Skip to content

Privacy policy

Last updated

About this policy

TODO(operator): review this whole text before the site goes live (concept §3.10, T6). It is a draft, written only from what the site does.

This policy says what we collect when you apply, why, how long we keep it, and how to have it deleted.

Who is responsible

WideCoder is offered by Xelinc. Xelinc is responsible for what you send us. You can reach us at [email protected].

What we collect

When you apply, we collect only the answers you give in the application:

  • Name
  • Email
  • Phone or WhatsApp
  • Startup or product name
  • Stage
  • What you want built
  • Platforms
  • Why now
  • Links (optional)
  • Existing code (optional)
  • How you heard about us (optional)

Nothing else is collected. You do not need an account, and there is none to create.

With your answers we keep only what handling your application needs: when it was submitted, whether each of the two emails below was sent, and whether we are proceeding with it.

Nothing else is stored with your application: no IP address, no browser details, no referrer, and no identifier.

Why we collect it

We use your answers to consider your application and to reply to you to book a scoping call. We use them for nothing else, and we do not sell them.

Your IP address

To prevent abuse, the site accepts at most 5 applications an hour from one connection. To count them, it processes your IP address briefly when you apply.

The address itself is never stored. The site keeps only a keyed one-way code made from it, for up to an hour, and then discards it. The code is never stored with your application.

TODO(operator): the host keeps its own request logs, which carry IP addresses (concept §3.11 permits "ordinary server-side logs"). Should this policy describe them, and for how long are they kept?

The emails we send

  • A notification of your application, carrying every answer you gave, goes to our own mailbox so that a person reads it.
  • A confirmation goes to the email address you gave. It confirms that your application arrived and says how to ask for deletion. It carries none of your answers.

Both emails are sent through Brevo, our mail provider.

TODO(operator): does Brevo keep the content of these emails, or logs of them, and for how long? (user-flows UT3, data-models DMT3)
TODO(operator): our notification mailbox keeps its own copies. State the 12-month rule for that mailbox, and how its copies are deleted on request (user-flows UT2, data-models DMT2).

Where your application is kept

TODO(operator): should this policy name the host and the data store, and where they are? The site runs on Vercel, with data in MongoDB Atlas in Mumbai (data-models DM1, DM18).

How long we keep it

If nobody proceeds with your application, it is deleted 12 months after you submitted it. The site checks for such applications every day. Deletion is permanent: no copy is kept in the site.

TODO(operator): how long are applications that do proceed kept? The material exempts them from the 12-month rule but sets no period for them (user-flows UF21).

Deleting your application

You can ask for your application to be deleted at any time, by email to [email protected]. No account or form is needed.

We delete every application you sent, and the copies in our notification mailbox, and we confirm to you by email.

Cookies

The site sets no cookie on visitors, so there is no consent banner. The only cookie it sets is the sign-in session of our own admin, in the admin's own browser.

Page views

The site counts no page views. It uses no analytics, no tracking pixels, no session recording and no identifier in your browser.

Law

TODO(operator): should this policy cite a data-protection law? None is named in the material, so none is cited here. Should the governing law (India) and the courts (Hyderabad) be stated here as in the terms?

Contact

Questions about this policy, or a deletion request: write to [email protected].