BigTB.ai (“we,” “us,” “Company”) respects your privacy. This policy describes what information we collect, how we use it, and your rights regarding that information.
1. Information We Collect
Account information: Name, email address, company name (optional), and password (stored as a bcrypt hash — we never store plaintext passwords).
Payment information: Payment transactions are processed by Stripe and PayPal. We do not store full credit card numbers. We retain only the last four digits, card brand, and expiration date for display in your dashboard.
Usage data: Server resource usage (CPU, RAM, storage, bandwidth) as measured by CloudLinux LVE. This data is used for capacity planning and plan enforcement.
Hosting metrics: Account status, domain configuration, and provisioning metadata associated with your cPanel account.
Support session data: Descriptions, notes, and timestamps from Support Marketplace sessions, retained for quality and billing purposes.
2. How We Use Information
- Service provision: To create and manage your hosting account, provision resources, and deliver the features of your plan.
- Billing: To process payments, issue receipts, and manage subscriptions.
- Support: To respond to support requests and deliver billable engineering sessions.
- Security monitoring: To detect and prevent abuse, unauthorized access, and violations of our Terms of Service.
- Legal compliance: To comply with applicable laws, regulations, and valid legal process.
We do not sell your information. We do not send marketing spam. Transactional emails (billing, account status, security alerts) are the only emails you will receive from us unless you explicitly opt in to additional communications.
3. Payment Processing
Stripe: Stripe, Inc. processes card payments and is PCI DSS Level 1 certified. Stripe receives your card details directly — they never pass through our servers. See Stripe's Privacy Policy.
PayPal: PayPal processes alternative payments. See PayPal's Privacy Policy.
4. Third-Party Services
We use the following third-party services to operate the platform:
- Stripe / PayPal: Payment processing (receives billing data).
- cPanel / WHM: Hosting control panel (receives account configuration data).
- CloudLinux: Resource isolation and limits (receives server-level usage data).
- Google Fonts: Font delivery (receives visitor IP addresses via standard HTTP requests).
We do not share your personal information with third parties for their marketing purposes.
5. Cookies
We use PHP session cookies only. These are functional cookies required for authentication and session management. They expire when you close your browser or after a reasonable inactivity period.
We do not use tracking cookies. We do not use advertising cookies. We do not currently use analytics services.
6. Data Retention
- Account data: Retained while your account is active, plus 30 days after cancellation.
- Payment records: Retained for 7 years for tax and legal compliance.
- Server logs: Retained for 90 days, then automatically purged.
- Support session records: Retained for 2 years after session completion.
7. Data Security
We implement the following security measures:
- Encryption in transit: All connections over HTTPS/TLS.
- Password hashing: bcrypt with automatic salting.
- Database access: Restricted to application-level connections with prepared statements (no raw SQL interpolation).
- Account isolation: CloudLinux CageFS isolates each hosting account at the filesystem level. Each account operates in its own virtual environment.
8. Your Rights
You have the right to:
- Access the personal information we hold about you.
- Correct inaccurate personal information.
- Delete your account and associated personal data.
- Export your hosting data (files, databases) via cPanel or SSH at any time.
Most of these actions are available through your dashboard. For requests that require manual processing, email privacy@bigtb.ai. We will respond within 30 days.
9. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to know: What personal information we collect, use, and disclose.
- Right to delete: Request deletion of your personal information.
- Right to opt-out of sale: We do not sell personal information to third parties. No opt-out is necessary.
- Right to non-discrimination: We will not discriminate against you for exercising your rights.
To exercise these rights, contact privacy@bigtb.ai.
10. Children
BigTB.ai is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from minors. If we become aware that a user is under 18, we will terminate the account and delete associated data.
11. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email at least 30 days before taking effect. Continued use of the Service after changes take effect constitutes acceptance.
12. Contact
For privacy questions or data requests, contact us at privacy@bigtb.ai.