Skip to content

Privacy Policy

Last updated: March 2026

This Privacy Policy describes how Midhoster ("we," "us," or "our") collects, uses, and shares information about you when you use our website and cloud hosting services ("Services"). We are committed to protecting your privacy and processing your data in accordance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

1. Information We Collect

Account Information: When you create an account, we collect your name, email address, company name (if provided), and billing information including payment card details (processed securely through our payment provider).

Usage Data: We automatically collect information about how you interact with our Services, including IP addresses, browser type, device information, pages visited, and timestamps.

Service Data: We collect technical data necessary to provide our hosting services, including server configurations, resource usage metrics, and log files.

Communications: When you contact our support team, we collect the content of your messages along with any attachments you provide.

2. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our Services
  • Process transactions and send billing notifications
  • Respond to your requests and provide technical support
  • Send service-related communications and security alerts
  • Monitor and analyze usage patterns to improve performance and reliability
  • Detect, prevent, and address technical issues and security threats
  • Comply with legal obligations and enforce our Terms of Service

3. Information Sharing

We do not sell your personal data. We may share your information with:

  • Service Providers: Third-party vendors who assist us in providing our Services (payment processors, data center operators, monitoring tools). These providers are contractually bound to protect your data.
  • Legal Requirements: When required by law, subpoena, or other legal process, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
  • Business Transfers: In connection with a merger, acquisition, or sale of assets, in which case your data would remain subject to this Privacy Policy.

4. Cookies & Tracking

We use essential cookies required for the operation of our website and Services. We also use analytics cookies to understand how visitors interact with our website. You can control cookie preferences through your browser settings. Essential cookies cannot be disabled as they are necessary for core functionality.

5. Data Security

We implement appropriate technical and organizational measures to protect your data, including encryption in transit (TLS 1.3) and at rest (AES-256), access controls, regular security audits, and intrusion detection systems. All data is stored in EU-based data centers with ISO 27001 certification.

While we strive to protect your data, no method of transmission or storage is 100% secure. We cannot guarantee absolute security.

6. Your Rights

Under GDPR, you have the right to:

  • Access: Request a copy of the personal data we hold about you.
  • Rectification: Request correction of inaccurate data.
  • Erasure: Request deletion of your personal data ("right to be forgotten").
  • Restriction: Request that we limit how we process your data.
  • Portability: Receive your data in a structured, machine-readable format.
  • Objection: Object to our processing of your personal data.
  • Withdraw Consent: Where processing is based on consent, withdraw that consent at any time.

To exercise any of these rights, contact us at [email protected]. We will respond within thirty (30) days.

7. Data Retention

We retain your personal data for as long as necessary to provide our Services and fulfill the purposes described in this policy. Account data is retained for the duration of your account and for a reasonable period thereafter (typically 90 days) for backup and legal purposes. Billing records are retained for seven (7) years as required by applicable tax laws.

8. Children's Privacy

Our Services are not directed to individuals under the age of 16. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.

9. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of material changes by email or through a prominent notice on our website at least thirty (30) days before changes take effect. We encourage you to review this policy regularly.

10. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

[email protected]

You also have the right to lodge a complaint with a supervisory authority if you believe your data protection rights have been violated. The lead supervisory authority for Midhoster is the Autoriteit Persoonsgegevens (Dutch Data Protection Authority).