Privacy Policy
Last updated:
This Privacy Policy explains how SRACOM CONNECT LLC (“Sracom”, “we”, “us”) collects, uses and protects personal data when you visit sracomconnect.com (the “Site”), submit our demo-request form, or subscribe to the Sracom CRM (the “Service”). SRACOM CONNECT LLC is a limited liability company registered in the State of Wyoming, United States, operating from Morocco.
1. Data we collect
We collect only what we need to respond to you, to run and secure the Service, to take payment, and to measure how our advertising performs.
- Information you submit on the Site: when you use the demo-request form, your full name, phone number and indicated monthly lead volume.
- Account data: when you subscribe, the name, business name, email address and phone number of the people you register, plus the roles you assign them.
- Billing data: your business billing details, the subscription you bought, and payment records. Card payments are processed by Paddle.com Market Ltd — we receive a confirmation, the payment method type and the last four digits, never the full card number or security code.
- Business data you upload: your orders, customers, products, invoices and operational records. This is your data; we process it on your behalf to run the Service (see “Data you upload about your customers”).
- Technical data collected automatically: IP address, browser and device type, referring page and access timestamps, recorded in standard server and security logs by our hosting/CDN provider, and application audit logs of sensitive actions.
- Anti-bot signals: our forms are protected by Cloudflare Turnstile, which processes limited technical and interaction data to distinguish humans from bots.
- Advertising measurement (Meta Pixel): we use the Meta Pixel from Meta Platforms, Inc. (Facebook / Instagram) on the Site. It sets cookies and collects your IP address, browser and device information and the pages and actions you take here — such as viewing a page or submitting the demo-request form — so we can measure the effectiveness of our advertising and reach relevant audiences. This involves Meta processing your data, including within its own services. You can control this through your Meta ad preferences and your browser or device settings. See our Cookie Policy.
- Local preferences: your light/dark theme choice is stored in your browser’s local storage, on your own device. It is not a cookie, is not sent to us, and is not used for tracking.
2. How we use your data
- To contact you about your demo request and about Sracom, by phone, WhatsApp or email.
- To create and administer your account, provide the Service, and give you support.
- To take payment, issue invoices and receipts, prevent payment fraud and handle disputes.
- To send follow-up and marketing communications about our product. You can opt out at any time (see “Your rights”).
- To protect the Site, the Service and our forms against spam, bots, fraud and abuse.
- To operate, secure, maintain and improve what we offer, and to meet our legal and accounting obligations.
3. Legal bases
Where data-protection law applies, we rely on: performance of a contract (providing the Service and taking payment); your consent (marketing communications, which you can withdraw at any time); our legitimate interest in responding to enquiries, securing our systems, preventing fraud and understanding demand; and compliance with legal obligations (tax and accounting records).
4. Data you upload about your customers
When you use the Service, you decide what personal data about your own customers is entered into it. For that data you are the controller and we act as your processor: we process it only to provide the Service to you, on your documented instructions, and we do not use it for our own purposes or sell it. You are responsible for having a lawful basis to collect and process that data — including for calling and messaging your customers — and for honouring their rights. We keep each business workspace isolated from every other and restrict access by role.
5. Who we share it with
We do not sell your personal data. We share limited data with Meta for advertising measurement through the Meta Pixel. Otherwise we use a small number of trusted service providers that handle data on our behalf under their own privacy and security terms:
- Paddle.com Market Ltd — Merchant of Record: checkout, payment processing, invoicing, sales-tax handling and fraud prevention. They are an independent controller for the payment data they handle; see their privacy policy.
- Cloudflare, Inc. — website hosting, content delivery and Turnstile bot protection (technical/log data).
- Notion Labs, Inc. — secure storage of the enquiry you submit through the Site.
- Brevo (Sendinblue SAS) — notifying us of your enquiry and delivering our email communications.
- Meta Platforms, Inc. — the Meta (Facebook) Pixel, for advertising measurement and audience building.
- Our hosting and infrastructure provider for the Service, which stores the application database and backups.
- Providers you connect yourself — shipping carriers, advertising platforms, messaging and spreadsheet tools — receive only the data needed for the integration you enable.
- We may also disclose personal data where required by law or to establish or defend legal claims.
6. International transfers
We operate from Morocco, and our providers process data in the United States and the European Union. Where personal data is transferred across borders, we rely on the safeguards offered by these providers, including standard contractual clauses where applicable.
7. How long we keep it
- Enquiry data (name, phone, volume): up to 24 months after our last contact with you, then deleted — unless you ask us to delete it sooner or the law requires us to keep it longer.
- Account and business data: for the life of your subscription, then for a 30-day export window, after which it is deleted or anonymised.
- Billing and tax records: kept for as long as accounting and tax law requires.
- Server and security logs: retained for a short period, per our providers’ standard practice.
8. Your rights
Depending on where you live, you may have the right to access, correct, delete or receive a copy of your personal data, to object to or restrict its processing, and to withdraw consent at any time. You can unsubscribe from marketing at any time using the link in our emails or by contacting us.
- To exercise any of these rights, email contact@sracomconnect.com. We respond within the time required by applicable law.
- If you are in Morocco, you also have rights under Law No. 09-08 on the protection of individuals with regard to the processing of personal data, and may contact the CNDP.
- If you are in the EU/EEA or the UK, you have rights under the GDPR and may lodge a complaint with your local data-protection authority.
- If you are a California resident, we do not sell or share your personal information as those terms are defined by the CCPA.
- If you are one of our customers’ end customers, please contact that business directly — they control that data, and we will refer your request to them.
9. Payment data and card security
Card payments are processed by Paddle.com Market Ltd, a regulated payment institution. Card details are entered into and handled by their PCI DSS-compliant systems: we never see, transmit or store your full card number, expiry or security code. Strong customer authentication (such as 3-D Secure) may be applied by your bank. We store only the payment records we need for accounting, support and dispute handling.
10. Security
We use reasonable technical and organisational measures to protect data, including encrypted connections (HTTPS/TLS), hashed credentials, role-scoped access, audit logging of sensitive actions, workspace isolation and regular backups. No method of transmission or storage is completely secure, so we cannot guarantee absolute security. If a breach affects your personal data, we will notify you and the relevant authority where the law requires it.
11. Children
The Site and the Service are intended for businesses and are not directed to children. We do not knowingly collect personal data from anyone under the age of 16.
12. Changes to this policy
We may update this Privacy Policy from time to time. The date at the top of this page shows when it was last revised, and material changes will be communicated to subscribers.
13. Contact us
SRACOM CONNECT LLC — registered in Wyoming, United States, operating from Morocco.
Registered address: 5830 E 2nd St, Ste 7000, Casper, WY 82609, USA.
Email: contact@sracomconnect.com · Phone / WhatsApp: +212 680 821 282.