Privacy Policy
Last updated: May 4, 2025
1. Introduction
Smart Cleaning ("we", "our", "us") is committed to protecting your privacy.
This Policy describes how we collect, use, store and share your information when you visit our website, use our mobile app or any other service we operate (the "Services").
If you do not agree with this Policy, please do not access the Services.
2. Information We Collect
| Category | Examples | Source |
|---|---|---|
| Personal Data | Name, email address, phone number, postal address, payment information | Provided directly by you |
| Usage Data | IP address (for security and fraud-prevention purposes) | Collected automatically |
We do not collect location data, device identifiers, page-view history or time-on-page metrics.
2.1 Legal Basis for Processing (EEA / UK)
| Legal basis | Purpose |
|---|---|
| Contract | Provide and bill the Services |
| Consent | SMS alerts, marketing e-mails, cookies |
| Legal obligation | Tax, accounting, telecom regulations |
| Legitimate interest | Security, fraud prevention, usage analytics (you may object) |
3. How We Use Your Information
- Deliver, operate and improve the Services
- Process payments and bookings
- Send service-related e-mails, SMS and push notifications
- Provide customer support and respond to enquiries
- Monitor usage and develop new features
- Detect, prevent and address fraud or technical issues
- Comply with legal or regulatory obligations
4. Disclosure of Your Information
We may share your information with third-party service providers that help us operate and improve the Services, including:
- Hosting (Contabo, located in Northern Virginia, USA)
- Payments (Stripe)
- Email delivery services
- Analytics providers (e.g., for aggregated usage statistics)
These providers only receive the minimum data necessary and are contractually obligated to protect your information.
We may also share your information with:
- Cleaning Service Providers – to perform the bookings you request
- Business Partners – only with your explicit consent for joint promotions
- Legal / Safety – when required by law or to protect rights, property or safety
No Sale / Share: We do not sell or share personal information for cross-context behavioural advertising as defined in the California Consumer Privacy Act and have not done so in the past 12 months.
5. Data Security
We implement technical and organizational measures to protect user data, including:
- HTTPS with TLS 1.2+ for all communications
- Passwords stored using secure hashing (bcrypt)
- SMS consent logs (phone and IP) encrypted at rest (AES-256)
- Access to personal data restricted by role
- Regular backups stored securely
- Server infrastructure protected by firewall and monitoring
No method of transmission over the Internet or electronic storage is 100% secure; we cannot guarantee absolute security.
5.1 Data Retention
| Data set | Retention period |
|---|---|
| Account profile & settings | Lifetime of account + 6 months |
| Booking metadata (date, status only) | 12 months |
| SMS consent logs (phone, opt-in text, IP, UA) | 4 years (CTIA & AWS 10-DLC) |
| Back-ups | Deleted 180 days after account deletion |
Note: Smart Cleaning does not store or generate official invoices or service receipts. Those are managed directly by the independent cleaning providers.
6. Your Data Protection Rights
You may have the right to access, correct, delete, restrict, object or port your personal data.
Submit requests e-mail [email protected].
We will verify your identity (e.g. matching two data points) and respond within:
- 45 days – CPRA/CCPA (California)
- 30 days – GDPR (EEA/UK)
7. Cookies & Tracking Technologies
| Cookie type | Purpose | Opt-out method |
|---|---|---|
| Strictly necessary | Login session, security | Not optional |
| Analytics (Plausible) | Aggregate usage statistics | Toggle in Cookie Banner |
| Marketing | None as of May 2025 | Disabled by default |
You can change preferences via the banner or your browser; some features may not work without cookies.
We do not respond to browser "Do Not Track" signals and treat all users consistently.
8. Children's Privacy
The Services are not intended for users under 18 years. We do not knowingly collect data from minors. If you believe a minor has provided data, contact us to delete it.
9. Transfers & Hosting Location
Active user data is hosted on Contabo servers located in Northern Virginia, USA, and protected using TLS encryption and strict access controls.
Backups are securely stored on Amazon Web Services (AWS) in the us-east-1 region (Northern Virginia, USA).
Where personal data is transferred outside the EEA or UK, we rely on Standard Contractual Clauses and equivalent safeguards as approved by the European Commission and the UK Information Commissioner's Office (ICO).
10. Changes to This Policy
We may update this Policy periodically. We will post the new version here and e-mail registered users 30 days before it becomes effective. Continued use after that date constitutes acceptance.
11. Contact
Email: [email protected]
Response time: within 45 days (CPRA) / 30 days (GDPR)