Privacy Policy
CPaaS Directory is an independent editorial reference. This policy explains, in plain terms, what personal data this website handles, why, and what you can require us to do about it. It applies to cpaasdirectory.com and every page on it.
1. The short version
This is a static reading site. It sets no cookies, runs no analytics, embeds no third-party advertising, and has no login, account, or shopping function. You can read every page on this directory without giving us anything. The only personal data we ever receive is what you deliberately type into the provider submission form and send us.
2. Who is responsible
CPaaS Directory is published as an independent directory property. It is a Sagentica product built on the QAICX platform, and Sagentica is the data controller for the purposes of the UK/EU General Data Protection Regulation (GDPR).
3. What we collect
3a. Information you send us voluntarily
At present, none. The submission form on this Site is not currently connected to a backend — it does not transmit or store what you type, and nothing you enter into it reaches us. We would rather tell you that than let you believe otherwise. When a working submission channel is in place, this section will be updated to describe exactly what it collects, before it goes live.
3b. Server logs
Like effectively every website, our hosting and CDN layer records ordinary technical request data — IP address, timestamp, requested URL, referring page, and browser user-agent string — for the purposes of serving the page, defending against abuse, and diagnosing faults. These logs are not used to build a profile of you, are not sold, and are not combined with anything else to identify you.
3c. What we do NOT collect
- We do not set advertising, tracking, or profiling cookies.
- We do not run Google Analytics or any equivalent third-party analytics product.
- We do not serve third-party advertising on this site, and we do not host advertising tags that could track you elsewhere.
- We do not collect special-category data (health, biometrics, political opinions, religion, sexual orientation, trade union membership).
- We do not knowingly collect data from children under 16.
- We do not sell, rent, or share personal information for cross-context behavioural advertising — under the CCPA/CPRA definitions or any other.
4. Legal bases (GDPR Article 6)
- Consent — for anything you voluntarily submit through the submission form. You give it by choosing to send the form, and you can withdraw it at any time.
- Legitimate interests — for server logs and abuse prevention, where our interest in operating a functioning, non-abused website is balanced against your rights and is limited to ordinary technical data.
5. How long we keep things
We currently hold no submitted personal data at all, for the reason given in section 3a. Technical request logs are retained on a short rolling window at the infrastructure layer and are then overwritten. We do not maintain a marketing database and we do not run a mailing list.
6. Who else sees your data
We do not sell personal data. We do not share it with advertisers, data brokers, or the providers listed in this directory. The only third parties involved are the infrastructure vendors that make the site work — our hosting provider and our CDN/DNS provider — who process technical request data on our behalf under their own contractual obligations. If we are ever compelled by a valid legal process to disclose information, we will comply with the law, and will tell you where we are lawfully permitted to.
7. International transfers
Our infrastructure providers operate globally, so technical request data may be processed outside your country of residence, including in the United States. Where such transfers involve personal data of individuals in the UK or EEA, they are made under the safeguards those providers maintain for international transfers.
8. Your rights
If you are in the UK or EEA, GDPR gives you the right to: access the personal data we hold about you; have inaccurate data corrected; have your data erased; restrict or object to processing; receive your data in a portable form; and withdraw consent at any time. You may also lodge a complaint with your local supervisory authority.
If you are a California resident, the CCPA as amended by the CPRA gives you the right to know what personal information has been collected and for what purpose; to delete it; to correct it; to opt out of sale or sharing (we do neither); to limit the use of sensitive personal information (we collect none); and not to be discriminated against for exercising any of these rights.
Residents of other US states with comparable privacy statutes (including Virginia, Colorado, Connecticut, Utah and Texas) have substantially equivalent rights, and we honour them on the same terms.
9. How to exercise your rights — and an honest limitation
We must state plainly that this Site does not currently have a working contact channel. The domain has no mail exchange (MX) records configured, so any address at @cpaasdirectory.com would silently discard mail rather than deliver or bounce it, and the on-site form is not connected to a backend. Publishing an address or a form that quietly loses your request would be worse than admitting the gap, so we are admitting it.
In practice this limitation is narrow: because we collect no submitted data, hold no accounts, set no cookies and run no analytics, there is in almost every case nothing about you for us to access, correct, delete, or port. The rights above are still yours and we do not disclaim them.
A functioning channel is being provisioned, and this section will be replaced with it the moment it exists. Until then, if you need to reach us about this Site, use the contact route published by any other Sagentica property. We aim to respond to rights requests within 30 days, as GDPR and the CCPA require, and we may need enough information to confirm a request is genuinely yours before acting on it.
10. Security
This is a static site served over HTTPS with TLS. We hold no passwords for you, because there are no accounts. We keep the amount of personal data we hold deliberately small, on the principle that the safest data is the data you never collected.
11. Links to other sites
This directory links out to provider websites and other external resources. Those sites have their own privacy policies and their own tracking, and we have no control over and take no responsibility for what they do once you leave here. Our policy on how and why we link is set out in our link policy.
12. Changes to this policy
If we change this policy we will update the date at the top of this page. Material changes will be described here rather than made silently.