Privacy
Privacy policy
Effective 7 September 2026. This page explains the product’s current data behavior; deployment owners should have counsel review it for their jurisdiction before a public launch.
Data we process
We process account identity and workspace details, configuration, verified webhook activity, widget impressions and clicks, coarse storefront paths, and operational logs needed to provide and secure Sotto. Connected stores choose which customer fields their event source sends.
How data is used
Data is used to display configured proof, measure performance, enforce usage limits, investigate abuse, and operate the service. Sotto does not fabricate activity. Workspace admins can enable customer anonymization and choose a 7–90 day event-retention period.
Sharing and security
Infrastructure providers may process data on our behalf. Sotto does not sell personal information. Storefront access is restricted by verified domain, integration secrets are server-side, and tenant access is role-based. No online service can promise absolute security.
Your choices
Workspace admins can pause the widget, disconnect sources, reduce retention, or request account export or deletion through privacy@trysotto.in. Applicable legal rights vary by location.
Contact
Questions: privacy@trysotto.in.