GDPR & privacy
How the Setyenv portal handles personal data in compliance with GDPR and similar privacy regulations.
Data we collect
| Data | Purpose | Retention |
|---|---|---|
| Email address | Account identification, license delivery, support | Until account deletion |
| License keys | Product entitlement tracking | Duration of license + legal requirements |
| Site fingerprints | Activation counting (hashed, not the URL) | Duration of license |
| Payment history | Legal/financial records | 7 years (legal requirement) |
| Support tickets | Customer support history | 3 years after resolution |
| Telemetry pings | Compatibility tracking (hashed, no PII) | 90 days |
Data we do NOT collect
- No workflow definitions
- No agent conversations
- No record data
- No API keys
- No WordPress admin credentials
- No browsing behaviour tracking
- No third-party analytics scripts
Your rights
- Access: Request a copy of all your personal data via support ticket
- Rectification: Update your email and account details in the dashboard
- Erasure: Request account deletion. Licenses are revoked, personal data is removed, payment records are anonymised (legal retention applies)
- Portability: Export your license keys and order history
Cookie usage
The portal uses only functional cookies:
- Session cookie: Maintains login state (essential)
- CSRF token: Security (essential)
- No tracking, advertising, or analytics cookies
Subprocessors
| Service | Purpose | Data shared |
|---|---|---|
| Stripe | Payment processing | Email, payment amount (NOT card data) |
| Zoho SMTP | Transactional email delivery | Email address, email content |