Privacy Policy
Last Updated: March 21, 2026
1. Introduction and Agreement
This Privacy Policy describes how PrimeHTML, a service of Prime Business Systems ("PrimeHTML," "we," "us," or "our"), located at 8 The Green Suite B, Dover, Delaware 19901 USA, collects, uses, stores, and protects information obtained from our clients and website visitors ("you" or "your") in connection with our services globally.
By accessing our website, using our services, making any payment, submitting any form, or engaging with our platforms, you automatically acknowledge that you have read, understood, and agree to be bound by this Privacy Policy and consent to our data collection and processing practices as described herein.
If you disagree with any part of this Privacy Policy, you may not use our services or access our platforms.
2. Scope and Application
2.1 Digital Properties Coverage
This policy applies comprehensively to all information collected through:
Website and Digital Platforms:
- Primary website (primehtml.com)
- All subdomains and associated web properties
- Client onboarding and communication platforms
- API integrations and service delivery systems
- Social media integrations and plugins
- Email systems and communication platforms
- WhatsApp Business communication channels
Service Delivery Systems:
- Prerendering and proxy infrastructure
- Client site configuration and management systems
- Performance monitoring and analytics tools
- Support communication systems (WhatsApp, email)
- Payment processing and billing platforms
- Cache management and optimization systems
2.2 Service Categories
This policy covers all PrimeHTML service offerings including:
Subscription Plans:
- Individual ($29/month)
- Professional ($99/month)
- Enterprise ($199/month)
- Unlimited ($299/month)
Additional Offerings:
- Lifetime Deal promotions (when available)
- Custom enterprise arrangements
- Consultation and advisory services
3. Information Collection
3.1 Personal and Business Information
Required Account Information:
- Full business and personal contact details
- Primary contact personnel information
- Billing information and payment method details
- Website URLs and domain ownership verification
- Hosting platform details necessary for service configuration
- Communication preferences and contact methods (email, WhatsApp)
Service Configuration Information:
- Client website domain names and associated URLs
- Hosting platform identifiers (e.g., Lovable project URL, Vercel deployment URL)
- Google Analytics measurement IDs (if client requests analytics verification)
- DNS configuration details
- Service preferences and configuration settings
3.2 Technical and Usage Data
Service Usage Information:
- Render counts and cache performance metrics per client domain
- Bot detection and crawler interaction statistics
- Service uptime and performance data
- Error encounters and system performance data
- Bandwidth and resource utilization metrics
Platform Usage Information:
- Website visit data (primehtml.com)
- Login frequencies and session information
- Feature utilization and engagement patterns
- Device information and browser specifications
- IP addresses and geographic location data
- Referral sources and traffic patterns
3.3 Communication Records
Support and Service Communications:
- WhatsApp Business communication history
- Email communications and message histories
- Service request and configuration change records
- Onboarding interaction records and setup notes
- Support ticket interactions and resolutions
Marketing and Sales Interactions:
- Website form submissions and inquiry details
- Consultation records and service recommendations
- Follow-up communication sequences and responses
- Newsletter subscriptions and engagement metrics
4. Data Storage, Security, and Infrastructure
4.1 Security Infrastructure
Primary Security Systems:
- Enterprise-grade server infrastructure with redundancy
- Advanced encryption protocols for all data transmission
- Continuous security monitoring and threat detection
- Firewall protection limiting access to essential services only
- Regular security updates and vulnerability management
- Automated backup systems for service continuity
- SSL/TLS encryption for all client websites managed through our service
Access Control:
- Strict access controls with minimum privilege principles
- Regular access reviews and permission audits
- Administrative access logging and monitoring
- Secure authentication requirements for all system access
4.2 Data Processing and Storage Standards
Encryption and Protection:
- TLS encryption for all data in transit
- Encrypted storage for sensitive client information
- Secure infrastructure management and key handling
- Regular security standard updates and improvements
4.3 Data Ownership and Client Rights
Client Data Ownership:
- Clients retain full ownership of their website content and business data at all times
- PrimeHTML does not own, claim, or assert rights over any client website content
- Client website content passes through our infrastructure for rendering and proxying purposes only
- We do not modify, store, or repurpose client website content beyond what is necessary for service delivery (caching rendered pages for bot responses)
- Data portability: clients can disconnect from PrimeHTML at any time by reverting their DNS settings
PrimeHTML Service Data:
- Service configuration data (NGINX configs, cache settings) is PrimeHTML operational data
- Render count and usage metrics are maintained by PrimeHTML for billing and service management
- Performance analytics and optimization data used for service improvement
5. Data Usage, Processing, and Sharing
5.1 Primary Data Usage Purposes
Service Delivery and Operations:
- Core service delivery: prerendering, white-labeling, and proxy services
- Client site configuration and ongoing management
- Cache management and daily refresh operations
- SSL certificate provisioning and renewal
- Technical support and customer service provision
- Billing processing and account management
- Security monitoring and service protection
- Performance analytics and service optimization
- Render count tracking for subscription plan management
Business Operations and Improvement:
- Service quality assessment and improvement
- Infrastructure development and capacity planning
- User experience optimization
- Compliance monitoring and regulatory reporting
5.2 Marketing Communications and Consent
Form Submission Consent: By submitting any form on our website (including contact forms, service inquiries, and consultation requests), you provide explicit consent to receive marketing-related communications from PrimeHTML.
Marketing Communication Types:
- Email communications about our services and offerings
- Follow-up messages regarding your inquiry and interests
- Educational content related to website SEO and prerendering
- Promotional communications about new features or special offers
- Service announcements and company updates
Consent Management:
You may withdraw marketing consent at any time through:
- Clicking the unsubscribe link in any marketing email
- Contacting us directly at support@mail.primehtml.com
- Requesting removal through WhatsApp or any communication channel
Communication Limitations:
Withdrawal of marketing consent does not affect:
- Essential service-related communications for active clients
- Legal, administrative, or compliance communications
- Security notifications and service updates
- Billing and payment-related communications
- Communications necessary for contracted service delivery
- WhatsApp onboarding and support communications for active subscribers
5.3 Third-Party Sharing and Integration
Essential Service Providers: We share data only with essential service providers under strict confidentiality:
- Cloud hosting and infrastructure services
- SSL certificate authorities (Let's Encrypt)
- Payment processing and billing services
- Email delivery and communication platforms
- WhatsApp Business platform (Meta) for client communication
Data Protection Requirements:
All third-party providers must meet:
- Equivalent security and privacy standards
- Contractual confidentiality and data protection obligations
- Limited data access restricted to service delivery necessity
- Data processing agreements compliant with applicable regulations
5.4 Data Sale and Commercial Use Prohibition
Strict Prohibition Policy:
- No selling of client data under any circumstances
- No sharing of data for third-party marketing purposes
- No commercial use of data outside service delivery scope
- No aggregation or anonymization of client data for commercial sale
- No data monetization through external partnerships
- Client data used exclusively for contracted service delivery
5.5 Website Content and Rendering Data
Important Clarification on Rendered Content:
In the course of providing prerendering services, our infrastructure processes and temporarily caches rendered versions of client website pages. This cached content:
- Is used exclusively for serving search engine and bot requests
- Is refreshed daily and cleared on request
- Is not analyzed, mined, indexed, or used for any purpose beyond service delivery
- Is not shared with any third parties
- Is deleted upon service termination or at client request
- Remains the intellectual property of the client at all times
6. International Data Transfers and Compliance
6.1 Processing Locations
Data is primarily processed in the United States. For international clients, appropriate safeguards are maintained including:
- Standard contractual clauses for international transfers where required
- Data processing agreements meeting international standards
- Regular compliance verification procedures
6.2 Regional Compliance
GDPR Compliance (European Union):
- Lawful basis establishment for all data processing
- Data subject rights implementation and response procedures
- Privacy by design and default principles
- Breach notification procedures within 72-hour requirements
CCPA Compliance (California):
- Consumer rights disclosure and implementation
- Opt-out mechanisms (though we do not sell data)
- Personal information category disclosure
- Non-discrimination policies for privacy right exercise
Additional Regional Requirements:
- PIPEDA Compliance (Canada)
- Australian Privacy Principles compliance
- UK Data Protection Act compliance
- State-specific privacy law compliance where applicable
7. Client Rights and Data Control
7.1 Access Rights
Data Access and Portability:
- Access to all personal and business data we maintain about you
- Usage reports showing render counts and service metrics for your account
- Communication history access
- Service configuration details
Data Correction and Update Rights:
- Immediate correction of inaccurate or incomplete data
- Update mechanisms for changed business or contact information
- Communication preference modifications
- Service configuration adjustments
7.2 Privacy Control and Management
Privacy Settings and Controls:
- Communication frequency and channel preferences (email, WhatsApp)
- Marketing consent management and withdrawal options
- Data sharing permissions and restrictions
Data Deletion and Service Disconnection:
- Right to request data deletion at any time
- Service disconnection by reverting DNS settings (immediate, self-service)
- Account closure and complete data removal upon request
- 30-day data retention after service termination for export purposes
7.3 Communication Preferences
Notification Categories:
- Essential service communications (cannot be disabled for active clients)
- Technical service updates and maintenance notifications
- Security alerts and important account notifications
- Marketing and promotional communications (opt-out available)
- Educational content and industry insights (opt-out available)
Delivery Methods:
- Email communication preferences
- WhatsApp Business communication preferences
- Notification frequency settings
8. Data Retention and Deletion
8.1 Retention Periods
Active Client Data:
- Full data retention during active subscription
- Continuous service data maintenance for performance and billing
- Communication history retained for service quality and support continuity
- Render count and usage data retained for billing accuracy
Post-Service Retention:
- 30-day grace period after service termination for data export or service resumption
- 90-day retention for billing and accounting purposes
- 1-year retention for legal compliance and dispute resolution
- Cached rendered pages deleted immediately upon service termination
- Immediate deletion of service configurations upon account closure
8.2 Deletion Procedures
Client-Initiated Deletion:
- Requests processed promptly upon verification
- Complete data removal from all active systems
- Deletion confirmation provided
- Cached rendered pages for client domains cleared immediately
Service Disconnection:
- Clients may disconnect at any time by reverting DNS settings
- No data lock-in: your website continues operating on its original platform
- Formal account closure available by contacting support@mail.primehtml.com
9. Security Measures
9.1 Technical Security
- Network-level firewall protection
- Application-level security controls
- Encrypted data transmission for all services
- Regular security updates and patch management
- Automated monitoring and alerting systems
- SSL/TLS certificates for all managed client domains
9.2 Organizational Security
- Access controls limited to authorized personnel only
- Confidentiality requirements for all team members
- Regular security reviews and assessments
- Incident response procedures and protocols
9.3 Breach Response
Data Breach Response Procedures:
- Immediate containment and impact assessment
- Regulatory notification within required timeframes (72 hours for GDPR)
- Client notification with detailed impact assessment
- Remediation and additional security measures implemented
- Post-incident review and security improvements
10. Render Tracking and Usage Data
10.1 What We Track
PrimeHTML tracks the number of page renders performed for each client domain to manage subscription plan limits and ensure fair usage. This includes:
- Total render count per domain per billing cycle
- Cache hit/miss ratios for performance optimization
- Bot types served (aggregated, not individual visitor data)
- Service health and uptime metrics
10.2 What We Do NOT Track
- Individual visitor identities or personal information of your website visitors
- Website visitor browsing behavior or clickstream data
- Personal data of any person visiting your website through our proxy
- Content of communications between you and your website visitors
- Any data that would constitute surveillance of your website traffic
10.3 Render Limit Communications
When a client's monthly render allocation approaches or reaches its limit, PrimeHTML will proactively reach out via WhatsApp or email to discuss plan modification options. Service is not abruptly terminated — we work with you to find the right solution.
11. Privacy Policy Updates
11.1 Update Procedures
- Annual comprehensive privacy policy review
- Immediate updates for material changes in data processing
- Continuous monitoring of privacy law developments
11.2 Notification
- Email notification for material privacy policy changes
- Website posting of updated policy with change highlights
- 30-day advance notice for significant changes where possible
11.3 Client Response Options
- Opt-out mechanisms for new data processing activities
- Service modification options to accommodate privacy preferences
- Account closure options for clients uncomfortable with changes
12. Contact Information
For all privacy-related matters, inquiries, and requests:
PrimeHTML (a service of Prime Business Systems)
Email: support@mail.primehtml.com
Website: primehtml.com
Response Timeframes:
- General privacy inquiries: 5 business days
- Data access requests: 15 business days
- Data correction requests: 10 business days
- Data deletion requests: 30 business days
- Urgent security matters: 24 hours
Regulatory Authority Contact:
For EU/GDPR matters, clients may contact relevant data protection authorities in their jurisdiction. For US privacy matters, complaints may be filed with relevant state attorneys general or consumer protection agencies.
13. Governing Law
This Privacy Policy and all privacy-related matters are governed by Delaware law, without regard to conflicts of law principles. Any disputes arising from privacy matters shall be resolved through binding arbitration in Delaware, except where prohibited by applicable consumer protection laws.
For international clients, local privacy laws may provide additional rights and protections. This Privacy Policy is designed to comply with applicable international privacy regulations while maintaining Delaware law as the primary governance framework.
14. Severability
If any provision of this Privacy Policy is found invalid, illegal, or unenforceable in any jurisdiction, such provision shall be deemed amended to achieve as closely as possible the economic effect of the original provision, and the remainder of this Privacy Policy shall remain in full force and effect.
15. Acknowledgment and Acceptance
By using our services, accessing our website, submitting any forms, or engaging with our platforms in any manner, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy and consent to our collection, use, and disclosure of your information as described herein.
For questions about our privacy practices or to exercise your privacy rights, please contact us at support@mail.primehtml.com.
