Privacy Policy
Effective Date:
This Privacy Policy explains how Sitewake collects, uses, stores, and protects your personal data when you use our Service. By using Sitewake, you agree to the practices described here.
• Email address (account creation, alerts)
• Password (hashed — never stored in plain text)
• Google or GitHub account information if you use OAuth
Legal basis: contract performance.
Payment and billing data:
• Stripe customer ID and subscription status
• Billing history (managed and stored by Stripe — we never touch raw card data)
Legal basis: contract performance.
Service data:
• URLs you monitor (core service functionality)
• Check history and incident data
Legal basis: contract performance.
Usage data:
• Pages you visit in the dashboard
• Browser type, device type
Legal basis: legitimate interest (improving the Service).
Technical data:
• IP address (security, fraud prevention)
Legal basis: legitimate interest (security).
• To process payments and manage your subscription via Stripe
• To send alerts when your monitored websites go down (via email or SMS)
• To send transactional emails (account confirmation, billing receipts)
• To authenticate your sessions securely
• To comply with legal obligations
• Stripe (San Francisco, USA) — payment processing and subscription management. Receives: billing data.
• AWS (USA) — infrastructure, email (SES), SMS (SNS). Receives: service data, email addresses, phone numbers.
• Vercel (USA) — hosting. Receives: technical data.
All providers are US-based. We rely on Standard Contractual Clauses (SCCs) as the transfer mechanism to comply with GDPR Article 46 and Swiss nFADP requirements for international data transfers.
• Check history: retained per your plan's retention policy (7 days for Free, 90 days for Pro)
• Payment records: retained for 10 years (Swiss accounting law requirement)
• Logs: retained for 30 days
• Upon account deletion, your personal data is permanently removed within 30 days
• Access the personal data we hold about you
• Request correction of inaccurate data
• Request deletion of your data
• Request data portability (export your data)
• Object to or restrict certain processing
To exercise these rights, contact us at support@sitewake.net. We will respond within 30 days.
You also have the right to lodge a complaint with the Swiss Federal Data Protection and Information Commissioner (FDPIC) or your local data protection authority.
• Passwords are hashed and never stored in plain text
• Session tokens are managed securely via Lucia
• We take reasonable technical and organizational measures to protect your data, but cannot guarantee absolute security
• Email: support@sitewake.net
• Website: https://sitewake.net
1. Data Controller
Sitewake is operated by Raphael Rey, based in Valais, Switzerland. Sitewake is the data controller for personal data collected through the platform. For any privacy-related requests, contact us at support@sitewake.net.2. Data We Collect
Account data:• Email address (account creation, alerts)
• Password (hashed — never stored in plain text)
• Google or GitHub account information if you use OAuth
Legal basis: contract performance.
Payment and billing data:
• Stripe customer ID and subscription status
• Billing history (managed and stored by Stripe — we never touch raw card data)
Legal basis: contract performance.
Service data:
• URLs you monitor (core service functionality)
• Check history and incident data
Legal basis: contract performance.
Usage data:
• Pages you visit in the dashboard
• Browser type, device type
Legal basis: legitimate interest (improving the Service).
Technical data:
• IP address (security, fraud prevention)
Legal basis: legitimate interest (security).
3. How We Use Your Data
• To provide, operate, and improve the Service• To process payments and manage your subscription via Stripe
• To send alerts when your monitored websites go down (via email or SMS)
• To send transactional emails (account confirmation, billing receipts)
• To authenticate your sessions securely
• To comply with legal obligations
4. Data Sharing
We do not sell your personal data. We share data only with trusted third-party service providers necessary to operate the Service:• Stripe (San Francisco, USA) — payment processing and subscription management. Receives: billing data.
• AWS (USA) — infrastructure, email (SES), SMS (SNS). Receives: service data, email addresses, phone numbers.
• Vercel (USA) — hosting. Receives: technical data.
All providers are US-based. We rely on Standard Contractual Clauses (SCCs) as the transfer mechanism to comply with GDPR Article 46 and Swiss nFADP requirements for international data transfers.
5. Data Retention
• Account data: retained for as long as your account is active• Check history: retained per your plan's retention policy (7 days for Free, 90 days for Pro)
• Payment records: retained for 10 years (Swiss accounting law requirement)
• Logs: retained for 30 days
• Upon account deletion, your personal data is permanently removed within 30 days
6. Your Rights
Under GDPR and the Swiss nFADP (new Federal Act on Data Protection, in force since September 2023), you have the right to:• Access the personal data we hold about you
• Request correction of inaccurate data
• Request deletion of your data
• Request data portability (export your data)
• Object to or restrict certain processing
To exercise these rights, contact us at support@sitewake.net. We will respond within 30 days.
You also have the right to lodge a complaint with the Swiss Federal Data Protection and Information Commissioner (FDPIC) or your local data protection authority.
7. Cookies
Sitewake uses cookies for session management and authentication. For details, see our Cookie Policy.8. Data Security
• All data is transmitted over HTTPS• Passwords are hashed and never stored in plain text
• Session tokens are managed securely via Lucia
• We take reasonable technical and organizational measures to protect your data, but cannot guarantee absolute security
9. International Transfers
Your data may be processed by our third-party providers in countries outside Switzerland or the EEA, primarily the United States. Where this occurs, we ensure appropriate safeguards are in place through Standard Contractual Clauses (SCCs).10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email with at least 30 days notice. Continued use of the Service after changes constitutes acceptance.11. Contact
For privacy-related questions or requests:• Email: support@sitewake.net
• Website: https://sitewake.net