Sauce Technologies · Privacy Policy

Privacy Policy.

Effective
May 12, 2026
Last updated
May 12, 2026

We try to write privacy policies the way we wish other companies would — in plain English, without burying the bad parts. If something here is unclear, email [email protected] and we’ll explain it directly.

§ 01

What we collect.

  • Booking form data. Name, email, phone, company, and the notes you choose to leave when you book a call.
  • Server logs. IP address, browser type, referring URL, and pages visited — captured via Plausible Analytics. No browser cookies and no cross-site profile. Sauce Technologies does set one localStorage entry on saucetech.io (an opt-out flag for the in-house Tweaks panel, only ever reachable behind ?edit=1). No third-party trackers.
  • Client business data. Contacts, billing records, and access credentials handled during an engagement. Stored in 1Password Business and on your own infrastructure. Never copied to systems Sauce controls.
§ 02

What we don't collect.

  • No tracking pixels. Not Meta, not Google, not LinkedIn, not anyone.
  • No advertising profiles. We do not run paid ads against your data.
  • We never sell, rent, or exchange any data with third parties.
  • No cross-web profiling. What you do on saucetech.io stays on saucetech.io.
§ 03

How we use it.

Booking submissions go to one Calendly inbox so we can schedule the call.

Server logs are reviewed only to keep the site running and to investigate abuse.

Client business data is used only to perform the work you hired Sauce Technologies to do. We do not use your data to train models, build datasets, or develop new products.

§ 04

Who we share it with.

Sauce Technologies uses a small set of named infrastructure providers and discloses each one here:

  • Calendly — call scheduling (US).
  • Plausible Analytics — cookieless site analytics (EU).
  • Resend — transactional email delivery (US).
  • Cloudflare — CDN, DNS, and edge security (global).
  • Supabase — booking record storage (US).
  • Google Fonts — web typography. Google receives your IP and browser headers when loading fonts.googleapis.com and fonts.gstatic.com. No accounts, no cookies, no profile.

We audit each provider annually. We never share data with marketers, data brokers, or aggregators.

EU customers. Sauce Technologies relies on the EU–US Data Privacy Framework and on Standard Contractual Clauses (SCCs) where each provider supports them, for the transfer of personal data from the EU/UK to the United States.

§ 05

How long we keep it.

  • Booking forms. 24 months from submission. Then deleted.
  • Server logs. 30 days. Then deleted.
  • Client business records. The duration of the engagement plus 24 months for tax and audit. Then deleted.

Earlier deletion on request: email [email protected] and we respond within seven days.

§ 06

Your rights.

You can know what we have on you, correct it, delete it, or export it. Sauce Technologies honors the relevant rights under GDPR, UK-GDPR, and CCPA regardless of where you live. Response window: seven days.

Send rights requests to [email protected].

§ 07

Security.

  • TLS 1.3 in transit. AES-256 at rest.
  • Short-lived tokens issued through 1Password Business. No long-lived shared credentials.
  • Quarterly access audits. 24-hour credential rotation on staff departure.

Breach playbook. Scope determined within one hour of confirmation. Affected credentials revoked. Affected parties notified without undue delay and, in any case, within 72 hours of confirmation — aligned with GDPR Art. 33. Evidence preserved. Post-mortem published within seven days.

§ 08

Changes to this policy.

Material changes are announced 30 days in advance by email to anyone who has booked a call with us in the past 24 months. Non-material updates (typo fixes, clarifications) ship silently with the “Last updated” date bumped at the top of this page.

§ 09

Contact.

Privacy questions: [email protected].

General contact: [email protected].

Mail: Sauce Technologies LLC, Libertyville, IL 60048.