1. Who this policy covers
This Privacy Policy explains how VDSROOT handles personal data when people visit the website, create an account, place an order, request support or use infrastructure services. VDSROOT acts as controller for account, billing, website and support data. Customers generally remain controllers of personal data they place on their servers.
2. Data we collect
We may collect identity and contact details, account credentials, billing address, tax information, order and invoice history, support communications, verification documents where required, IP addresses, device and browser data, login and security logs, cookie preferences and technical service metadata.
Payment card information is normally processed by the selected payment provider; VDSROOT may receive a token, payment status and limited card metadata rather than the complete card number.
3. Why we use data
Data is used to provide and secure services, process orders and payments, verify customers, prevent fraud and abuse, communicate about services, meet legal obligations, maintain records, improve the website and establish or defend legal claims. Processing is based on contract, legal obligation, legitimate interests and consent where required.
4. Sharing and processors
Data may be shared with data-centre and infrastructure suppliers, payment processors, fraud-prevention providers, email and support providers, accountants, professional advisers and authorities when required by law. Each recipient receives only information reasonably needed for its role.
5. International transfers
Where data is transferred outside the European Economic Area or another protected jurisdiction, VDSROOT will use an available lawful transfer mechanism and appropriate safeguards where required.
6. Retention and security
Data is retained only for as long as required for service delivery, security, accounting, taxation, dispute resolution and legal compliance. Retention periods differ by data type and jurisdiction.
VDSROOT applies access controls, encryption where appropriate, logging and operational safeguards, but no online service is completely risk-free. Customers must protect their credentials and server data.
7. Cookies and analytics
The website may use necessary cookies for login, cart, checkout, security and preferences. Optional analytics or marketing cookies should be enabled only after the required consent mechanism is configured.
8. Your rights
Depending on applicable law, individuals may request access, correction, deletion, restriction, portability or objection, and may withdraw consent. Requests can be sent to admin@vdsroot.com. Identity verification may be required before a request is completed.
Individuals may also complain to the competent data-protection authority.
9. Contact and updates
Privacy questions should be sent to admin@vdsroot.com. This policy may be updated when services, suppliers or legal obligations change.