Privacy Policy

Effective Date: February 19, 2026Version: 1.0

1. Our Approach to Privacy

Dirty Digital Co (“Dirty Digital Co,” “we,” “our,” or “us”) operates a boutique web consulting firm serving tradesmen and blue collar businesses, available via our website at dirtydigitalco.com (the “Dirty Digital Co Service” or “Service”). Our Service is designed to help contractors, plumbers, electricians, roofers, HVAC technicians, landscapers, and other skilled tradesmen establish and maintain a professional online presence. Services include website design, content writing, search engine optimization (SEO), digital strategy, hosting, and ongoing consulting.

We recognize that the personal and business information you entrust to us is important to you and your livelihood. Protecting your privacy is not merely a legal obligation - it is foundational to the trust upon which our Service is built. This Privacy Policy (“Policy”) describes how we collect, use, disclose, store, and protect your personal information when you access or use the Dirty Digital Co Service.

By creating an account, accessing, or using the Service in any manner, you acknowledge that you have read, understood, and agree to the collection, use, and disclosure of your information as described in this Policy. If you do not agree with any part of this Policy, you must discontinue use of the Service immediately. This Policy should be read in conjunction with our Terms of Service, which govern your overall use of the Dirty Digital Co Service.

2. Personal Information We Collect & How We Use It

We collect personal information through several channels in order to provide, maintain, and improve the Dirty Digital Co Service. The categories and methods of collection are described below.

2.1 Information You Provide Directly

When you register for an account, interact with the Service, or contact us, you may provide the following types of information:

  • Contact Information: Your full name, email address, phone number, business name, and mailing address.
  • Trade & Industry: Your trade or profession (e.g., plumbing, electrical, roofing, HVAC, landscaping), service areas, and years of experience.
  • Project Details: Information about your website project, including design preferences, branding materials (logos, color schemes), desired features and functionality, and any specific requirements for your website.
  • Website Content: Text, images, testimonials, service descriptions, portfolio photos, and any other content you provide for use on your website.
  • Billing & Payment Information: Billing name, billing address, and payment method details. Payment card information is processed securely by our third-party payment processor and is not stored on Dirty Digital Co servers.

2.2 Information Collected Automatically

When you access or use the Service, we automatically collect certain information about your device and usage patterns, including:

  • Device Information: Device type, operating system and version, browser type and version, screen resolution, and unique device identifiers.
  • IP Address: Your Internet Protocol address, which may be used for approximate geographic location determination, security monitoring, and fraud prevention.
  • Usage Data: Pages viewed, features accessed, clickstream data, session duration, referring and exit URLs, and interaction patterns within the Service.
  • Cookies & Similar Technologies: We use essential cookies to maintain session state and authentication. We may also use analytics cookies (such as those provided by Google Analytics or similar services) to understand how users interact with the Service. You may manage cookie preferences through your browser settings; however, disabling essential cookies may impair the functionality of the Service.
  • Analytics: We use third-party analytics services, including Vercel Analytics and Google Analytics, to collect aggregated usage data that helps us understand performance, identify areas for improvement, and optimize the user experience.

2.3 How We Use Your Information

We use the personal information we collect for the following purposes:

  • Website Design & Development: To design, build, and maintain your website based on the information, content, and preferences you provide, which is the primary purpose of the Service.
  • Account Administration & Support: To create and manage your account, authenticate your identity, provide customer support, and respond to your inquiries.
  • Service Improvement: To analyze usage patterns, diagnose technical issues, develop new features, and improve the overall quality, reliability, and security of the Service.
  • Communications: To send you Service-related notifications, account alerts, project updates, and (with your consent) informational communications about the Service. You may opt out of non-essential communications at any time.
  • Security & Fraud Prevention: To detect, prevent, and respond to fraud, unauthorized access, and other potentially harmful activities.

Dirty Digital Co does not sell, trade, rent, or otherwise commercialize your personal information for marketing purposes. We do not share your personal data with third-party advertisers. Your personal and business information is used exclusively in connection with the provision of the Dirty Digital Co Service as described in this Policy and our Terms of Service.

3. Disclosure of Your Personal Information

We understand the importance of the information entrusted to us. We limit the disclosure of your personal information to the following circumstances:

3.1 Service Providers & Subprocessors

We engage trusted third-party service providers and subprocessors who assist in operating and maintaining the Service, including cloud hosting providers, content management systems (CMS), domain registrars, payment processors, email delivery services, and customer support platforms. These providers are contractually bound to use your personal information solely for the purpose of providing services to Dirty Digital Co and are required to maintain appropriate security measures consistent with this Policy.

3.2 Hosting & CMS Tools

When we build and host your website, certain data (such as your business name, contact information, and website content) may be stored on or transmitted through third-party hosting platforms and content management systems. These tools are selected for their reliability and security, and your data is handled in accordance with their respective privacy policies and our contractual agreements with them.

3.3 Legal Compliance & Law Enforcement

We may disclose your personal information if required to do so by law, or if we have a good-faith belief that such disclosure is reasonably necessary to: (a) comply with a legal obligation, subpoena, court order, or other legal process served on Dirty Digital Co; (b) protect and defend the rights, property, or safety of Dirty Digital Co, our users, or the public; or (c) investigate or prevent suspected illegal activity, fraud, or violations of our Terms of Service.

3.4 Business Transactions

In the event that Dirty Digital Co is involved in a merger, acquisition, reorganization, asset sale, bankruptcy, or similar business transaction, your personal information may be transferred as part of that transaction. In such circumstances, we will provide notice to affected users before personal information is transferred and becomes subject to a different privacy policy. Any acquiring entity will be required to honor the commitments made in this Policy with respect to personal information collected prior to the transfer.

3.5 Anonymized & Aggregated Data

We may create anonymized, de-identified, or aggregated data sets derived from personal information collected through the Service. Such data cannot reasonably be used to identify any individual user. We may use and disclose this anonymized data for research, analytics, service improvement, and other lawful purposes without restriction.

4. Data Storage, Retention & Deletion

4.1 Storage Infrastructure

Your personal information is stored on secure, encrypted servers operated by our cloud hosting providers within the United States. All data at rest is encrypted using AES-256 encryption. All data in transit between your device and our servers is protected using TLS 1.2 or higher encryption protocols.

4.2 Retention Period

We retain your personal information for the duration of your active engagement with the Dirty Digital Co Service. Upon termination of your account (whether initiated by you or by Dirty Digital Co in accordance with our Terms of Service), your personal information, including account data, project data, website content, and billing records, will be permanently deleted from our systems within thirty (30) calendar days of account termination, unless retention is required by applicable law or regulation.

4.3 Data Export & Portability

Prior to account termination, you may request a complete export of your data in a commonly used format. Dirty Digital Co can provide your website files, content, design assets, and associated account data upon request. We recommend requesting your data before initiating account closure.

4.4 Data Purging

Upon deletion of your account, all website content, design assets, project files, and associated metadata are permanently purged from our systems, including backup systems, within the thirty (30) day deletion window described above. This process is irreversible.

5. Data Security

We implement and maintain commercially reasonable administrative, technical, and physical security measures designed to protect your personal information from unauthorized access, disclosure, alteration, and destruction.

  • Access Controls & Role-Based Permissions: Access to personal information within the Service is governed by role-based access controls. Users may only access data associated with their own account and any projects for which they have been explicitly granted permission.
  • Audit Logging: We maintain comprehensive audit logs that record access to and modifications of personal data within the Service. These logs are used for security monitoring, compliance, and incident investigation purposes.
  • Employee Access: Dirty Digital Co employee access to user personal information is strictly limited to personnel who require such access to perform their job functions (e.g., web development, customer support, system administration). All employees with access to personal data are subject to confidentiality obligations.
  • Regular Security Assessments: We conduct regular security assessments, including vulnerability scanning and penetration testing, to identify and remediate potential security weaknesses in our systems and infrastructure.
  • Breach Notification: In the event of a data breach that compromises the security, confidentiality, or integrity of your personal information, Dirty Digital Co will notify affected users within seventy-two (72) hours of confirming the breach, in accordance with applicable state and federal notification requirements. Notification will include a description of the breach, the types of information involved, and recommended steps to protect yourself.
  • Continuous Improvement: Dirty Digital Co is committed to continuously improving our security posture and pursuing industry-recognized certifications as appropriate.

While we strive to protect your personal information, no method of transmission over the Internet or method of electronic storage is 100% secure. We cannot guarantee absolute security, but we are committed to implementing best practices and continuously improving our security posture.

6. Your Rights

Depending on your jurisdiction, you may have certain rights with respect to the personal information we hold about you. Dirty Digital Co is committed to honoring these rights to the fullest extent permitted by law.

  • Right of Access: You have the right to request confirmation of whether we process your personal information and to obtain a copy of such information.
  • Right to Correction: You have the right to request correction of inaccurate or incomplete personal information we hold about you. You may also update much of your information directly through your account settings within the Service.
  • Right to Deletion: You have the right to request deletion of your personal information, subject to certain legal exceptions (e.g., data we are required to retain by law).
  • Right to Data Portability: You have the right to receive your personal information in a structured, commonly used, machine-readable format and to transmit that data to another service provider.
  • Right to Withdraw Consent: Where processing is based on your consent, you have the right to withdraw consent at any time. Withdrawal of consent does not affect the lawfulness of processing conducted prior to withdrawal.
  • Right to Restrict Processing: You have the right to request that we restrict the processing of your personal information under certain circumstances, such as while we verify the accuracy of information you have contested.

How to Exercise Your Rights

You may exercise your rights by contacting us at privacy@dirtydigitalco.com or by using the applicable features within your account settings. We will respond to verified requests within thirty (30) days, or such shorter period as may be required by applicable law. We may request additional information to verify your identity before fulfilling your request.

Jurisdiction & State-Specific Rights

Dirty Digital Co is organized under the laws of the State of Tennessee, and this Policy is governed by Tennessee law. If you are a resident of California, you may have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA), including the right to know what personal information is collected, the right to delete personal information, the right to opt out of the sale of personal information (note: Dirty Digital Co does not sell personal information), and the right to non-discrimination for exercising your privacy rights. To submit a CCPA/CPRA request, contact us at privacy@dirtydigitalco.com.

7. Third-Party Links & Services

The Dirty Digital Co Service may contain links to third-party websites, services, or applications that are not owned or controlled by Dirty Digital Co. This includes, but is not limited to, payment processing services, hosting platforms, and external informational resources.

We are not responsible for the privacy practices, content, or security of any third-party websites or services. The inclusion of a link within the Service does not imply endorsement by Dirty Digital Co. We strongly encourage you to review the privacy policy and terms of service of any third-party website or service before providing personal information to, or through, such third-party services.

Your interactions with third-party services, including any information you provide to them, are governed solely by those third parties’ own privacy policies and terms. Dirty Digital Co bears no liability for the acts or omissions of any third party with respect to your personal information, except to the extent such third party is acting as a subprocessor under our direct contractual authority.

8. Children’s Privacy

The Dirty Digital Co Service is intended for use by individuals who are at least eighteen (18) years of age. We do not knowingly collect, solicit, or maintain personal information from anyone under the age of 18. The nature of the Service - professional web design and development for businesses - is inherently directed at adults.

If we become aware that we have collected personal information from a minor under the age of 18, we will promptly delete such information from our systems. If you believe that a minor has provided personal information to Dirty Digital Co, please contact us immediately at privacy@dirtydigitalco.com.

9. Changes to This Policy

Dirty Digital Co reserves the right to update or modify this Privacy Policy at any time. When we make material changes, we will:

  • Update the “Effective Date” and “Version” at the top of this Policy.
  • Provide notice to registered users via email or a prominent notification within the Service at least fifteen (15) days prior to the changes taking effect.
  • Post the revised Policy on our website at dirtydigitalco.com.

Your continued use of the Service after the effective date of any revised Policy constitutes your acceptance of the updated terms. If you do not agree with the revised Policy, you must discontinue use of the Service and may request deletion of your account and personal information as described in Section 6 above.

We encourage you to periodically review this Policy for the latest information on our privacy practices.

10. Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy, your personal information, or our privacy practices, please contact us using the following information:

Dirty Digital Co

Attn: Privacy Inquiries

Nashville, Tennessee

Email: privacy@dirtydigitalco.com

We will endeavor to respond to all privacy-related inquiries within a reasonable timeframe, and no later than thirty (30) days from receipt.

Annex 1 - Data Categories Table

The following table summarizes the categories of personal data collected by Dirty Digital Co, the purposes for which each category is processed, the legal basis for processing, and the applicable retention period.

Category of DataPurposeLegal BasisRetention Period
Account InformationAccount creation, authentication, communication, customer supportPerformance of contract; legitimate interestDuration of active engagement + 30 days
Project DataWebsite design and development, content creation, design asset managementPerformance of contract; explicit consentDuration of active engagement + 30 days
Billing InformationPayment processing, invoicing, financial record-keepingPerformance of contract; legal obligationDuration of active engagement + 30 days; financial records retained as required by law
Usage DataService improvement, analytics, security monitoring, performance optimizationLegitimate interest24 months from collection (anonymized thereafter)