LEGAL · PRIVACY
Privacy Policy
Effective 2026-07-03
This policy explains what Senloease collects, why, who we share it with, and the controls you have. We've written it to be read, not skimmed past. Senloease (“we,” “us”) is the controller for the personal data described here, except where this policy says otherwise. Contact: hello@senloease.com.
1. What we collect
- Account data. The email address you sign up with. If you sign in with Google, we also receive the name and profile picture from your Google account. We never see your Google password, and we don't use passwords at all.
- Site content. Everything you put into your sites: business name, text, images, menus, opening hours, contact details. It's yours; we store it to display it.
- Visitor enquiries. When someone submits a contact form on a published site, we store the message and deliver it to the site's owner. We process this data on the owner's behalf (see section 4).
- Email-list signups. When a visitor chooses to join a website's email list, we store their email address, consent time, subscription status, and the website they joined. The website owner can view, export, update, or delete that entry.
- Billing data. Paid plans are processed by our payment provider (named on the payment page), which collects and controls your payment details under its own privacy policy. We never see your full card number; we store subscription, domain, renewal, and AI credit order details, including status, amount, currency, country, and customer or transaction references needed to manage billing.
- Domain registration data. If you buy a domain through us, we collect the registrant name, email, phone number, postal address, country, and related registration details required to register and manage that domain.
- Usage, analytics, and logs. We use request information such as an IP address, user agent, and timestamp for security, rate limiting, fraud prevention, and short-lived visitor deduplication. Published-site analytics store totals for views, QR scans, traffic sources, and button or link clicks, not a visitor's message content. On Senloease's own public pages, we keep daily totals for the page visited, campaign tags, and broad source such as search, social, referral, or direct. We store a referring website's hostname rather than its full URL. If someone later creates an account, we may attach the first campaign and source to that account so we can understand which marketing brought signups. We do not use this for cross-site advertising profiles.
2. How we use it
- To run the Service: render your sites, save edits, deliver enquiries, maintain email lists, show analytics, process purchases, and send account emails or weekly activity emails you have enabled.
- To answer support questions.
- To detect and prevent abuse, fraud, and violations of our Terms.
- To understand product usage in aggregate and improve the Service.
We do not sell personal data. We don't run ad networks, and we don't let third parties profile your visitors.
3. AI features
Optional AI tools send the business description and the website text needed for a requested draft, rewrite, or polish to our AI provider. The AI website generator can also use the business type, location, goals, and style choices to rank suitable designs. When you ask us to find photos, a short search phrase based on the brief is sent to our stock-photo provider. Photos or logos you upload are stored with your account and used in the directions you request.
We send only what is needed for the selected feature and never send payment-card details or sign-in credentials to an AI provider. Senloease does not use your content to train its own models. External AI and photo providers process requests under their own terms. Do not include health, financial, identity-document, or other sensitive personal information in an AI brief. Private generated directions are normally retained for 7 days unless you use one to create a website sooner.
4. Visitors to published sites
Site owners are the controllers of the enquiries and email subscribers their sites receive; we act as their processor, storing the data, showing it in the owner's dashboard, and forwarding enquiries by email. If you submitted a message or joined an email list through a website made with Senloease and want the data changed or removed, contact that business, or write to us and we'll help route the request.
5. Third parties we rely on
- Infrastructure providers: database, authentication, file storage, hosting, and content delivery.
- Our payment provider (named on the payment page): processes paid plans.
- Domain registration and infrastructure providers: check availability, register, configure, and manage domains you buy or connect.
- Email delivery provider: sends transactional email.
- Optional sign-in, AI, and stock-photo providers: support those features when you choose to use them.
- Privacy-focused measurement providers: help us understand basic page performance without advertising cookies.
Each processes data under its own privacy policy; we share the minimum needed for each to do its job. Some of these providers store data in the United States or the European Union. By using the Service you understand your data may be processed in those locations, protected by the providers' standard safeguards.
6. Retention
Account data and site content: for as long as your account exists, then deleted within 30 days of account deletion (backup copies purge on their normal cycle shortly after). AI website directions are normally kept for 7 days. Enquiries, email-list entries, and website analytics remain with the website until the owner deletes them, deletes the website, or deletes the account. Security logs are normally kept for 90 days. Domain registration records may be retained for the registration period and any additional period required by registries, registrars, accounting, fraud prevention, or law. Other records we must keep for legal or accounting reasons follow their required retention periods.
7. Your rights
You can view and edit your data from the dashboard, and delete your account (with all its sites) unless an active managed-domain order must first be resolved with support. Depending on where you live, including the EU/UK (GDPR), California (CCPA), and Nigeria (NDPA), you may also have rights to access, correct, export, restrict, or erase your personal data, and to complain to your data protection authority. To exercise any of them, write to hello@senloease.com. We respond to verified requests within 30 days.
8. Security
Data is encrypted in transit, access to production systems is restricted, and sign-in uses one-time links or Google OAuth instead of stored passwords. No internet service can promise perfect security; if a breach ever affects your data, we'll notify you as the law requires.
9. Children
The Service is for businesses and isn't directed at children under 16. We don't knowingly collect their data; if you believe a child has created an account, contact us and we'll delete it.
10. Cookies
We use a small set of first-party cookies for sign-in and to avoid counting the same website view or accidental double-tap repeatedly. Details are on the Cookies page.
11. Changes
Material changes to this policy will be announced by email or in-app notice at least 14 days before they take effect.
12. Contact
Questions or data requests: hello@senloease.com.