1. Overview
Shotframe (“we”, “us”, “our”) provides a website and related services (“Service”). This Privacy Policy explains how we handle personal data and related information when you use the Service. If you do not agree with this policy, please stop using the Service.
Key idea
We collect the minimum necessary data to operate, secure, and improve the Service.
Transparency
This policy is written for clarity with high-contrast text and structured headings.
2. Data We Collect
The types of data we collect depend on your use of the Service. We may collect data directly from you, automatically from your device, and from trusted service providers.
2.1 Data You Provide
- Contact data (for example, name, email address, phone number) when you submit a request.
- Message content you send to us, including attachments if you choose to provide them.
2.2 Data Collected Automatically
2.2.1 Device & Log Data
Basic log data may include IP address, device type, browser type, language, referring page, pages viewed, timestamps, and crash diagnostics.
2.2.2 Usage Data
We may collect feature usage and interaction data (for example, button clicks) to improve usability, reliability, and performance.
2.2.3 Cookie & Similar Technologies
We use cookies and similar technologies for essential operation, preferences (like theme), and optional analytics or marketing where permitted. You can manage choices via the cookie banner controls.
2.2.4 Approximate Location
We may infer approximate location from IP address for fraud prevention, regional compliance, and performance optimization (e.g., selecting a closer server).
3. How We Use Data
We use personal data only for legitimate, defined purposes. The most common purposes are to deliver the Service, secure it, and respond to you.
3.1 Service Delivery
- Provide core functionality and maintain accounts (if applicable).
- Process and respond to support requests.
- Send important service messages (policy updates, security notices).
3.2 Security & Abuse Prevention
- Detect and prevent fraud, spam, and abuse.
- Monitor reliability and performance for incident response.
- Protect users and our infrastructure.
3.3 Improvement & Analytics
Where permitted, we use aggregated insights to improve content relevance, navigation, and page performance. You can opt out of non-essential analytics using cookie settings.
3.4 Legal & Compliance
We may use data to comply with legal obligations, enforce terms, protect rights, and respond to lawful requests.
4. Legal Bases (EEA/UK)
If the GDPR or similar frameworks apply, we process personal data under one or more of these legal bases.
4.1 Contract
Processing needed to provide the Service you requested.
4.2 Legitimate Interests
Security, anti-abuse, and improving the Service while respecting user rights.
4.3 Consent
For non-essential cookies or marketing where required. Consent can be withdrawn at any time.
4.4 Legal Obligation
Processing needed to comply with applicable laws.
5. Cookies & Tracking
Cookies are small files stored on your device. Some are essential. Others help us understand usage patterns or personalize your experience.
5.1 Cookie Categories
5.1.1 Essential
Required for core functions like security, preferences storage, and session continuity.
5.1.2 Analytics
Help us measure traffic and improve content. Enabled only if you accept analytics.
5.1.3 Preferences
Remember choices such as theme, language, or layout.
5.1.4 Marketing (Optional)
Used to measure campaign performance or show relevant offers where applicable.
You can change cookie settings any time using the “Cookie settings” button on this page (floating controls). Essential cookies remain active because the Service depends on them.
6. Sharing & Disclosure
We do not sell personal information. We may share data in limited circumstances.
- Service providers that help us operate (hosting, email, analytics) under contract and confidentiality terms.
- Legal compliance when required by law or to respond to valid legal requests.
- Business transfers in a merger, acquisition, or asset sale; with appropriate safeguards.
- Safety to protect rights, users, and the public where permitted.
7. Data Retention
We retain data only as long as needed to provide the Service, meet legal obligations, resolve disputes, and enforce agreements.
7.1 Support Messages
Typically retained for up to 24 months unless you request deletion earlier where applicable.
7.2 Security Logs
Typically retained for 30–180 days depending on risk and operational needs.
7.3 Cookie Lifetimes
Cookie lifetimes vary: session cookies expire when you close the browser; persistent cookies expire based on stored settings.
8. Security Measures
We use administrative, technical, and organizational safeguards to protect data. No method is 100% secure, but we aim for strong, practical protections.
8.1 Common Controls
- Access control and least privilege for internal systems.
- Encryption in transit (HTTPS) wherever supported.
- Monitoring and alerting for suspicious activity.
- Vendor assessments and contractual safeguards where feasible.
9. International Transfers
If we transfer personal data across borders, we use safeguards such as contractual protections and security measures appropriate to the context.
10. Your Rights
Depending on your location, you may have rights to access, correct, delete, port, or restrict processing of your personal data, and to object to certain processing.
10.1 GDPR (EEA/UK) Rights
- Right of access, rectification, and erasure.
- Right to restrict or object to processing.
- Right to data portability.
- Right to withdraw consent (where processing is based on consent).
- Right to lodge a complaint with a supervisory authority.
10.2 CCPA/CPRA (California) Rights
- Right to know what personal information is collected and disclosed.
- Right to delete personal information (with exceptions).
- Right to correct inaccurate personal information.
- Right to opt out of “sale” or “sharing” (we do not sell personal information).
- Right to non-discrimination for exercising privacy rights.
10.3 How to Exercise Rights
Send a request using the contact form in this page. We may need to verify your identity to protect your information. We aim to respond within a reasonable timeframe.
11. Children’s Privacy
The Service is not directed to children under 13 (or the age required by local law). We do not knowingly collect personal data from children. If you believe a child has provided personal data, please contact us to request deletion.
12. Changes to This Policy
We may update this policy to reflect changes in technology, law, or our practices. We will update the “Effective” date at the top of this page.
Tip: Bookmark this page and review updates periodically. You can also print a copy using the print button.
13. Contact
For privacy questions and requests, contact us:
13.1 Email
13.2 Phone
+1 (415) 803-2749
On-page integrity check
This tool shows if your browser can see all section anchors referenced by the TOC.
Anchors found
—
Missing
—
Status
—