Privacy policy

How we collect, use, retain, share, and protect information connected to our services.

Last updated: August 2, 2026

01Who controls your information

INGEN Cloud is the data controller for personal information we collect to provide our website, customer accounts, hosting services, billing, and support. Questions or GDPR requests may be sent to legal@ingencloud.io.

02Information we collect

  • Account and contact information, including your name, company name, email address, telephone number, billing address, country, and account credentials.
  • Customer-management information processed through WHMCS, including account records, products and services ordered, invoices, transaction references, support tickets, communications, and account activity.
  • Payment and transaction information associated with Stripe or PayPal payments, which may include payer name, email address, billing details, payment method type, limited payment-method details, transaction identifier, amount, currency, payment status, timestamps, refunds, disputes, and fraud or risk indicators. Stripe and PayPal handle complete card, bank, or wallet credentials under their own systems and privacy terms; INGEN Cloud does not intend to store complete payment credentials.
  • Service and technical information, including assigned resources, service configuration, usage records, device and browser information, request and authentication logs, and diagnostic or network data needed to operate and troubleshoot services.
  • IP addresses and related timestamps. We log this information for account security, authentication, fraud and abuse prevention, incident investigation, service integrity, and protection of our customers and network.
  • Messages, support requests, files, and other information you choose to send to us.

03Where information comes from

We collect information directly from you, automatically when you use our website or services, from WHMCS when it manages customer and billing activity, and from Stripe or PayPal when they process a payment. We may also receive security, fraud, or service information from our infrastructure and monitoring providers.

04Why we process information

  • To enter into and perform our contract with you, including provisioning, maintaining, billing for, and supporting services.
  • For our legitimate interests in authenticating users, logging IP addresses, preventing fraud and abuse, securing accounts and infrastructure, investigating incidents, improving reliability, and enforcing our agreements, provided those interests are not overridden by your rights.
  • To comply with legal obligations, including accounting, tax, sanctions, payment, regulatory, and lawful disclosure requirements.
  • With your consent where consent is required, such as for optional communications or non-essential cookies. You may withdraw consent at any time without affecting processing that was lawful before withdrawal.

05WHMCS, Stripe, and PayPal

WHMCS supports customer accounts, ordering, invoicing, service administration, and support. Stripe and PayPal process payments and may perform identity, security, compliance, and fraud screening. These providers receive only the information reasonably required for the relevant service, but they may also process information under their own legal obligations and privacy policies. PayPal may act as an independent data controller for its payment processing activities.

06Sharing and disclosure

We do not sell personal information. We disclose information to WHMCS, payment processors, infrastructure, security, monitoring, communications, and professional service providers only as reasonably necessary to operate and protect the business. We may also disclose information when required by law, to establish or defend legal claims, or to protect the rights, safety, and security of INGEN Cloud, our customers, or others.

07Retention

We keep personal information only for as long as necessary for the purpose for which it was collected. We determine retention using the duration of the customer relationship, the life of the relevant service or support matter, security and fraud-prevention needs, backup cycles, limitation periods, dispute resolution, and applicable accounting, tax, payment, and legal requirements. We delete or anonymize information when it is no longer required, unless continued retention is legally permitted or required.

08Security

We use reasonable administrative, technical, and physical safeguards appropriate to the information and services involved. These include access controls, authentication records, security monitoring, IP logging, and provider controls. No system can guarantee absolute security, and customers remain responsible for protecting credentials and keeping their software current.

09International transfers

Our providers and infrastructure may process information outside your country, including outside the European Economic Area. Where GDPR requires a transfer safeguard, we rely on an adequacy decision, approved standard contractual clauses, or another lawful transfer mechanism. You may contact legal@ingencloud.io for information about safeguards applicable to your data.

10Your GDPR rights

Subject to applicable law, you may request access to, correction of, deletion of, or restriction of your personal information; object to processing based on legitimate interests; and receive eligible information in a portable format. Where processing relies on consent, you may withdraw it at any time. You may also lodge a complaint with the data protection supervisory authority in the country where you live or work, or where you believe an infringement occurred.

Send requests to legal@ingencloud.io. We may need to verify your identity and may retain information where continued processing is required or permitted by law. We will respond within the time required by applicable data protection law.

11Automated decisions

INGEN Cloud does not use your personal information to make solely automated decisions that produce legal or similarly significant effects. Stripe and PayPal may use automated systems for fraud, risk, identity, and payment screening under their own privacy terms. Contact the relevant provider for rights relating to a decision made independently by that provider.

12Cookies

Our website and customer systems may use cookies or similar storage needed for sessions, authentication, security, checkout, and customer preferences. If we introduce non-essential cookies that require consent, we will request that consent and provide an appropriate choice before using them.

13Policy changes

We may update this policy as our services, providers, or legal obligations change. The date at the top of this page identifies the current version. Material changes will be communicated when required by law.