Privacy policy
Laatst bijgewerkt op 13 augustus 2026
This policy sets out what data RootsWP B.V. processes when delivering the service. This is sample text; have it reviewed before the service goes live.
Data we process
For users we process name, email address, company name and the details needed for billing. For connected sites we process the URL, version numbers, the list of plugins and themes, uptime measurements and the results of security checks.
We do not store website content and we do not process visitor data from connected sites.
Why we process this data
The data is needed to deliver the service: showing status, running updates and backups, and putting together reports. The legal basis is performance of the contract.
Billing and bookkeeping data is kept under a statutory retention requirement.
Retention periods
Uptime measurements and log entries are kept for thirteen months so you can produce a yearly report. Account data is kept for thirty days after the subscription ends. Invoices are kept for seven years.
Processors and storage
Data is stored on servers within the European Union. We use processors for hosting, database and email delivery. A data processing agreement is in place with every processor. An up to date list of processors is available on request.
Security
Traffic between RootsWP and connected sites runs over HTTPS and is signed with HMAC-SHA256. Connection keys are stored encrypted and are not visible to regular team members. Access to production systems is limited to those who need it.
Your rights
You can view, correct or request deletion of your data. Send a message to hello@rootswp.com. You can also lodge a complaint with your national data protection authority.