Privacy Policy
Last updated: February 20, 2026
This Privacy Policy explains how HostingITrust (“we,” “us,” “our”) collects, uses, shares, and protects personal information when you visit hostingitrust.com, contact us, or use our services such as Managed WordPress Hosting, WordPress Maintenance & Care Plans, WordPress Consultation, Speed Optimization, Security & Malware Cleanup, Backups & Recovery, and Site Migration.
HostingITrust is a Ray Creations brand.
1) Who we are
Data Controller (for this website and our business operations):
HostingITrust (Ray Creations brand)
Privacy contact: [email protected]
Address:
Ray Creations,
Berger Delhi One,
Sector 16B, C-001/A2,
Gautam Buddha Nagar,
Noida, UP, India – 201301
If you are a client and we provide hosting/maintenance/one-off services for your WordPress site, we may also process personal data on your behalf as a service provider / processor (for example, when handling backups, troubleshooting, or security incidents).
2) Information we collect
A) Information you provide directly
We may collect information you submit via forms, email, chat, phone, or during onboarding, such as:
- Name, email address, phone/WhatsApp number
- Company name, website URL, and service requirements
- Support requests, messages, and attachments
- Access details you choose to share for support (e.g., WordPress admin access, SFTP, hosting panel access)
- Billing-related information needed for invoicing and service administration (we do not ask you to email us full card details)
B) Information collected automatically (website usage & logs)
When you visit our site, we may automatically collect:
- IP address, browser type, device information
- Pages visited, time spent, referring URLs
- Approximate location (derived from IP)
- Security and server logs used to protect our website and services
We use Google Analytics to understand how visitors use our website and to improve content and performance.
C) Client website data (when we manage your WordPress site)
If you purchase services from us, we may process data contained in your WordPress site, depending on the job. This can include:
- Website content (pages, posts, media)
- Site user accounts and metadata (e.g., admin/editor accounts)
- Form submissions stored in WordPress (if your site stores them)
- WooCommerce customer/order data (if applicable)
- Files and database copies created as part of backups or migrations
- Administrative user accounts we create or maintain for service delivery (e.g., a HostingITrust/Ray Creations support admin).
- Site management activity required to deliver services (updates, backups, monitoring, troubleshooting).
- Logs/metadata related to maintenance actions (as available in WordPress / hosting / management tools).
You (as the site owner) typically decide what data your site collects from your users. We handle that data only to deliver the services you request.
3) Client account records (client information plugin)
To deliver services and manage renewals, we plan to use a software/plugin inside our website to store client account information necessary for service delivery.
This system may store:
- Client name, company name, email, phone/WhatsApp
- Website/domain details, hosting/service plan, renewal dates
- Support history, service notes, and operational details required for delivery
- Billing history/status (but not full payment card details)
We aim to follow data-minimization principles—only storing what is necessary for delivering the service and managing the account. If you prefer that we do not store certain optional details, contact us and we will discuss alternatives.
4) How we use personal information
We use personal information to:
- Provide and manage services (hosting, maintenance, backups, migrations, security cleanup, performance work)
- Communicate with you (quotes, onboarding, support, service updates)
- Maintain security (monitoring, preventing abuse/fraud, incident response)
- Improve our website and content using analytics
- Maintain internal records (billing administration and operational documentation)
5) Cookies, analytics, and tracking
A) Google Analytics
We use Google Analytics to measure website traffic and understand how visitors interact with pages. This may involve cookies or similar technologies that collect usage data (such as pages visited, session information, and device/browser details).
B) Cloudflare (security, performance, and reliability)
We use Cloudflare as a security and performance layer (for example: CDN, DDoS protection, bot protection). Cloudflare may set cookies necessary for security features and may process certain technical data (like IP addresses) to provide these protections.
C) Mailchimp signup form (email marketing)
We use Mailchimp for email marketing. If you submit your email via the signup form in our footer, Mailchimp processes that information for subscription management and email delivery.
Your choices
- You can control cookies through your browser settings and (if enabled on the site) through our cookie preference/banner tool.
- If you disable certain cookies, some features may not function as intended.
6) Payments (PayPal)
At present, we may request payment using PayPal payment links (typically shared by email, and potentially via the website in the future). PayPal processes personal information to facilitate payment transactions under its own privacy policy.
We do not store full payment card details on our website.
7) How we share information
We do not sell personal information.
We may share information with trusted service providers only when necessary to operate our business and deliver services, such as:
- Cloudflare (site security/performance)
- Google Analytics (website analytics)
- Mailchimp (email marketing and newsletter delivery)
- PayPal (payment processing)
- Hosting/infrastructure partners (servers located in the US and/or EU depending on deployment)
- Security, monitoring, backup, and support tools used to deliver services
- ManageWP (site management tool used for updates, monitoring, and backups/restore workflows)
We may also disclose information if required by law, to enforce agreements, or to protect rights, safety, and security.
8) International data transfers
Because we serve clients globally and may use service providers and infrastructure in the US and EU, personal data may be processed internationally.
Where required, we rely on appropriate safeguards for cross-border transfers (for example, contractual safeguards used by major providers and industry-standard transfer mechanisms).
9) Data retention
We retain personal data only for as long as necessary for the purposes described in this policy, including:
- Active client relationship management and support
- Billing, accounting, and compliance obligations
- Security monitoring and incident investigation
Examples (may vary by service and configuration):
- Marketing subscribers: retained until you unsubscribe or request deletion
- Backup retention: based on the plan/configuration (e.g., 30/60/90 days for offsite backups, or shorter retention for server-level backups)
- Offsite backups may be stored with third-party backup tools used for service delivery, based on plan configuration.
- Client account records: retained for the duration of service and for a reasonable period afterward for compliance and operational continuity
10) Security
We implement reasonable technical and organizational measures designed to protect personal data, including:
- Access controls and least-privilege permissions
- Secure authentication practices for admin systems
- Monitoring and logging for suspicious activity
- Encryption in transit (TLS/SSL) where supported
No system is 100% secure, but we take security seriously—especially because we work in hosting and WordPress maintenance.
11) Your rights
Depending on your location, you may have rights to:
- Access, correct, or delete your personal data
- Object to or restrict certain processing
- Withdraw consent where processing is based on consent
- Request a copy of certain data (data portability, where applicable)
To exercise these rights, contact us at [email protected].
If your request relates to data collected on your own WordPress website (for example, your customers/users), you may also need to handle it as the site owner/controller. We can support you where we act as a service provider/processor.
12) Children’s privacy
Our services and website are not directed to children, and we do not knowingly collect personal information from children.
13) Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page.
14) Contact us
For privacy questions or requests:
Email: [email protected]
Address:
Ray Creations,
Berger Delhi One,
Sector 16B, C-001/A2,
Gautam Buddha Nagar,
Noida, UP, India – 201301