1. Who we are
TisHost Ltd (“TisHost”) operates this website and the services sold through it, and is responsible for the personal data described here.
2. What we collect
We collect only what running the service requires:
- Account details — name, email address, phone number, company name and billing address. These appear on your invoices and, for domains, are supplied to the registrar as registrant details.
- Order and billing records — what you bought, what you paid, and the reference the payment provider returned. We do not receive or store your full card number.
- Identity documents — only where a service or a payment provider requires verification. These are stored encrypted and are deleted once the check is complete or the account is closed.
- Support conversations — the tickets and emails you send us, and our replies.
- Technical records — IP address, browser and the pages you request, kept in server logs so we can investigate faults and abuse.
- Sign-in records — the device and address of each sign-in, so we can alert you to one you do not recognise.
3. Why we use it
To provide and support the services you buy, to bill for them, to prevent fraud and abuse, and to meet our legal and tax obligations. We send service notices — invoices, renewals, outages, security alerts — because they are part of the service, not marketing.
We send marketing email only if you have opted in, and every marketing email carries an unsubscribe link.
5. Signing in with Google, GitHub or Facebook
If you sign in with an external account, that provider tells us your name, your email address and an identifier for the account. We use them to create or find your account here and for nothing else.
We do not receive your password with that provider, and we do not post anything to those accounts. You can remove the connection at any time by contacting support, after which you sign in with your email address and password.
6. How long we keep it
Account and billing records are kept for as long as you hold an account and afterwards for the period tax law requires. Server and sign-in logs are kept for a limited operational period and then discarded. Identity documents are deleted once the check they were needed for is complete.
7. Your choices
You can view and correct most of your details yourself in the client area. You can ask us for a copy of the personal data we hold about you, ask us to correct it, or ask us to delete it.
8. Deleting your data
To have your account and personal data deleted, open a support ticket from the client area, or email us from the address on your account, asking for deletion. We will confirm the request and complete it within 30 days.
Some records must be kept even after deletion: paid invoices and their amounts are retained for the period tax law requires, and domain registrant details held by a registry are governed by that registry rather than by us. We will tell you what has been retained and why.
If you signed in with an external account and want only that connection removed rather than the whole account, say so in the request.
9. Security
The site is served over HTTPS, passwords are stored hashed, and identity documents are encrypted at rest. Access to customer data is limited to staff who need it to do their work. No system is perfectly secure, so we also offer passkeys and sign-in alerts, and we recommend enabling them.
11. Contact
For anything in this policy, including a data request, contact us at the address below.
Contact details
TisHost Ltd
Malgram, Bogura Sador, Bangladesh
09611 677170