This Privacy Policy (“Policy”) describes how HubforHost (“we,” “us,” or “our”) collects, uses, discloses, and protects your personal data across our websites, hosting platforms, and customer portals. It is incorporated by reference into our Terms of Service. By accessing or using our services, you agree to the collection and handling of information in accordance with this Policy.
1. Collection and Categories of Personal Information
We collect only the personal information necessary to deliver, bill, and protect your hosting services:
- Contact Information: Full name, registered email address, physical mailing address, and telephone number.
- Billing & Payment Data: Payment mode tokens, transaction reference IDs, and billing address information required for fraud verification, automated provisioning, and tax compliance. (Full payment card numbers are processed directly via secure payment gateways and are never stored on our servers.)
- Corporate & Organizational Details: Registered business name, company registration identifiers, tax ID numbers, and designated administrative contact details when registering on behalf of an enterprise or organization.
- Automated Technical Telemetry: IP addresses, browser engine and version, referring and exit URLs, client operating systems, server request timestamps, and routing telemetry gathered automatically when you browse our website or portal.
2. How We Use Collected Information
We process your personal information for lawful business purposes, including:
- Service Delivery & Account Administration: Provisioning servers, deploying cloud hosting instances, authenticating login sessions, and administering account credentials.
- Domain Management: Submitting verified registrant data to ICANN-accredited domain registries worldwide to register, renew, lock, or transfer domains.
- Customer Support: Responding to help desk tickets, live chat inquiries, technical escalation requests, and service delivery notifications.
- Security & Abuse Prevention: Monitoring server health, mitigating automated brute-force attacks, detecting spam relays, and enforcing our Acceptable Usage Policy.
- Transactional Communications: Dispatching essential billing invoices, renewal reminders, maintenance announcements, and security alerts.
- Product Improvement: Analyzing platform performance metrics, customer demographics, and feature usage patterns to optimize hosting speed and reliability.
3. Choice and Opt-Out Preferences
You maintain control over your communication preferences:
- Marketing & Promotional Emails: You can opt out of promotional newsletters at any time by clicking the “Unsubscribe” link in the email footer or updating your notifications in your client portal.
- Mandatory Transactional Notices: You cannot opt out of operational, billing, security, or domain expiration notices, as these are critical to the continued delivery and legal compliance of your active hosting services.
- Privacy Preferences Contact: To modify your notification profile manually, contact our team at privacy@hubforhost.com.
4. Information Sharing and Global Transfers
We strictly do not sell, rent, or lease your personal information to third parties. We disclose data only in the following limited circumstances:
- Essential Service Subcontractors: Authorized third-party vendors who provide operational support (such as domain registry forwarding, payment processing, or transactional email delivery) are granted access strictly to perform contracted services on our behalf.
- International Domain Registry Transfers: Domain registration necessitates transferring registrant contact information internationally (including to registries in the United States and worldwide) as mandated by ICANN and top-level domain registries.
- Legal Compliance & Public Safety: When required by lawful court subpoena, statutory obligation, or valid law enforcement order to prevent fraud, protect vital public safety interests, or defend our legal rights.
- Business Succession: In the event of a merger, acquisition, or sale of substantial operational assets, customers will receive advance notification via email and portal announcement detailing any change in ownership or data stewardship.
5. Cookies and Similar Technologies
HubforHost currently uses limited first-party browser storage and security tooling needed to operate the website:
- Essential Preferences & Theme Control: The website stores your light/dark theme preference in first-party browser storage under “hh-theme”. This essential preference contains no personally identifiable or tracking information and applies immediately so pages render in your preferred appearance.
- Cookie Consent Record: Your cookie-banner choice is stored in first-party browser storage under “hh_cookie_consent” so the banner is not shown again unnecessarily. It records only the choice itself.
- Consent-Region Check: To decide whether the cookie banner must be shown, the site requests only a country code from a geolocation endpoint (ipwho.is, with a Cloudflare network trace fallback). No browsing profile is built from this lookup and it is not used for advertising or analytics.
- No Website Analytics Currently Loaded: This build does not load Google Analytics, Microsoft Clarity, session replay, or advertising pixels. This notice must be updated and an appropriate consent mechanism implemented before any optional analytics technology is enabled.
- Cloudflare Turnstile (Cloudflare, Inc.): Turnstile analyzes browser and device telemetry on our contact and inquiry forms to distinguish human users from automated spam bots. This technical verification is essential for spam prevention and form security.
- Direct WhatsApp Link (Meta Platforms): Our website provides a standard external link to WhatsApp for instant customer assistance. This link does not load third-party scripts or track your browsing activity until you intentionally click it to initiate a chat.
- Contact & Inquiry Widget: The widget submits inquiries to our first-party form handler over HTTPS. Cloudflare Turnstile is loaded when needed for bot prevention, and ZeptoMail processes the resulting transactional email.
6. Third-Party Sub-Processors & Service Partners
We work with service providers for infrastructure, security, communication, and payment processing:
| Provider | Function / Purpose | Location & Legal Terms |
|---|---|---|
| Cloudflare (Cloudflare, Inc.) | Turnstile bot prevention on contact and inquiry forms. | USA / Global • Cloudflare Privacy • Website Terms |
| Razorpay (Razorpay Software Pvt Ltd) | PCI-DSS compliant payment gateway for processing UPI, credit/debit cards, and Net Banking. | India • Razorpay Privacy • Terms of Service |
| ZeptoMail (Zoho Corporation) | Transactional email routing for contact form inquiries, order alerts, and service notices. | India / Global • Zoho Privacy Policy • Terms of Service |
| WhatsApp (Meta Platforms, Inc.) | Direct customer communication channel initiated exclusively upon user activation. | USA / Global • WhatsApp Privacy |
| ResellerClub (LogicBoxes / Newfold) | ICANN-accredited domain registrar partner for domain registration and WHOIS records. | India / Global • Legal Agreements |
| Zata.ai (NeevCloud Technologies Pvt Ltd) | S3-compatible object-storage backend with Mumbai and Indore endpoints and provider-documented 3x replication. | India (Mumbai & Indore) • Zata Privacy Policy • Terms of Service |
| Monarx Security (Monarx, Inc.) | Malware scanning and, where licensed and enabled, active remediation controls on supported hosting plans. | USA / Global • Monarx Privacy Policy • Terms of Service |
| Titan (Nova Software Inc.) | Enterprise business email hosting, webmail interface, calendar sync, and anti-spam filtering. | USA / Global • Titan Privacy Policy • Terms of Service |
7. Data Security Standards
We implement robust technical and organizational safeguards:
- Encryption in Transit & at Rest: All web traffic and API sessions are enforced over HTTPS (TLS 1.3/1.2). Sensitive billing credentials are tokenized by PCI-DSS certified processors.
- Access Governance: Internal administrative access to customer infrastructure is restricted via multi-factor authentication (MFA) and least-privilege role boundaries.
- No Absolute Guarantee: While we enforce enterprise-grade defense-in-depth security, no internet transmission or electronic storage mechanism can be guaranteed 100% impenetrable.
8. Data Retention, Updates, and User Rights
- Account Data Updating: You can review and update your name, billing address, or phone number anytime via the client billing area or by writing to hello@hubforhost.com.
- Statutory Retention Requirements: Billing ledgers, tax invoices, and registry records are retained for the minimum period mandated by Indian corporate, tax, and cyber regulations.
- Account Deletion: Upon service termination and settlement of pending balances, hosted server files and databases are purged in accordance with our standard retention cycles.
9. Relationship to Terms of Service
This Privacy Policy is incorporated by reference into our Terms of Service and our Acceptable Usage Policy. Your access to and continued use of our cloud hosting infrastructure, cPanel dedicated servers, domain registrations, and network services constitutes agreement to both this Policy and our Terms of Service. In the event of any conflict regarding commercial service provision or resource allowances, the Terms of Service govern.
10. Privacy Contact Desk
If you have questions regarding this Privacy Policy, wish to exercise data rights, or have a security inquiry, please contact our privacy desk: