What we collect
When you place an order we collect your email address and whatever your payment provider passes to us to confirm the payment (typically a transaction ID, the amount, and for card payments the last four digits and billing country).
We never see or store your full card number. Card details go directly to our payment processor and never touch our servers.
Like most sites we also record standard server logs — IP address, browser, pages requested — and use analytics to understand which pages people find useful.
Why we hold it
- Your email address — to deliver the key and to handle replacements or refunds later
- Payment references — to match an order to a payment, and for our own accounting
- Order history — so we can honour the warranty without asking you to prove you bought something
What we do not do
- We do not sell, rent or share customer data with third parties
- We do not send marketing email unless you have asked for it
- We do not ask for, want, or store your host account password
- We do not require a real name or a postal address to sell you a digital key
How long we keep it
Order records are kept for as long as the warranty could apply, plus the period our accounting obligations require. Server logs are rotated within 30 days.
Cookies
We use cookies that are necessary for the cart and checkout to work, and analytics cookies to see which pages are useful. You can refuse analytics cookies without affecting your ability to buy.
Your rights
You can ask us what we hold about you, ask us to correct it, or ask us to delete it. Email the address on our contact page and we will respond within 30 days. Deleting your order record means we can no longer honour a warranty claim on that order, so we will confirm before doing it.
Payment processors
Payments are handled by PayPal, our card processor and our crypto gateway. Each has its own privacy policy governing the data you give them directly.