Privacy Policy
Last updated: April 3, 2026
1. Introduction
BackHAUS ("we," "us," or "our") operates the website backhaus.tech (the "Site"). This Privacy Policy explains how we collect, use, and protect your personal information when you use our Site and services.
2. Information We Collect
Account Information: When you create an account, we collect your name, email address, and a hashed version of your password. We never store plaintext passwords.
Purchase Information: When you purchase a product, payment processing is handled by Stripe. We receive your email address and transaction details but do not store credit card numbers.
License Data: We store license keys, associated site URLs for activation, and license status information.
Contact Submissions: When you use our contact form, we collect your name, email address, and message content.
Usage Data: We may collect standard server logs including IP addresses, browser type, and pages visited. Our site is proxied through Cloudflare, which may collect additional analytics data per their privacy policy.
3. How We Use Your Information
- To create and manage your account
- To process purchases and deliver license keys
- To validate and manage software licenses
- To respond to your contact form submissions
- To send transactional emails (purchase receipts, license keys, password resets)
- To prevent abuse and enforce rate limits
4. Third-Party Services
We use the following third-party services that may process your data:
- Stripe — payment processing (stripe.com/privacy)
- Mailgun — transactional email delivery (mailgun.com/legal/privacy-policy)
- Cloudflare — DNS, CDN, and security services including Turnstile CAPTCHA (cloudflare.com/privacypolicy)
5. Data Retention
We retain your account and license data for as long as your account is active or as needed to provide services. Contact form submissions are retained until deleted. You may request deletion of your account and associated data by contacting us.
6. Data Security
We implement appropriate security measures including password hashing (bcrypt), encrypted connections (HTTPS/TLS), HTTP-only authentication cookies, and rate limiting on sensitive endpoints. However, no method of transmission over the internet is 100% secure.
7. Your Rights
You have the right to access, correct, or delete your personal data. You may update your account information from your dashboard or contact us to request data export or deletion.
8. Cookies
We use a single HTTP-only authentication cookie (auth_token) to maintain your login session. We do not use tracking cookies or third-party advertising cookies. Cloudflare may set cookies for security and performance purposes.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated revision date.
10. Contact
If you have questions about this Privacy Policy, please reach out via our contact form.