Legal & Privacy

Privacy Policy

Your privacy matters to us. This page explains exactly what personal data Softileo collects, why we collect it, how long we keep it, and the rights you have over it — in plain English.

Updated March 1, 2025 GDPR CCPA UK DPA
6
Data Categories
6
Your Rights
0
Data Sold
72h
Response Time
01 — Who We Are

Who We Are

Softileo is a custom software development company specialising in Shopify development, WordPress solutions, AI automation, and bespoke web applications. We have delivered 445+ projects globally over 6+ years of operation.

For the purposes of data protection law, Softileo is the data controller — meaning we determine how and why your personal data is processed.

Registered Address: 1st Floor, 4G Plaza, Lahore–Sargodha Rd, near Sheikhoo Steel, Sargodha, 40100, Pakistan  |  Email: hello@softileo.com
02 — Data We Collect

Data We Collect

We only collect data that is necessary for the purpose for which it is collected. Below are the six categories of personal data we may process:

Identity & Contact

  • Full name
  • Email address
  • Phone number
  • Company name
  • Job title

When you fill in a contact form, request a quote, or book a consultation.

Usage & Analytics

  • Pages visited
  • Time on site
  • Referring URL
  • Browser type
  • Device type

Automatically via cookies and analytics tools when you browse our site.

Technical & Location

  • IP address
  • Country / region
  • Timezone
  • Operating system
  • Screen resolution

Collected automatically to improve performance and diagnose issues.

Communication

  • Messages you send us
  • Support ticket history
  • Email correspondence
  • Chat transcripts

When you contact us via email, live chat, or our contact form.

Transaction & Project

  • Project briefs
  • Invoice records
  • Payment status
  • Contract details
  • Deliverable files

When you engage Softileo for a paid service or sign a project agreement.

Marketing Preferences

  • Newsletter subscription status
  • Email open / click data
  • Communication opt-in records

When you subscribe to our newsletter or opt in to marketing communications.

03 — How We Use Your Data

How We Use Your Data

We use your personal data only for specific, defined purposes. We never use your data in ways you would not reasonably expect.

Respond to Enquiries

Reply to quote requests, consultation bookings, and support messages.

Deliver Services

Manage your project, share deliverables, and communicate progress.

Process Payments

Issue invoices and maintain accurate financial and billing records.

Improve Our Site

Analyse traffic patterns to fix issues and improve the user experience.

Send Updates

Email newsletters and product updates — only with your explicit consent.

Legal Compliance

Meet our legal obligations and enforce our contractual rights where needed.

05 — Data Sharing

Data Sharing

We do not sell, rent, or trade your personal data. We share data only in the following limited circumstances:

Service Providers

We use trusted third-party tools (Google Analytics, HubSpot, payment processors) bound by contracts to process data only on our instructions.

Legal Requirements

We may disclose data where required by law, a court order, or a regulatory authority in response to a valid legal request.

Business Transfers

In a merger, acquisition, or asset sale, data may transfer to the successor entity. You will be notified in advance.

Protection of Rights

We may share data to investigate, prevent, or act against fraud, security threats, or violations of our Terms of Service.

All third-party processors we use are GDPR-compliant and bound by Data Processing Agreements (DPAs). We do not transfer personal data outside countries with adequate data protection standards without appropriate safeguards in place.
06 — Data Retention

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes it was collected for, including legal, accounting, or reporting requirements.

Data TypeRetention PeriodReason
Contact / enquiry data2 yearsTo follow up and maintain relationship history
Client project data5 yearsContractual obligations and dispute resolution
Financial / invoice records7 yearsLegal tax and accounting requirements
Analytics data26 monthsPerformance benchmarking (Google Analytics default)
Newsletter subscribersUntil unsubscribedConsent-based — removed immediately on request
Support / chat logs1 yearQuality assurance and issue tracking

When data is no longer needed, it is securely deleted or anonymised so it can no longer be linked to you personally.

07 — Your Rights

Your Rights

Under GDPR, CCPA, and applicable data protection laws, you have the following rights over your personal data. To exercise any of these, contact us at hello@softileo.com.

Right to Access

Request a copy of all personal data we hold about you.

Right to Rectification

Ask us to correct any inaccurate or incomplete personal data.

Right to Erasure

Request deletion of your personal data (the "right to be forgotten").

Right to Restrict

Ask us to pause processing your data in certain circumstances.

Right to Portability

Receive your data in a structured, machine-readable format.

Right to Object

Object to processing based on legitimate interests or direct marketing.

We respond to all data rights requests within 30 days. In complex cases we may extend by a further 60 days and will notify you. There is no charge for exercising your rights.
08 — Security

How We Protect Your Data

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction.

TLS Encryption

All data in transit is encrypted using TLS 1.2+.

Encrypted Storage

Data at rest is encrypted using AES-256 standard.

Access Controls

Only authorised personnel can access personal data.

Regular Backups

Automated daily backups with secure off-site storage.

Vulnerability Scans

Routine security audits and penetration testing performed.

Breach Notification

Notified within 72 hours if a breach affects your rights.

No method of transmission over the internet is 100% secure. While we strive to use commercially acceptable means to protect your data, we cannot guarantee absolute security.

10 — Children's Privacy

Children's Privacy

Our services are not directed to individuals under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us immediately at hello@softileo.com and we will delete it promptly.

11 — Policy Updates

Updates to This Policy

We review and update this Privacy Policy periodically. When we make material changes we will:

  • Update the "Last Updated" date at the top of this page
  • Display a prominent notice on our website
  • Notify registered users by email for significant changes
This policy was last updated on March 1, 2025 and is effective as of that date.
12 — Contact Us

Questions? Contact Us

If you have questions about this Privacy Policy or want to exercise your data rights, contact our Privacy Team:

Address
1st Floor, 4G Plaza, Lahore–Sargodha Rd, near Sheikhoo Steel, Sargodha, 40100, Pakistan
Response Time
Within 72 hours
If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority — for example, the ICO in the UK or the relevant Data Protection Authority in your EU member state.
Privacy First

Questions About Your Privacy?

Our privacy team replies within 72 hours. A real person will respond — not a bot.

Email Privacy Team

We never sell your data. Ever.

Call Now Consultation Request Quote