Privacy Policy
Last updated: 20 June 2026
This Privacy Policy explains how df00tech (“we”, “us”) collects, uses, and protects your personal data when you use df00tech.com (the “Service”). We process personal data in accordance with the UK GDPR, the Data Protection Act 2018, and, where applicable, the EU GDPR.
Who we are
DF00TECH LTD is the data controller for the personal data described in this policy. We are a company registered in England and Wales (company no. 16185504), with our registered office at 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom. Questions about this policy or your data can be sent to [email protected].
What data we collect
- Account data — your email address and a hashed password when you register or sign in.
- Newsletter data — your email address if you subscribe to updates.
- Billing data — if you purchase a paid plan, payment is processed by Stripe; we store your subscription status and a Stripe customer reference, not your full card details.
- Technical data — a session cookie to keep you signed in, plus limited, privacy-friendly usage analytics (aggregate page views; no cross-site tracking or advertising profiles).
How we use it, and our lawful basis
- To provide the Service (accounts, authentication, access to paid content) — performance of a contract.
- To take payment and manage subscriptions — performance of a contract and legal obligation (tax/accounting records).
- To send the newsletter — your consent, which you can withdraw at any time.
- To secure, maintain, and improve the Service — our legitimate interests in running a reliable, secure platform.
Who we share it with
We use a small number of trusted processors who act on our instructions:
- Stripe — payment processing.
- Mailgun — transactional and newsletter email delivery.
- Ghost — our blog/content platform.
- Our hosting provider — to operate the servers the Service runs on.
We do not sell your personal data. Some processors may transfer data outside the UK/EEA; where they do, appropriate safeguards (such as Standard Contractual Clauses) apply.
How long we keep it
We keep account and billing data for as long as you have an account, and afterwards only as long as needed for legal, tax, or security purposes. Newsletter data is kept until you unsubscribe.
Your rights
Under UK/EU data protection law you have the right to access, correct, delete, restrict, or port your personal data, and to object to certain processing or withdraw consent. To exercise any of these, email [email protected].
If you are unhappy with how we handle your data you can complain to the UK Information Commissioner’s Office (ICO) at ico.org.uk, or to your local EU supervisory authority.
Cookies
We use a strictly-necessary session cookie and privacy-friendly analytics. See our Cookie Policy for details.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by the “Last updated” date above.