Privacy Policy
Last updated: 19 July 2026
This is an English courtesy translation. The Polish version is the legally binding text.
1. Data controller
The controller of personal data is ecopywriting.pl Karol Leszczyński, Papowo Biskupie 119/18, 86-221 Papowo Biskupie, Poland, tax ID (NIP): 9562203948. Contact for all matters concerning personal data: karolleszczynskikorektor@gmail.com.
This policy covers the sitario.com website (informational site) and the app.sitario.com application (account, orders, editing panel). It does not cover websites built for Clients — each of them has its own privacy policy, and the controller of the data collected by such a website (e.g. through its contact form) is the Client; we process that data solely as a processor, within the scope of hosting and technical support.
2. What data we process
- User account — e-mail address, first name and password. The password is stored exclusively as a hash (bcrypt) — we do not know it and have no access to it.
- Order data — information about the Client's business provided in the form (name, contact details, description of the business, supplied materials). By design, this information goes onto the Client's finished website and into its privacy policy.
- Messages from Client websites' contact forms — the content of messages sent through the contact form of a website built for a Client (name, e-mail address, phone, message text, any attachments) is delivered to the Client's e-mail address and also stored and made available to the Client in the Panel (the “Messages” inbox). The Client is the controller of this data; we process it solely as a processor, until the Client deletes it or the website is removed.
- Payments — handled by Stripe, which is the controller of payment data (we do not see or store card numbers). We receive a payment confirmation and the data needed for accounting and issuing a sales document. If the Client uses a subscription or enables the automatic character-pool top-up, the payment method saved with Stripe is charged on a recurring or automatic basis — in line with the terms of service and the Client's settings in the Panel.
- Transactional e-mails — verification codes at registration and notifications about the status of your order and website (e.g. payment confirmation, preview ready, site launch, upcoming end of the hosting period or an expiring domain registration), sent via Amazon SES. We do not send marketing e-mails.
- Technical data — standard server logs (IP address, request time), used to ensure the security and stability of the services.
- Analytics data — only with your consent given in the cookie banner (Google Analytics 4, see section 7).
3. Purposes and legal bases
- creating and operating your account, fulfilling your order, maintaining your website and transactional e-mail notifications about your order's status — performance of a contract (Article 6(1)(b) GDPR);
- carrying out AI Assistant requests in the Panel — the text of the request and the content of the Client's website are processed by an artificial intelligence model solely in order to perform the requested change — performance of a contract (Article 6(1)(b) GDPR);
- providing analytical answers and preparing automatic statistics summaries in the Panel — aggregated website statistics (traffic and search-visibility data, popular queries, the number of contact-form messages — without their content) are processed by an artificial intelligence model — performance of a contract (Article 6(1)(b) GDPR);
- accounting, invoices/receipts, bookkeeping — legal obligation (Article 6(1)(c) GDPR);
- security of the services, protecting forms against bots (reCAPTCHA), defence against claims — the controller's legitimate interest (Article 6(1)(f) GDPR);
- traffic statistics (GA4) — your consent (Article 6(1)(a) GDPR), which you can withdraw at any time in the cookie banner.
4. Data recipients
We use the services of the following processors:
- Amazon Web Services (AWS) — hosting of the application and data (Frankfurt region, eu-central-1) and sending transactional e-mails (Amazon SES);
- Stripe — payment processing (for payment data, Stripe acts as an independent controller);
- Google — Google Analytics 4 (with consent), reCAPTCHA v3, the Google Places API (public data of the Client's Google Business Profile — reviews and the directions map, section 9) and Google Ads — for Clients who order the advertising service: campaigns run on our own advertising account, and for a form enquiry originating from an ad click we send Google only the technical click identifier (gclid) and the enquiry time — no name, e-mail address or message content. The mechanism stores nothing in the visitor's browser (no cookies);
- Anthropic, PBC (USA) — provider of the artificial-intelligence model that generates the website's content and design, blog articles and AI Assistant changes. Anthropic receives the content needed to perform the task: the order form information, the Client's website content and the request text, and — for analytical features — aggregated website statistics (without the content of visitors' messages). This data is not used by Anthropic to train models (API without training retention).
- Replicate, Inc. (USA) — hosting of the AI model that generates images for blog posts. Only the prompt text (the article topic and a style description) is sent to Replicate — no personal data of the Client is transferred; the generated image is stored on the website's hosting.
- Michau Enterprises Limited (operator of the Aftermarket.pl service; Nicosia, Cyprus — EEA) — registration and renewal of internet domains ordered together with a website. We transfer the domain registrant's data (name or company name, address, e-mail address) to the extent required to register the domain in the Client's name. The registrar — acting in this respect as an independent controller — passes the registrant data on to the relevant domain registry (for .pl domains: NASK). Registrant data of natural persons is not published in the public WHOIS database.
Data is not sold or shared with other entities for marketing purposes. Where data is transferred outside the European Economic Area (e.g. to Google, Stripe or Replicate in the USA), this takes place on the basis of a European Commission adequacy decision (the EU–US Data Privacy Framework) or standard contractual clauses.
5. How long we keep data
- account data — until the account is deleted;
- order data and finished websites — for the duration of the service, and after it ends until the limitation periods for claims expire;
- accounting documents — 5 years from the end of the tax year (a requirement of tax law);
- GA4 analytics data — according to the configured retention period (14 months);
- enquiries sent through the contact form on the Client's website (name, e-mail address, phone number, message) — kept on the Client's behalf for the duration of the service and deleted when the website is dismantled; the Client can delete an individual enquiry in the panel at any time;
- files attached to such enquiries — 24 months from submission, after which they are deleted automatically (the enquiry itself remains);
- working copies of the website (source files, change history, AI assistant records) — 30 days after the website is deleted, then removed automatically;
- technical logs — no longer than is required to ensure the security of the services.
6. Your rights
You have the right to: access your data, rectify it, erase it, restrict its processing, data portability, object to processing based on legitimate interest, and withdraw consent at any time (without affecting the lawfulness of processing carried out before the withdrawal). Requests can be sent to karolleszczynskikorektor@gmail.com.
You also have the right to lodge a complaint with the President of the Polish Personal Data Protection Office (UODO, ul. Stawki 2, 00-193 Warsaw, uodo.gov.pl).
Providing data is voluntary, but without an e-mail address you cannot create an account, and without the order form data we cannot build your website. We do not make decisions about you based solely on automated processing that would produce legal effects.
7. Google Analytics 4 and Consent Mode v2
For traffic statistics — both on the www.sitario.com website and in the app.sitario.com application — we use Google Analytics 4 in Consent Mode v2: analytics is off by default, and until you give consent in the cookie banner, no analytics cookies are stored. After consent, GA4 collects anonymized visit data (country, device type, pages visited); IP addresses are masked. Your banner choice is remembered locally in your browser (localStorage). You can withdraw consent at any time — the banner settings are accessible from the site.
8. Statistics for Client websites
As part of building and maintaining a website, we create and maintain for the Client's website accounts in Google services used for visit and search visibility statistics. In doing so, we process aggregated statistics of the Client's website — visit counts, search queries, events such as a contact form submission — solely in order to make them available to the Client in the Panel. Data about visitors to the Client's website is collected on the Client's website, in accordance with its own privacy policy and with consent given in its cookie banner (Consent Mode); the controller of the data of the Client's website visitors is the Client. The Client may disable analytics in the Panel or designate their own Google Analytics account.
9. Google reviews and the map on Client websites
If a Client connects their business profile in Google's service (Google Business Profile) to their website, we fetch from Google's public interface (the Places API) and store: the profile identifier, its rating and review count, and the most recent publicly available reviews together with their authors' display names and ratings. This data comes exclusively from the public Google profile, and we process it for one purpose only: displaying the reviews section on the Client's website, at the Client's request, as part of the contract for building and maintaining the website (Article 6(1)(b) GDPR). The reviews are refreshed periodically and presented without selection and without changes to their content, with a source label (“Reviews from Google”) and a link to the full profile. Once the Client disconnects the profile, we stop presenting and refreshing this data.
The optional Google directions map on a Client's website loads in click-to-load mode: the page does not connect to Google's servers until the visitor themselves clicks the button that reveals the map — until that moment, Google receives no data about the visitor.
10. reCAPTCHA
The application's forms (including registration and login) are protected by Google reCAPTCHA v3. It works in the background — with no puzzles to solve — and assesses whether a request comes from a human or a bot by analysing browser signals. Use of reCAPTCHA is also subject to Google's privacy policy and terms.
11. Cookies and localStorage
- Essential — keeping a logged-in user's session in the application (localStorage), remembering your light/dark theme preference, your choice in the cookie banner and a draft of the order form (data typed in before registration is stored locally in your browser so it is not lost — it does not reach our servers until you place the order). Without them the site does not work properly; they do not require consent.
- Analytics — Google Analytics 4 cookies, stored only after you give consent in the banner.
- reCAPTCHA — Google reCAPTCHA may store its own cookies necessary to distinguish humans from bots (form protection).
12. Changes to this policy and contact
We will announce significant changes to this policy on the site. For personal data matters, write to karolleszczynskikorektor@gmail.com. The rules for providing the services are set out in the Terms of Service.