
- Administrative contact information
- Technical contact information
- Billing contact information
- Domain registration details
- Domain renewal information
- DNS configuration
- WHOIS-related information, where applicable
- Registry-required information
Certain information may be shared with domain registries, registrars, and registry operators as required to provide domain registration services and comply with applicable policies.
Where supported and requested, ServerDots may facilitate the use of domain privacy or proxy services to help protect publicly available registration information.
7.8 Technical Information
To ensure the reliable operation and security of our Services, we may collect technical information generated during your interaction with our websites and infrastructure.
This information may include:
- Internet Protocol (IP) address
- Browser type and version
- Device type
- Operating system
- Screen resolution
- Language preferences
- Time zone
- Referring website
- Pages visited
- Session duration
- Navigation paths
- Clickstream data
- Date and time of access
- Login activity
- Authentication events
- Error reports
- Crash diagnostics
- Network performance metrics
This information is generally collected automatically and helps us maintain service quality, improve website performance, detect security threats, troubleshoot technical issues, and optimize user experience.
7.9 Server Logs
Like most web hosting providers, ServerDots automatically generates and maintains server logs as part of the normal operation of our infrastructure.
Server logs may include:
- Source IP addresses
- Destination IP addresses
- Request timestamps
- Requested URLs
- HTTP status codes
- Browser information
- Operating system information
- Authentication events
- Security events
- Network activity
- Error logs
- Access logs
- Resource usage logs
These logs are essential for:
- Maintaining network security
- Preventing unauthorized access
- Detecting malicious activity
- Diagnosing technical problems
- Capacity planning
- Performance monitoring
- Fraud detection
- Compliance with applicable legal obligations
Server log data is retained only for as long as reasonably necessary for operational, security, legal, and regulatory purposes. Server logs may also be used to investigate service abuse, spam, malware distribution, network attacks, and other violations of our Terms of Service.
7.10 Information from Third Parties
In limited circumstances, we may receive information about you from trusted third parties where necessary to provide our Services, comply with legal obligations, verify transactions, prevent fraud, or improve the customer experience.
Such information may include:
- Payment confirmation details from payment processors
- Domain registration status from accredited registrars
- Security and fraud prevention signals
- Publicly available information relevant to legal or compliance requirements
- Information you have authorized a third party to share with us
We process such information in accordance with applicable law and only for legitimate business purposes.
7.11 Information We Do Not Intentionally Collect
ServerDots does not intentionally collect or request:
- Sensitive personal information unless it is required by law or necessary to provide a specific service.
- Government-issued identification documents except where legally required.
- Biometric data.
- Health or medical information.
- Political opinions.
- Religious beliefs.
- Information revealing racial or ethnic origin.
- Information concerning sexual orientation.
If you voluntarily include such information in communications with us, we will process it only to the extent necessary to respond to your request or comply with applicable legal obligations.
7.12 Accuracy of Information
You are responsible for ensuring that the personal information you provide to ServerDots is accurate, complete, and kept up to date.
Failure to provide accurate information may affect our ability to deliver Services, process transactions, verify your identity, or respond to your requests.
Where appropriate, you may update your personal information through your Client Area or by contacting our support team.
8. Cookies and Similar Technologies #
ServerDots uses cookies and similar technologies to ensure the reliable operation of our websites and Services, enhance user experience, maintain security, analyze website performance, remember user preferences, and improve the quality of our products and services.
Cookies are widely used across the internet and help websites function efficiently by storing small amounts of information on a user’s device.
This section explains how ServerDots uses cookies, the types of cookies we use, and the choices available to you regarding cookie preferences.
8.1 What Are Cookies?
Cookies are small text files placed on your computer, smartphone, tablet, or other internet-connected device when you visit a website.
Cookies enable websites to recognize your device, remember your preferences, improve navigation, maintain secure sessions, and provide analytical information that helps website owners understand how visitors use their services.
Cookies generally do not contain information that directly identifies an individual. However, information associated with cookies may become linked with other information held by ServerDots when necessary to provide our Services, maintain security, or comply with legal obligations.
8.2 Why We Use Cookies
ServerDots uses cookies for several legitimate business purposes, including:
- Providing essential website functionality.
- Maintaining secure customer sessions.
- Authenticating users.
- Protecting customer accounts from unauthorized access.
- Remembering user preferences.
- Improving website performance.
- Monitoring website availability.
- Understanding visitor behaviour.
- Detecting fraud and abuse.
- Measuring the effectiveness of marketing campaigns.
- Improving customer experience.
- Ensuring the reliable operation of our Client Area.
Cookies help us deliver a faster, safer, and more personalized experience without compromising the security of our Services.
8.3 Types of Cookies We Use
Depending on how you interact with our websites, ServerDots may use the following categories of cookies.
Essential Cookies
Essential cookies are necessary for the operation of our websites and Client Area.
These cookies enable core functionality including:
- Secure login.
- Session management.
- Shopping cart functionality.
- Order processing.
- Customer authentication.
- Fraud prevention.
- Security verification.
- Load balancing.
- Website stability.
Without these cookies, many features of our Services would not function correctly.
Because essential cookies are necessary for providing the Services you request, they cannot generally be disabled through our website.
Functional Cookies
Functional cookies remember choices you make to improve your browsing experience.
Examples include:
- Preferred language.
- Regional preferences.
- Saved website settings.
- Recently viewed pages.
- User interface preferences.
- Accessibility settings.
These cookies help personalize your experience without collecting unnecessary personal information.
Performance and Analytics Cookies
Performance cookies help us understand how visitors use our websites.
These cookies collect information such as:
- Pages visited.
- Navigation paths.
- Session duration.
- Website loading times.
- Error messages.
- Device type.
- Browser information.
- Visitor locations at a country or regional level.
- Traffic sources.
This information is aggregated wherever reasonably possible and is used to:
- Improve website performance.
- Identify technical issues.
- Optimize user experience.
- Measure website engagement.
- Improve product offerings.
Marketing Cookies
Marketing cookies may be used to measure the effectiveness of advertising campaigns and improve communications with users who have expressed interest in our Services.
Depending on your preferences and applicable law, these cookies may help:
- Measure advertising performance.
- Understand campaign effectiveness.
- Prevent repetitive advertisements.
- Improve promotional communications.
- Deliver relevant content.
Where required by applicable law, marketing cookies will only be used with your consent.
8.4 First-Party and Third-Party Cookies
Cookies used on our websites may originate from ServerDots (“first-party cookies”) or from carefully selected service providers (“third-party cookies”) that help us deliver and improve our Services.
Third-party cookies may support services such as:
- Website performance analysis.
- Traffic measurement.
- Security services.
- Content delivery.
- Website optimization.
We carefully evaluate third-party providers before integrating their services into our websites.
8.5 Analytics Technologies
ServerDots uses analytics technologies to better understand how visitors interact with our websites.
Analytics information may include:
- Device information.
- Browser type.
- Operating system.
- Geographic region.
- Pages visited.
- Time spent on pages.
- Referral sources.
- User navigation.
- Website performance metrics.
- Session information.
This information helps us:
- Improve website usability.
- Optimize website performance.
- Enhance customer experience.
- Develop new products and services.
- Monitor website reliability.
Where possible, analytics information is aggregated or pseudonymized before analysis.
8.6 Google Analytics
ServerDots uses Google Analytics to understand how visitors interact with our websites and to improve the quality, performance, and usability of our Services.
Google Analytics may collect information including:
- Approximate geographic location.
- Device information.
- Browser information.
- Website interactions.
- Session duration.
- Referring websites.
- Page performance.
- User engagement metrics.
Google Analytics uses cookies to generate statistical reports that help us improve our websites.
For more information about Google’s privacy practices, please refer to Google’s Privacy Policy.
8.7 Google Tag Manager
ServerDots uses Google Tag Manager to manage website tags and improve the deployment of analytics and other website technologies.
Google Tag Manager itself does not ordinarily collect personal information. Instead, it facilitates the operation of scripts and tags that may support analytics, performance monitoring, or website functionality.
8.8 Content Delivery and Security Services
To improve website security, availability, and performance, ServerDots uses Cloudflare Content Delivery Network (CDN), web application firewall (WAF), distributed denial-of-service (DDoS) protection, caching, and related security technologies.
These technologies may:
- Protect against distributed denial-of-service (DDoS) attacks.
- Improve website loading speed.
- Filter malicious traffic.
- Detect automated attacks.
- Improve network reliability.
- Enhance website resilience.
Such technologies may process technical information including IP addresses, browser information, request headers, and network activity solely for security, operational, and performance purposes.
8.9 Managing Cookie Preferences
Most web browsers allow you to control cookies through browser settings.
You may choose to:
- View stored cookies.
- Delete existing cookies.
- Block all cookies.
- Block third-party cookies.
- Receive notifications before cookies are stored.
Please note that disabling certain cookies may affect the availability or functionality of portions of our websites and Services, including the Client Area.
8.10 Browser Controls
Most modern browsers provide built-in tools for managing cookies.
Instructions for managing cookies are generally available through your browser’s help documentation.
Because browser interfaces vary, please refer to your browser manufacturer’s guidance for detailed instructions.
8.11 Cookie Consent
Where required by applicable law, ServerDots will request your consent before placing non-essential cookies on your device.
You may withdraw or modify your cookie preferences at any time through the cookie preference tools made available on our websites, where applicable.
Withdrawal of consent does not affect the lawfulness of processing carried out before consent was withdrawn.
8.12 Do Not Track Signals
Some web browsers offer a “Do Not Track” (DNT) feature.
Because there is currently no universally accepted industry standard governing how websites should interpret DNT signals, ServerDots does not currently respond differently to browser-based Do Not Track requests.
Should an accepted industry standard emerge, we may revise our practices accordingly.
8.13 Future Cookie Technologies
As internet technologies evolve, ServerDots may introduce additional technologies that perform functions similar to cookies, such as local storage, web beacons, pixels, software development kits (SDKs), or other online identifiers.
Where such technologies are used, they will be governed by the principles described in this Privacy Policy and, where required, applicable consent requirements.
9. How We Use Your Information #
ServerDots processes personal information only where there is a lawful basis to do so and where such processing is necessary to provide, maintain, secure, improve, and support our Services.
The information we collect is used solely for legitimate business purposes, contractual obligations, compliance with applicable laws, and the protection of our customers, infrastructure, and business operations.
We do not process personal information for purposes incompatible with those described in this Privacy Policy without first obtaining consent where required by applicable law.
9.1 Service Provision
We use personal information to establish, deliver, maintain, and administer the Services you request.
This includes:
- Creating and managing customer accounts.
- Provisioning hosting services.
- Provisioning Virtual Private Servers (VPS).
- Provisioning Dedicated Servers.
- Registering, transferring, renewing, and managing domain names.
- Issuing SSL Certificates.
- Configuring Email Hosting services.
- Providing Website Builder services.
- Managing service upgrades, downgrades, renewals, suspensions, and cancellations.
- Delivering purchased products and services.
- Maintaining customer account preferences.
Without processing certain personal information, we may be unable to provide requested Services.
9.2 Account Administration
Your information is processed to administer your customer account throughout the duration of your relationship with ServerDots.
Account administration activities include:
- Identity verification.
- Account authentication.
- Password management.
- Multi-factor authentication (where enabled).
- Customer notifications.
- Service management.
- Billing administration.
- Account security monitoring.
- Profile management.
- Customer communication preferences.
9.3 Payment Processing
Personal information is processed to facilitate financial transactions associated with the Services you purchase.
This includes:
- Processing payments.
- Verifying payment authorizations.
- Issuing invoices.
- Processing refunds where applicable.
- Detecting payment fraud.
- Managing recurring billing.
- Maintaining accounting records.
- Complying with tax and financial reporting obligations.
Payment card information is processed by authorized payment service providers and is not stored in full on ServerDots-operated systems.
9.4 Customer Support
We process information necessary to provide timely, effective, and secure customer support.
Support-related processing may include:
- Responding to technical enquiries.
- Investigating reported issues.
- Resolving support tickets.
- Providing troubleshooting assistance.
- Verifying account ownership.
- Reviewing previous communications.
- Escalating technical incidents.
- Monitoring service quality.
- Improving customer satisfaction.
To ensure service quality and consistency, support interactions may be documented and retained in accordance with our data retention policies.
9.5 Communications
ServerDots communicates with customers for operational, contractual, legal, and customer service purposes.
These communications may include:
- Order confirmations.
- Service activation notices.
- Invoice notifications.
- Renewal reminders.
- Password reset requests.
- Security alerts.
- Service maintenance notifications.
- Scheduled maintenance announcements.
- Planned outage notifications.
- Emergency service communications.
- Abuse notifications.
- Important legal notices.
- Updates relating to your account.
These communications are considered essential to the Services we provide and generally cannot be opted out of while maintaining an active customer account.
9.6 Marketing Communications
Where permitted by applicable law or where you have provided consent, ServerDots may use your contact information to send marketing communications relating to:
- New products.
- Service enhancements.
- Promotional offers.
- Discounts.
- Educational resources.
- Industry updates.
- Company announcements.
- Special campaigns.
- Affiliate opportunities.
You may withdraw your consent or unsubscribe from promotional communications at any time by following the unsubscribe instructions included within such communications or by updating your communication preferences within your customer account.
Withdrawal of consent will not affect essential service-related communications.
9.7 Service Improvement
We continually analyze operational information to improve the quality, reliability, security, and performance of our Services.
This may include:
- Improving website functionality.
- Enhancing customer experience.
- Developing new features.
- Identifying performance bottlenecks.
- Measuring website usability.
- Monitoring infrastructure reliability.
- Optimizing resource allocation.
- Improving support efficiency.
- Enhancing product offerings.
Where possible, statistical and analytical information is aggregated or pseudonymized before analysis.
9.8 Security and Fraud Prevention
Protecting customer information and maintaining the integrity of our infrastructure are fundamental responsibilities of ServerDots.
We process information to:
- Detect unauthorized access.
- Prevent account compromise.
- Identify malicious activity.
- Detect fraudulent transactions.
- Prevent payment fraud.
- Protect customer accounts.
- Monitor network security.
- Investigate abuse.
- Identify spam activity.
- Prevent denial-of-service attacks.
- Protect system availability.
- Enforce our Terms of Service and Acceptable Use Policy.
Security monitoring is conducted using reasonable technical and organizational safeguards designed to protect both customer data and the operational integrity of our Services.
9.9 Legal Compliance
ServerDots processes personal information where necessary to comply with applicable legal obligations.
Examples include:
- Financial recordkeeping.
- Tax compliance.
- Responding to lawful requests from competent authorities.
- Compliance with court orders.
- Enforcement of contractual rights.
- Regulatory reporting.
- Dispute resolution.
- Protection of legal claims.
- Investigation of unlawful activities.
- Compliance with applicable sanctions and export control laws, where relevant.
Where legally permissible, we seek to limit the scope of any disclosure to only the information reasonably required.
9.10 Abuse Prevention
As an internet infrastructure provider, ServerDots has a legitimate interest in protecting its infrastructure, customers, partners, and the wider internet community.
We may process information to investigate and prevent:
- Spam.
- Phishing.
- Malware distribution.
- Unauthorized system access.
- Distributed denial-of-service (DDoS) attacks.
- Network abuse.
- Intellectual property violations.
- Fraudulent registrations.
- Account misuse.
- Illegal content.
- Other activities prohibited under our Terms of Service or applicable law.
Where appropriate, we may suspend or restrict Services while abuse investigations are ongoing.
9.11 Affiliate Programme Administration
Where you participate in the ServerDots Affiliate Programme, we process information necessary to administer affiliate relationships.
This may include:
- Referral tracking.
- Commission calculations.
- Payment processing.
- Fraud detection.
- Affiliate account administration.
- Performance reporting.
- Compliance monitoring.
Affiliate information is processed solely for administering the Affiliate Programme and meeting associated legal and financial obligations.
9.12 Research and Product Development
ServerDots may use aggregated, anonymized, or de-identified information to:
- Improve existing Services.
- Develop future products.
- Conduct statistical analysis.
- Evaluate market trends.
- Improve infrastructure planning.
- Enhance customer experience.
Information used for these purposes will not reasonably identify individual customers.
9.13 Corporate Transactions
If ServerDots is involved in a merger, acquisition, corporate restructuring, financing transaction, asset sale, or similar business transaction, personal information may be processed as part of evaluating, negotiating, or completing such transaction, subject to appropriate confidentiality obligations and applicable legal requirements.
Where required by law, affected customers will be notified before their information becomes subject to a different privacy policy.
9.14 Artificial Intelligence and Automated Assistance
ServerDots may use artificial intelligence (AI), machine learning technologies, or automated systems to assist in:
- Customer support.
- Spam detection.
- Abuse prevention.
- Security monitoring.
- Fraud detection.
- Service optimization.
- Operational analytics.
Where AI-assisted systems are used, meaningful decisions that produce legal or similarly significant effects on individuals will not be based solely on automated processing unless authorized by applicable law or supported by appropriate safeguards.
Human review may be incorporated where appropriate to ensure fairness, accuracy, and accountability.
9.15 Purpose Limitation
ServerDots will not process personal information for purposes materially different from those described in this Privacy Policy unless:
- We obtain your consent where required;
- Processing is otherwise permitted or required by applicable law; or
- The new purpose is compatible with the original purpose for which the information was collected.
We remain committed to ensuring that all processing activities are consistent with the principles of transparency, necessity, proportionality, and accountability.
10. Legal Bases for Processing Personal Information #
ServerDots processes personal information only where a valid legal basis exists under applicable data protection laws. Depending on your location and the nature of your interaction with our Services, one or more legal bases may apply to our processing activities.
Where the United Kingdom General Data Protection Regulation (UK GDPR), the European Union General Data Protection Regulation (EU GDPR), or similar legislation applies, ServerDots relies on the following legal bases.
10.1 Performance of a Contract
The primary legal basis for processing personal information is the performance of a contract or the taking of steps at your request before entering into a contract.
We process information necessary to:
- Create and administer customer accounts.
- Process service orders.
- Provision hosting services.
- Provision VPS and Dedicated Servers.
- Register, transfer, and renew domain names.
- Issue SSL Certificates.
- Configure Email Hosting.
- Provide Website Builder services.
- Process invoices and payments.
- Deliver customer support.
- Respond to service-related enquiries.
- Maintain your active Services.
Without this processing, we may be unable to provide the Services requested.
10.2 Compliance with Legal Obligations
Certain information must be processed to comply with applicable laws, regulations, judicial proceedings, governmental requests, or regulatory requirements.
Examples include:
- Tax compliance.
- Accounting obligations.
- Financial record retention.
- Anti-fraud investigations.
- Responding to lawful requests from courts or competent authorities.
- Compliance with sanctions, export controls, or other applicable laws.
- Protection of legal rights and enforcement of contractual obligations.
Where legally permitted, we will disclose only the minimum information reasonably necessary to satisfy such obligations.
10.3 Legitimate Interests
ServerDots may process personal information where such processing is necessary for our legitimate interests, provided those interests are not overridden by your rights and freedoms.
Our legitimate interests include:
- Operating and improving our Services.
- Maintaining infrastructure reliability.
- Protecting network security.
- Detecting fraud and abuse.
- Preventing unauthorized access.
- Investigating suspicious activity.
- Improving customer support.
- Developing new products and services.
- Monitoring service performance.
- Enforcing our legal rights.
- Protecting our customers, employees, partners, and business operations.
Before relying on legitimate interests, we consider the potential impact on your privacy and implement safeguards where appropriate.
10.4 Consent
Certain processing activities are based on your consent.
Examples may include:
- Receiving marketing communications where consent is required.
- Placement of non-essential cookies.
- Participation in voluntary surveys.
- Promotional campaigns.
- Optional communications.
- Certain analytics technologies where required by law.
Where processing is based on consent, you may withdraw your consent at any time.
Withdrawal of consent does not affect the lawfulness of processing carried out before consent was withdrawn.
10.5 Protection of Vital Interests
In exceptional circumstances, ServerDots may process personal information where necessary to protect the vital interests of an individual or another natural person.
Such circumstances are expected to be rare and may include emergency situations involving threats to life, personal safety, or significant security incidents.
10.6 Public Interest
Where applicable law permits or requires, ServerDots may process information for reasons of substantial public interest, including cooperation with lawful investigations, prevention of criminal activity, or protection of the integrity of internet infrastructure.
10.7 Purpose Limitation
Personal information collected by ServerDots will be processed only for the purposes for which it was originally collected unless:
- You provide additional consent.
- Applicable law permits further processing.
- The new purpose is compatible with the original purpose.
- Processing is required by law.
We do not process personal information for unrelated purposes without an appropriate legal basis.
11. Sharing and Disclosure of Personal Information #
ServerDots values the trust placed in us by our customers.
We do not sell your personal information.
We do not rent your personal information.
We do not disclose personal information to third parties except as described in this Privacy Policy or where required by applicable law.
Information is shared only where necessary to operate our Services, fulfil contractual obligations, maintain security, comply with legal requirements, or protect legitimate business interests.
11.1 Service Providers
We engage carefully selected third-party service providers that assist us in operating our business and delivering our Services.
These providers may perform functions such as:
- Payment processing.
- Infrastructure support.
- Domain registration services.
- Website analytics.
- Content delivery.
- Security services.
- Email delivery.
- Customer communications.
- Technical support tools.
Such providers are granted access only to the information reasonably necessary to perform the services they provide on our behalf and are contractually required to maintain appropriate confidentiality and security measures.
11.2 Domain Registration Authorities
Where you register or transfer a domain name through ServerDots, certain information must be shared with the relevant domain registrar, registry operator, or governing authority in accordance with applicable domain registration policies and contractual requirements.
The information disclosed varies depending on the domain extension and applicable registry rules.
Where available, ServerDots supports domain privacy or proxy services to reduce the public visibility of eligible registration information.
11.3 Payment Providers
When you make payments, payment-related information is transmitted directly to the selected payment provider, such as Stripe or PayPal, depending on the payment method you choose, for transaction processing.
ServerDots does not receive or retain complete payment card credentials.
Payment providers process your information in accordance with their own privacy policies and applicable financial security standards.
11.4 Legal Requirements
ServerDots may disclose personal information where we believe, in good faith, that disclosure is necessary to:
- Comply with applicable law.
- Respond to valid legal process.
- Protect the rights, safety, or property of ServerDots.
- Protect our customers.
- Prevent fraud.
- Investigate unlawful activity.
- Respond to government authorities acting within their legal powers.
- Enforce our agreements.
- Defend legal claims.
Whenever reasonably possible and legally permitted, we will limit disclosures to only the information necessary to satisfy the applicable legal requirement.
11.5 Business Transfers
In the event of a merger, acquisition, reorganization, financing, insolvency proceeding, sale of assets, or similar corporate transaction, personal information may be transferred as part of the transaction.
Any successor entity receiving such information will be required to respect the commitments contained in this Privacy Policy or provide equivalent protections consistent with applicable law.
Where legally required, affected individuals will be notified before such transfer occurs.
11.6 Protection of Rights
ServerDots may disclose information where necessary to:
- Enforce our Terms of Service.
- Protect network integrity.
- Prevent abuse.
- Investigate security incidents.
- Protect intellectual property.
- Defend against legal claims.
- Prevent financial loss.
- Protect customers and business partners.
Such disclosures are limited to the extent reasonably necessary to achieve these legitimate objectives.
11.7 Aggregated and Anonymized Information
ServerDots may create aggregated, anonymized, or de-identified statistical information that no longer identifies any individual.
Such information may be used for:
- Business analytics.
- Product development.
- Infrastructure planning.
- Industry reporting.
- Research.
- Service improvement.
Aggregated information cannot reasonably be used to identify individual customers.
11.8 No Sale of Personal Information
ServerDots does not sell personal information to third parties for monetary or other valuable consideration.
Should this practice ever change, we will provide any notices and rights required under applicable law before doing so.
11.9 International Disclosures
Because ServerDots provides services to customers worldwide, personal information may be processed in countries other than the country in which it was originally collected.
Where international transfers occur, ServerDots implements appropriate safeguards designed to protect personal information in accordance with applicable data protection laws.
Further information regarding international data transfers is provided in the following chapter.
12. International Data Transfers #
12.1 International Processing
ServerDots provides services to customers located in multiple countries. As a result, personal information may be processed, accessed, stored, or transferred in countries other than the country in which it was originally collected.
International processing may occur where necessary to provide our Services, maintain global infrastructure, deliver customer support, process payments, register domain names, protect our networks, investigate abuse, or otherwise fulfil our contractual and legal obligations.
Where personal information is transferred internationally, ServerDots takes appropriate steps to ensure that such transfers are conducted in accordance with applicable data protection laws.
12.2 UK GDPR Transfer Mechanisms
Where the UK General Data Protection Regulation (UK GDPR), the EU General Data Protection Regulation (EU GDPR), or similar legislation applies, ServerDots implements appropriate safeguards before transferring personal information to countries that do not provide an equivalent level of data protection.
Such safeguards are designed to ensure that personal information continues to receive an appropriate level of protection regardless of where it is processed.
12.3 Adequacy Decisions
Where personal information is transferred to a country or territory that has been formally recognised by the relevant regulatory authority as providing an adequate level of protection for personal information, ServerDots may rely on such adequacy decisions when conducting international transfers.
12.4 Standard Contractual Clauses (SCCs)
Where an adequacy decision is not available, ServerDots may rely on legally recognised transfer mechanisms, including, where applicable:
- Standard Contractual Clauses (SCCs) approved by the European Commission;
- The UK International Data Transfer Agreement (IDTA) or the UK Addendum to the SCCs;
- Other contractual, legal, or regulatory safeguards recognised under applicable data protection laws.
These mechanisms are intended to ensure that transferred personal information receives protections substantially equivalent to those required under applicable law.
12.5 Additional Safeguards
In addition to applicable legal transfer mechanisms, ServerDots implements appropriate technical and organisational measures designed to protect personal information during international transfers, including, where appropriate:
- Encryption of data during transmission;
- Secure communication protocols;
- Access controls based on the principle of least privilege;
- Authentication and authorisation controls;
- Monitoring of systems and network activity;
- Confidentiality obligations applicable to authorised personnel and service providers.
These measures are regularly reviewed and updated to address evolving legal, technical, and security requirements.
13. Data Retention #
13.1 Retention Principles
ServerDots retains personal information only for as long as necessary to fulfil the purposes described in this Privacy Policy, provide the requested Services, comply with applicable legal obligations, resolve disputes, enforce our agreements, protect our legitimate business interests, and maintain the security and integrity of our systems.
The length of time for which personal information is retained depends on the nature of the information, the Services provided, applicable legal and regulatory requirements, contractual obligations, and operational or security needs.
When personal information is no longer required for these purposes, it is securely deleted, anonymised, or otherwise disposed of using appropriate methods.
13.2 Retention Schedule
The following table provides a general overview of our retention practices. Actual retention periods may vary where longer retention is required by law, contractual obligations, ongoing investigations, litigation, regulatory requirements, or legitimate business needs.
| Information Category | Typical Retention Period |
|---|---|
| Customer account information | While the account remains active and for up to 90 days after closure, unless a longer retention period is required by law |
| Billing, invoices and accounting records | As required by applicable tax, accounting, and financial laws |
| Payment transaction references | As required for financial reporting, fraud prevention, and dispute resolution |
| Support tickets and customer communications | Up to three (3) years after resolution |
| Server and system logs | Up to twelve (12) months |
| Security and audit logs | Up to twelve (12) months |
| Marketing preferences | Until consent is withdrawn or communication preferences are updated |
| Backup data | Up to ninety (90) days, unless required for disaster recovery or legal purposes |
| Domain registration records | As required by applicable registry, registrar, ICANN, or legal requirements |
13.3 Legal and Regulatory Requirements
Certain information may be retained for longer periods where retention is necessary to:
- Comply with applicable laws or regulatory obligations;
- Satisfy accounting or taxation requirements;
- Respond to lawful requests from competent authorities;
- Resolve disputes or enforce contractual rights;
- Investigate fraud, abuse, or security incidents;
- Protect the rights, property, or safety of ServerDots, its customers, or other parties.
Where multiple retention obligations apply, ServerDots will retain information for the longest period required under applicable law or legitimate business necessity.
13.4 Secure Disposal
When personal information is no longer required, ServerDots securely deletes, anonymises, or destroys such information using methods appropriate to the nature of the data and the storage medium involved.
Reasonable measures are taken to help ensure that personal information cannot be reconstructed, recovered, or accessed by unauthorised persons after disposal.
Where deletion is not immediately possible due to technical, legal, or operational constraints, personal information will remain subject to appropriate security measures until secure disposal can be completed.
14. Data Security #
14.1 Our Commitment to Security
Protecting the confidentiality, integrity, and availability of personal information is a fundamental priority for ServerDots. We implement appropriate technical, organisational, and administrative measures designed to protect personal information against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, unauthorised access, misuse, or other unlawful forms of processing.
Our security programme is regularly reviewed and updated to address evolving technologies, emerging cybersecurity threats, and applicable legal and regulatory requirements.
14.2 Encryption
Where appropriate, ServerDots uses industry-recognised encryption technologies to protect personal information during transmission and, where applicable, while stored within our systems.
Security measures may include:
- HTTPS-secured websites;
- TLS/SSL encryption for data transmitted over public networks;
- Encrypted administrative connections where appropriate;
- Secure password storage using industry-standard hashing algorithms; and
- Encryption technologies appropriate to the sensitivity of the information being processed.
14.3 Access Controls
Access to personal information is restricted to authorised personnel who require such access to perform their legitimate job responsibilities.
ServerDots implements appropriate access management measures, including:
- Role-based access controls;
- The principle of least privilege;
- Authentication mechanisms;
- Account access monitoring;
- Periodic review of user permissions; and
- Prompt revocation of access when no longer required.
14.4 Infrastructure Security
ServerDots maintains multiple layers of security designed to protect its infrastructure and Services against unauthorised access and cyber threats.
Depending on the Services provided, security measures may include:
- Firewalls and network filtering;
- Distributed Denial-of-Service (DDoS) protection;
- Malware detection and prevention systems;
- Network segmentation;
- Secure server configurations;
- Continuous security monitoring; and
- Protection against common web application attacks.
14.5 Vulnerability Management
ServerDots regularly evaluates the security of its systems through ongoing maintenance and security management processes.
These activities may include:
- Installation of security updates;
- Patch management;
- Vulnerability assessments;
- Configuration reviews;
- Risk-based remediation of identified issues; and
- Continuous improvement of security controls.
14.6 Security Monitoring
To protect our Services and customers, ServerDots continuously monitors its systems for security events and operational anomalies.
Monitoring activities may include:
- System logging;
- Authentication monitoring;
- Intrusion detection;
- Abuse detection;
- Fraud monitoring;
- Malware detection;
- Network activity analysis; and
- Investigation of suspicious or unauthorised activity.
Information collected through security monitoring is processed solely for legitimate security, operational, and legal purposes.
14.7 Employee Confidentiality
ServerDots requires employees, contractors, and authorised service providers who may have access to personal information to maintain appropriate confidentiality obligations.
Access to personal information is granted only where necessary for legitimate business purposes and is subject to appropriate internal policies, procedures, and security controls.
14.8 Physical Security
Where ServerDots utilises third-party data centres or infrastructure providers, those facilities are expected to implement appropriate physical and environmental security measures designed to protect hosted systems and stored information.
Such measures may include controlled facility access, surveillance systems, environmental monitoring, fire protection, power redundancy, and other safeguards appropriate for modern data centre operations.
14.9 Business Continuity and Disaster Recovery
ServerDots maintains operational procedures intended to support service continuity and minimise disruption in the event of unexpected incidents.
These measures may include:
- System backups;
- Disaster recovery procedures;
- Infrastructure redundancy where appropriate;
- Service restoration processes; and
- Incident response planning.
While these measures are designed to improve service resilience, customers remain responsible for maintaining independent backups of their own data unless backup services are expressly included within the applicable Service.
14.10 Limitation of Security
Although ServerDots implements reasonable technical and organisational safeguards designed to protect personal information, no method of transmitting information over the Internet or storing information electronically can be guaranteed to be completely secure.
Accordingly, while we strive to protect personal information using commercially reasonable security measures, we cannot guarantee absolute security.
15. Your Privacy Rights #
Depending on your location and applicable data protection laws, you may have certain rights regarding your personal information.
These rights may include:
15.1 Right of Access
You may request confirmation as to whether ServerDots processes your personal information and, where applicable, request access to such information together with details regarding how it is processed.
15.2 Right to Rectification
You may request that inaccurate or incomplete personal information be corrected or updated.
15.3 Right to Erasure
Subject to applicable legal requirements, you may request that your personal information be deleted where there is no lawful basis requiring its continued processing or retention.
15.4 Right to Restrict Processing
Under certain circumstances, you may request that ServerDots restrict the processing of your personal information while a request or objection is being considered.
15.5 Right to Data Portability
Where applicable, you may request a copy of certain personal information you have provided to ServerDots in a structured, commonly used, and machine-readable format and, where technically feasible, request that it be transferred to another service provider.
15.6 Right to Object
You may object to the processing of your personal information where such processing is based on our legitimate interests or is carried out for direct marketing purposes, subject to applicable legal requirements.
15.7 Right to Withdraw Consent
Where processing is based upon your consent, you may withdraw that consent at any time.
Withdrawal of consent does not affect the lawfulness of processing carried out before consent was withdrawn.
15.8 Exercising Your Rights
Requests relating to your privacy rights may be submitted by contacting:
Email: [email protected]
For security purposes, ServerDots may request additional information necessary to verify your identity before responding to your request.
We will respond within the time periods required by applicable law.
16. California Privacy Rights (CCPA/CPRA) #
If you are a California resident, you may have additional rights under the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), subject to applicable limitations and exceptions.
Depending on applicable law, these rights may include:
- The right to know what categories of personal information we collect;
- The right to request access to personal information;
- The right to request deletion of personal information, subject to applicable exceptions;
- The right to request correction of inaccurate personal information;
- The right to request information regarding disclosures of personal information; and
- The right not to receive discriminatory treatment for exercising your privacy rights.
ServerDots does not sell personal information to third parties for monetary or other valuable consideration and does not knowingly share personal information for cross-context behavioural advertising as defined under applicable California law.
California residents wishing to exercise applicable privacy rights may contact us using the contact information provided in this Privacy Policy.
17. UK & EU GDPR Notice #
Individuals located in the United Kingdom, the European Economic Area (EEA), or other jurisdictions where the UK GDPR, EU GDPR, or similar legislation applies benefit from additional rights and protections under applicable data protection laws.
ServerDots processes personal information only where an appropriate legal basis exists, including the performance of a contract, compliance with legal obligations, legitimate interests, consent where required, or other lawful grounds recognised by applicable legislation.
Where personal information is transferred internationally, ServerDots implements appropriate safeguards designed to ensure that transferred information continues to receive an adequate level of protection in accordance with applicable data protection laws.
Individuals who believe that ServerDots has processed their personal information in violation of applicable data protection laws may also have the right to lodge a complaint with the competent supervisory authority in their jurisdiction.
18. Children’s Privacy #
ServerDots’ Services are intended for individuals who are at least the minimum legal age required to enter into a binding contract under applicable law and are not directed toward children.
We do not knowingly collect, solicit, or process personal information from individuals under the age of 18. If we become aware that personal information has been collected from a child without appropriate legal authority or parental consent where required by law, we will take reasonable steps to delete such information as soon as practicable.
If you believe that a child has provided personal information to ServerDots, please contact us using the contact information provided in this Privacy Policy so that we may investigate the matter and take appropriate action.
19. Third-Party Websites #
Our websites and Services may contain links to websites, applications, products, or services operated by third parties for your convenience or as part of the Services we provide.
ServerDots does not control and is not responsible for the privacy practices, content, security, or policies of third-party websites or services. Your interactions with such third parties are governed by their respective privacy policies and terms of use.
We encourage you to review the privacy policies of any third-party websites or services before providing personal information or using their services.
The inclusion of a link to a third-party website does not constitute an endorsement, recommendation, or approval by ServerDots of that website, its operator, or its privacy practices.
20. Data Breach Response #
ServerDots maintains procedures designed to detect, investigate, contain, and respond to security incidents that may affect the confidentiality, integrity, or availability of personal information.
In the event of a suspected or confirmed personal data breach, we may take appropriate actions including:
- Identifying and containing the incident;
- Assessing the nature and scope of the breach;
- Investigating the cause and potential impact;
- Implementing corrective measures to prevent recurrence;
- Restoring affected systems and Services where appropriate; and
- Notifying affected individuals, regulatory authorities, or other parties where required by applicable law.
Following any significant security incident, ServerDots reviews its policies, procedures, and technical safeguards to identify opportunities for improvement and strengthen its overall security posture.
Reports of abuse, security incidents, phishing, spam, malware, network attacks, copyright infringement, or other misuse of ServerDots Services should be submitted through our Abuse Report Form. Each report is reviewed by our team, investigated where appropriate, and handled in accordance with our Acceptable Use Policy, Terms of Service, and applicable laws.
20.1 Automated Decision-Making
ServerDots does not make decisions that produce legal or similarly significant effects on individuals solely through automated processing of personal information.
Where automated tools, artificial intelligence, or machine learning technologies are used to support fraud detection, abuse prevention, security monitoring, spam filtering, service optimisation, operational analytics, or customer support, such processing is designed to assist human decision-making rather than replace it.
Where required by applicable law, appropriate safeguards, including meaningful human review, are implemented to help ensure fairness, accuracy, and accountability.
21. Contact Information #
If you have any questions, concerns, or requests relating to this Privacy Policy or the processing of your personal information, please contact us using the details below.
To report abuse, spam, phishing, malware, copyright infringement, network attacks, or other violations involving services operated by ServerDots, please submit a report using our Abuse Report Form:
Privacy Email
Client Area
We will make reasonable efforts to respond to privacy-related enquiries promptly and in accordance with applicable legal requirements.
22. Complaints #
ServerDots is committed to resolving privacy concerns fairly, transparently, and promptly.
If you believe that we have processed your personal information in a manner that is inconsistent with this Privacy Policy or applicable data protection laws, we encourage you to contact us first using the contact information provided above. We will investigate your concerns and make reasonable efforts to resolve them as quickly as practicable.
If you are not satisfied with our response, or if you believe that your rights under applicable data protection laws have been infringed, you may have the right to lodge a complaint with the competent supervisory authority in your jurisdiction.
Where the UK General Data Protection Regulation (UK GDPR) applies, you may also lodge a complaint with the Information Commissioner’s Office (ICO), the United Kingdom’s independent authority responsible for upholding information rights.
Nothing in this Privacy Policy limits any rights or remedies available to you under applicable data protection or privacy laws.
23. Policy Version and Updates #
Version: 1.0
This Privacy Policy supersedes all previous versions published by ServerDots. Future updates will be published on this page, and where required by applicable law, additional notice will be provided through our Website, Client Area, or by email.