Privacy Policy
Last updated: September 3, 2026
Cloud10 Solutions LLC · 1309 Coffeen Avenue STE 1200, Sheridan, WY 82801 · cloud10solutionsllc24@gmail.com
1. What we collect
Account data: your email and sign-in details (including Google sign-in, if you use it). Site data: the content you create — pages, images, products, services, posts, and settings. Business records on your behalf: your customers' orders, bookings, messages, reviews, and newsletter signups, collected through your site.
Domain registration data: if you register a domain, we collect the registrant contact details you provide — name, postal address, phone number, and email — and pass them to our domain registrar and the relevant registry to complete the registration. Some of this may be stored in public or ICANN-required records (WHOIS/RDAP), or shown in privacy-protected form, depending on the domain.
Payment and seller data: payments are handled by Stripe. When you sell through your site, Stripe collects the identity, business, and bank details it needs to verify you and pay you out (between you and Stripe under Stripe's privacy policy). When your customers pay, their card details go directly to Stripe. We don't store full card numbers.
AI prompt content: when you use AI features, the text and details you submit (your prompts and the content you ask us to draft or import) are sent to our AI provider, Anthropic, to generate your result.
Texts and appointment reminders: to send booking confirmations, reminders, and (where you have the marketing add-on) promotional texts, we process your customers' phone numbers and the content of those messages, along with their opt-in and opt-out status. Replies to those texts are stored so you can read and answer them in your inbox.
Staff pay records: if you use time tracking and pay, we store the hourly rates, commission percentages, and clock-in and clock-out times you enter for the people who work with you. We do not calculate or file taxes, and we do not collect their bank details.
Push notifications: if you turn on notifications, we store the notification token your browser or device issues, so we can send you an alert when a booking lands. It identifies a device, not a person, and deleting the app or turning notifications off invalidates it.
Support conversations: if you use the live chat, your messages and the name and email attached to your account are processed by our chat provider so a real person can answer you.
Usage: basic page-view analytics for your published site and for the platform.
2. How we use it
To run the platform: build and host your sites, process payments, register domains, send appointment reminders and the texts and emails you ask us to send, deliver notifications, generate AI drafts you request, and improve the service.
We don't sell your personal information. We do use advertising measurement on our own marketing pages: when someone signs up, we send a one-way encrypted (hashed) form of the email address to Google Ads and Meta so those platforms can tell us which advert brought them, and so we stop paying to advertise to people who already signed up. Under some laws — California's in particular — that counts as "sharing" personal information for cross-context behavioral advertising, so we say so plainly rather than claim otherwise. This applies to visitors to our own marketing pages, never to your customers' data or to anything collected through the site you build.
3. Who processes it
We rely on trusted processors: Google Cloud (hosting and storage) and Google/Cloud Domains (domain registration), Stripe (payments and payouts), Anthropic (AI generation), Resend (email delivery), Twilio (text messages and appointment reminders), tawk.to (live chat support), Google Ads and Meta (advertising measurement on our own marketing pages, as described above), and stock-photo providers (Pexels/Pixabay) when fetching images you request. These providers may process data in the United States and other countries; where required we rely on appropriate safeguards for those transfers.
4. Who's responsible for your site visitors' data
For information your published site collects from its visitors — orders, bookings, contact-form messages, newsletter signups, and analytics — the business owner is the data controller and Get Booked HQ acts only as a processor/service provider, handling that data on the owner's instructions to run the site. If you're a site owner, you're responsible for having a lawful basis to collect this data, posting your own privacy notice (the platform generates a starter one), and honoring your visitors' privacy requests. If you're a visitor to a site built on Get Booked HQ and want to access or delete your data, contact the business that runs that site; we'll assist that business as its processor.
5. Cookies and analytics
Our own marketing pages carry advertising and session-recording tags (Google Ads, the Meta pixel, and Microsoft Clarity) so we can measure which adverts work and watch for pages people get stuck on. They are not present in the app you sign in to, and they are never added to the site you build. The platform uses session cookies to keep you signed in. Published sites include a lightweight analytics pixel that records anonymous, aggregate visit data (such as page views, approximate location, and referrer) so the site owner can see basic traffic stats. This pixel is set on the business owner's behalf; owners are responsible for disclosing it in their own site's privacy notice and, where required, obtaining visitor consent — the platform provides a starter cookie-consent banner to help.
6. Retention & deletion
Deleted sites are retained for a short grace period (currently 14 days) and then permanently removed. We keep account information while your account is open and for a reasonable period afterward to meet legal, tax, and accounting obligations. Payment and payout records are retained by Stripe under its own rules, and domain-registration records are kept as long as the domain is registered and as ICANN requires. Backups containing deleted data cycle out within about 90 days.
7. Your rights
You can access and update your account information in your dashboard, and you can delete your account at any time by emailing or texting us (see Support). Deleting your account removes your sites and personal data from active systems after the grace period above, except records we must keep for legal or financial reasons. Depending on where you live (for example under GDPR or the CCPA/CPRA), you may also have rights to access, correct, port, restrict, or object to processing of your data, and to complain to a data-protection authority.
8. Children
Get Booked HQ is for businesses and isn't directed to children under 16, and we don't knowingly collect their personal information. If you run a site that collects data from children, you're responsible for complying with laws like COPPA and GDPR-K.
9. Security
We use encryption in transit (TLS) and at rest, access controls, and reputable infrastructure providers to protect your data. No system is 100% secure, and we can't guarantee absolute security.
10. Contact
Privacy questions or requests: cloud10solutionsllc24@gmail.com · Cloud10 Solutions LLC, 1309 Coffeen Avenue STE 1200, Sheridan, WY 82801.