Privacy Policy

    Your privacy is our priority. Learn how we protect and handle your data.

    Effective Date: 20-07-2025

    1. Introduction

    This Privacy Policy explains how Tracking Hippo (a commercial name of FrontLetter BV, located at Blankenbergse Steenweg 287, 8000 Bruges, Belgium) collects, processes, and protects your personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable laws.

    2. Who We Are

    Tracking Hippo is a SaaS platform that enables the hosting of Google Server Tag containers on European infrastructure.

    Contact Details:

    FrontLetter BV
    De Leiteweg 32
    8020 Oostkamp, Belgium
    Email: support@trackinghippo.io

    3. What Personal Data We Collect

    TypeDescription
    Account DataEmail, password (hashed), language, account creation timestamps
    Billing DataCompany name, billing address, VAT number, payment details (processed via Stripe)
    Technical DataIP address, browser type, session metadata, login events
    Container LogsServer-side logs that may include user identifiers or IPs (see Section 6)
    Tracking DataCollected via cookies and analytics (see Section 7)
    Support MessagesAny personal data included in communications with support

    4. Legal Bases for Processing

    We process your personal data under the following bases:

    • Contractual necessity – to provide and bill the service
    • Legitimate interest – to secure and improve our services
    • Legal obligation – e.g. tax or accounting compliance
    • Consent – for non-essential cookies and marketing analytics

    5. How We Use Your Data

    We use your data for the following purposes:

    • To provide access to the Tracking Hippo platform
    • To manage billing and payment processing
    • To monitor service usage and prevent abuse
    • To respond to support inquiries
    • To comply with legal obligations
    • To analyze traffic and improve the website (based on cookie consent)

    6. Container Logs

    6.1 Each active container generates technical logs, which are automatically stored for a maximum of 3 days. These logs are used solely for:

    • Debugging
    • Abuse detection
    • Performance optimization

    6.2 These logs may contain personal data if the Client configures the container to process user identifiers, IP addresses, or request parameters.

    6.3 Tracking Hippo does not access or use container logs unless necessary for support (upon Client request) or abuse prevention. The Client is responsible for lawful data collection and disclosure to end-users.

    7. Tracking and Analytics

    7.1 Our website and platform use cookies and third-party tracking tools, including:

    • Google Analytics
    • Google Tag Manager
    • Google Ads Conversion Tracking
    • Meta Pixel (Facebook/Instagram)
    • LinkedIn Insight Tag

    7.2 These tools may collect data such as:

    • IP address
    • Pages visited
    • Click behavior
    • Device and browser type

    7.3 Data collected may be transferred to the US and other third countries. We implement safeguards like IP anonymization and Standard Contractual Clauses where required.

    7.4 These cookies are not set without prior consent. You can manage or withdraw consent via our cookie banner.

    8. Cookies

    We use cookies for:

    • Session management (essential)
    • User preferences (functional)
    • Website analytics (optional, based on consent)
    • Conversion tracking and remarketing (optional, based on consent)

    You can find more information in our [Cookie Policy].

    9. Data Sharing

    We do not sell or rent your data. We may share it with:

    RecipientPurpose
    StripePayment processing
    Cloud hosting providersInfrastructure security and delivery (EU-based)
    Analytics & Ad platformsIf you give cookie consent
    Legal authoritiesOnly when required by law

    A full list of subprocessors is available upon request.

    10. International Transfers

    All personal data is processed within the European Economic Area (EEA). If data is transferred outside the EEA, it is done in accordance with GDPR-approved mechanisms (e.g. SCCs).

    11. Data Retention

    Data TypeRetention Period
    Account & BillingDuration of use + up to 7 years (legal)
    Container LogsAutomatically deleted after 3 days
    Analytics DataBased on cookie/tool defaults (e.g. 2 years for GA)
    Support MessagesUp to 12 months

    12. Your Rights

    Under the GDPR, you may:

    • Access your data
    • Correct or update your data
    • Request deletion (right to be forgotten)
    • Restrict or object to processing
    • Request data portability
    • Withdraw consent at any time

    To exercise any of these rights, email support@trackinghippo.io. We may ask for proof of identity.

    13. Data Security

    We implement strong technical and organizational measures including:

    • TLS encryption
    • Secure container infrastructure (EU-based)
    • Role-based access control (RBAC)
    • Auto-expiring logs and session limits
    • Continuous monitoring and patching

    14. Children

    Our platform is not intended for use by children under 16. We do not knowingly collect data from minors.

    15. Complaints

    You can file a complaint with:

    Gegevensbeschermingsautoriteit (Belgian DPA)
    Drukpersstraat 35, 1000 Brussels
    https://www.gegevensbeschermingsautoriteit.be

    16. Changes to This Policy

    We may update this Privacy Policy from time to time. The latest version will always be available at https://trackinghippo.io/privacy-policy. If the changes are material, we will notify you by email or through the platform.