Privacy policy

Pagecraft holds your account details and the content you write. That is nearly all of it. This page says exactly what we keep, who else touches it, and how to make us delete it.

Last updated 30 August 2026

We do not run analytics, advertising or tracking of any kind on this website, we set no third-party cookies, and we have never sold or shared personal data for anyone else’s marketing. There is no opt-out because there is nothing to opt out of.

01Who is responsible

Pagecraft is operated by TO BE FILLED IN, and we are the data controller for everything described here. Our full address and phone number are on the contact page.

For anything about your data, write to hello@mypagecraft.com.

02What we collect

  • Your account: name, email address, and a password. The password is stored only as a bcrypt hash — we cannot read it, and a database leak would not reveal it. We also record when you confirmed your email address and whether you have finished the getting-started tour.
  • What you create: your websites, their pages and sections, the words in them, and the photos and files you upload. This is your content; we hold it so the CMS can serve it.
  • Billing: your Razorpay subscription and customer identifiers, which plan you are on, how many websites it covers, and when the period ends. Card numbers never reach our servers — you enter them on Razorpay’s own checkout.
  • Email you send us. Support messages stay in our mailbox so we can answer and refer back to them.

We do not ask for a date of birth, a gender, a postal address, or anything else we have no use for. If a field is not in the list above, we are not collecting it.

03IP addresses, and why we keep them so briefly

Every signed-out page — signing in, signing up, resetting a password — is rate limited by IP address, because without that anyone could guess passwords or send confirmation emails to strangers in bulk. Those counters live in the server’s memory, expire within minutes, and are never written to the database. We keep no access log tied to your account.

04Cookies

One cookie: a sign-in token, marked httpOnly so no script on the page can read it, scoped to the sign-in routes alone. It is what keeps you signed in, and it is strictly necessary — clear it and you are simply signed out.

There are no analytics cookies, no advertising cookies, and no third-party cookies on the public pages. The one exception is the billing screen: when you open the payment window, Razorpay’s checkout sets its own cookies to process your payment, governed by their privacy policy.

05Content you publish is public — by design

The point of Pagecraft is to serve your published content to your live website, over a public read-only API. Anything you publish is public. Drafts are not: the public API serves only published content, and previews need a short-lived token.

Photos and files you upload are served from a content-delivery network at unguessable but public URLs. Anyone given the link can open it, and it is not protected by your sign-in. Do not upload anything through the media library that you would not be willing to publish.

06Why we are allowed to hold it

  • To provide the service — your account and content exist because you asked us to run a CMS for you.
  • To take payment — billing data, because you bought a subscription.
  • To keep accounts secure — rate limiting and one-shot links, which is our legitimate interest and yours.
  • Because the law says so — payment and tax records we are required to keep.

07Who else sees it

Only the companies that make the product work. Each is bound to use the data solely to provide their service to us.

CompanyWhat forWhat they see
Razorpay Software Private LimitedPayments and subscriptionsName, email address, payment details you enter on their checkout
MongoDB AtlasThe database holding accounts and website contentAccount details and everything you create in the CMS
Cloudflare R2Storing and delivering photos and files you uploadThe files themselves and their filenames
Our email provider (SMTP)Confirmation, password-reset and billing emailsYour name and email address

Beyond these, we disclose personal data only where the law compels us to. We have never sold personal data and will not.

08How long we keep it

  • Your account and content: for as long as your account is open.
  • After you close your account or a subscription ends, content stays for at least 30 days so nothing is lost to a billing accident, and may be removed afterwards.
  • Confirmation and password-reset links: they expire within hours, are single-use, and are stored only as a one-way hash. A used link is spent immediately.
  • Payment records: as long as tax and accounting law requires, which is longer than the rest.

Deleting a website from the dashboard removes its pages, sections, access tokens and the stored files themselves — including the copies held by our storage provider. There is no soft delete and no undo.

09How it is protected

  • Passwords are bcrypt hashes. Nobody at Pagecraft can read yours.
  • Everything travels over HTTPS.
  • Sign-in tokens are short-lived, and changing your password invalidates every session on every device at once.
  • Confirmation and reset links are single-use, and only a one-way hash of each is stored.
  • One account can never read another account's websites, content or files. That rule is enforced on every request and covered by our tests.

No system is perfect. If we discover a breach affecting your personal data, we will tell you and the relevant authority without undue delay, and we will tell you what actually happened rather than the smallest true thing.

10What you can ask us to do

  • Get a copy of everything we hold about you.
  • Correct anything wrong — your name and email are editable in the dashboard already.
  • Delete your account and its content. You can do this yourself once your websites are deleted; ask us if you would rather we did it.
  • Object to how we are using something, or ask us to restrict it.
  • Take your content elsewhere. It is structured data and you can export it at any time.

Email hello@mypagecraft.com and we will act within 30 days. There is no charge. If you are unhappy with how we have handled it, you may complain to your data protection authority.

11If you are someone else's client

Whoever owns a Pagecraft account controls the websites on it, and often shares that sign-in with the developer who built the site. Anyone holding those details can see and change everything on those websites. Share your sign-in only with people you trust, and change your password when that stops being true — it signs every other device out at once.

12Children

Pagecraft is a business tool and is not directed at children. We do not knowingly collect data from anyone under 18. If you believe a child has given us personal data, tell us and we will remove it.

13Changes to this policy

If we change how we handle personal data, we will update this page and move the date at the top. Where a change is significant, we will email you rather than hope you notice.