Privacy Policy
How we collect, use, and protect your personal data
1. Scope
This Privacy Policy ("Policy") describes how Dior Host ("we", "us", "our") collects, uses, stores, and protects personal data when you use our services, including VPS, VDS, dedicated servers, domain registration, and web hosting.
By using Dior Host services, you consent to the data practices described in this Policy. If you do not agree with these practices, you must not use our services.
2. What Data We Collect
2.1. Account Information
When you register an account, we collect:
- Email address (required for account management and notifications)
- Payment information (processed by third-party payment processors)
- Billing address (if provided for invoicing purposes)
- Account preferences and service configurations
2.2. Service Usage Data
We automatically collect technical data related to service usage:
- IP addresses assigned to your services
- Server resource usage (CPU, RAM, bandwidth, storage)
- Service uptime and availability metrics
- Connection logs and network traffic metadata
2.3. Communication Data
We retain records of communications, including support tickets, abuse reports, and email correspondence, for service quality and compliance purposes.
2.4. Website Usage Data
When you visit our website, we collect:
- Browser type and version
- Device information and screen resolution
- Pages visited and time spent on pages
- Referrer URLs and search queries
4. Logs & Security
4.1. System Logs
We maintain system logs for security and troubleshooting purposes, including:
- Authentication attempts and login events
- Administrative actions and configuration changes
- Network connection attempts and firewall events
- Error logs and system diagnostics
Logs are retained for 90 days unless required for security investigations or legal compliance.
4.2. Security Monitoring
We monitor network traffic and system activity to detect and prevent security threats, including DDoS attacks, unauthorized access attempts, and abuse. This monitoring is automated and does not involve manual review of content unless a security incident is detected.
5. Data Retention
We retain personal data only for as long as necessary to provide services and comply with legal obligations:
| Data Type | Retention Period |
|---|---|
| Account information | Until account deletion + 30 days |
| Service usage logs | 90 days |
| Support tickets | 3 years |
| Billing records | 7 years (legal requirement) |
| Abuse reports | 5 years |
6. Data Deletion
You have the right to request deletion of your personal data, subject to legal and operational requirements:
6.1. Account Deletion
You can request account deletion at any time. Upon deletion:
- All services are terminated and data is permanently deleted
- Account information is removed from active systems within 30 days
- Billing records are retained for 7 years as required by law
- Abuse reports and security logs may be retained for compliance purposes
6.2. Data Export
Before account deletion, you can export your data, including service configurations, support tickets, and billing history, in machine-readable formats (JSON, CSV).
7. Third-Party Services
We use third-party services that may process your data:
Cloudflare
CDN and DDoS protection. Processes IP addresses and network traffic metadata. See Cloudflare Privacy Policy
Payment Processors
Payment information is processed by third-party payment processors. We do not store full credit card numbers or payment credentials.
Domain Registrars
Domain registration data is shared with ICANN-accredited registrars as required for domain registration.
8. GDPR/EEA Compliance
For users in the European Economic Area (EEA), we comply with the General Data Protection Regulation (GDPR):
8.1. Legal Basis
We process personal data based on:
- Contract performance: To provide hosting services as agreed
- Legal obligation: To comply with tax, accounting, and abuse reporting requirements
- Legitimate interests: For security monitoring, fraud prevention, and service improvement
- Consent: For optional analytics and marketing communications
8.2. Data Transfers
Data is processed within the EEA (Netherlands, Germany, Romania). Transfers outside the EEA are limited to third-party services with adequate safeguards (Standard Contractual Clauses, Privacy Shield adequacy).
9. User Rights
You have the following rights regarding your personal data:
Right to Access
Request a copy of all personal data we hold about you.
Right to Rectification
Correct inaccurate or incomplete personal data.
Right to Erasure
Request deletion of your personal data (subject to legal requirements).
Right to Restrict Processing
Request limitation of data processing in certain circumstances.
Right to Data Portability
Receive your data in a structured, machine-readable format.
Right to Object
Object to processing based on legitimate interests.
Right to Withdraw Consent
Withdraw consent for optional data processing at any time.
To exercise these rights, contact us at [email protected]. We will respond within 30 days.
10. Contact for Privacy Inquiries
For privacy-related questions, data access requests, or complaints, contact:
Email: [email protected]
Subject: Privacy Inquiry / GDPR Request
For EEA users, you also have the right to lodge a complaint with your local data protection authority.