Privacy Policy
This policy explains how Strapivo Ltd collects, uses, and protects your personal data when you visit strapivo.com, in accordance with the EU General Data Protection Regulation (GDPR) and Cyprus law.
Data controller
Strapivo Ltd
Georgiou Kalogeropoulou 28, Flat/Office 101
Mesa Geitonia, 4007 Limassol, Cyprus
Questions about this policy or your data: hello@strapivo.com
Data we collect
- Early-access requests. When you submit the early-access form we collect your name, email address, and, if you provide it, your organization.
- Usage & analytics. When you browse the site we collect device, browser, and operating-system information, the pages you view and actions you take, your referrer, and an approximate location derived from your IP address.
- Technical logs. Our hosting provider automatically records request data such as IP address, timestamp, and user agent for security and reliability.
We do not knowingly collect special categories of data, and the site is not directed at children.
Why & legal basis
- To process early-access requests and contact you about access — performance of pre-contractual steps at your request and our legitimate interest in building a waitlist (Art. 6(1)(b) and (f) GDPR).
- To understand and improve the site through analytics — your consent, which you give or decline via our cookie banner and may withdraw at any time (Art. 6(1)(a) GDPR).
- To keep the site secure and operational — our legitimate interest in protecting our infrastructure (Art. 6(1)(f) GDPR).
Where we rely on consent, you may withdraw it at any time without affecting prior processing.
Cookies & similar tech
We use PostHog (see below) for product analytics, which stores cookies or similar identifiers in your browser to recognise returning visitors and measure usage.
These analytics cookies are only set after you accept them via the consent banner shown on your first visit. If you decline, no analytics cookies are placed. Submitting the early-access form also counts as consent, so we can record your request.
The cookies and similar storage we may use are:
- PostHog analytics (e.g.
ph_…_posthog) — set only after you accept; stores an anonymous visitor and session identifier to measure usage. Expires after up to 12 months. - PostHog consent (e.g.
__ph_opt_in_out_…) — records whether you accepted or declined analytics. Expires after up to 12 months. - Cookie choice (
strapivo_cookie_consent_v1) — stored in your browser's local storage (not strictly a cookie) so we remember your banner choice. Persists until you clear your site data.
You can change or withdraw your choice at any time via the "Cookie settings" link in the footer, and you can block or delete cookies in your browser settings — neither will affect access to the site.
Service providers
We share data with the following providers, who process it on our behalf or as independent controllers for the purposes described:
- PostHog — product analytics and the early-access waitlist. Data is processed in the EU. posthog.com/privacy
- Vercel — website hosting and request logging. vercel.com/legal/privacy-policy
- Google Fonts — a web font is loaded from Google's servers, which receives your IP address when the page loads. policies.google.com/privacy
Where a provider processes data outside the European Economic Area, that transfer is covered by appropriate safeguards such as the EU Standard Contractual Clauses.
Retention
We keep early-access details until we have assessed your request and for a reasonable period afterwards to manage onboarding, unless you ask us to delete them sooner. Analytics and log data are retained only as long as needed for the purposes above, then deleted or anonymised.
Your rights
Under the GDPR you have the right to access, rectify, erase, restrict, or object to the processing of your personal data, and the right to data portability. To exercise any of these, email hello@strapivo.com.
You also have the right to lodge a complaint with your local supervisory authority. In Cyprus this is the Office of the Commissioner for Personal Data Protection — dataprotection.gov.cy.
Security
We take reasonable technical and organisational measures to protect personal data against loss, misuse, and unauthorised access. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
Changes
We may update this policy from time to time. Material changes will be reflected here with a new "last updated" date below.
Last updated: May 2026