Personal Data Storage & Transfer - Full

Use of Personally Identifiable Information (PII)

Serverly.host is committed to protecting the privacy and security of our customers’ personally identifiable information (PII). This policy outlines how we collect, use, store, and disclose PII in connection with our hosting and related services, in compliance with applicable data protection regulations.

Data Storage and Geographic Locations

Your PII is stored and processed in the following locations, depending on the service:

  • Customer account and billing data: Stored securely in Singapore
  • Our Email Data: Hosted in Phoenix, Arizona (USA) and Singapore
  • Backups: Provided on servers mostly in Thailand, and in special cases, Singapore (such as legacy OS VPS). Customers who do not want to have backups stored in Singapore OR Thailand specifically, may contact support to check their current backup location or request that backup services be disabled for their server[s] or Hosting.
  • Shared hosting (cPanel Hosting) account file data: Stored on servers located in Singapore
  • VPS and dedicated server file data (Thailand & AEC): Stored on servers in Bangkok, Thailand
  • Domain registration information: Customer details are submitted to the relevant domain registrar and published in public WHOIS databases as required by ICANN and TLD registries (e.g., Verisign for .com, Public Interest Registry for .org). Customers can request privacy protection at no extra charge – please contact our support team if you would like privacy protection applied (note, once applied it will not be easy for someone to verify who owns or manages the domain.

Definition of Personally Identifiable Information (PII)

PII refers to any information that can be used to identify, contact, or locate an individual, either alone or when combined with other data. This includes, but is not limited to:

  • Full name
  • Email address
  • Physical and billing address
  • Phone number
  • Government-issued identification numbers (e.g., tax ID)
  • Payment information (processed via third parties)
  • IP addresses (in certain contexts)
  • Domain registration details

Data Collection and Use

We collect PII when you register for services, manage your account, submit support requests, or communicate with us. This information is used to:

  • Provide, maintain, and improve our services
  • Process payments and issue invoices
  • Respond to customer inquiries and support needs
  • Comply with legal and regulatory obligations
  • Prevent fraud and enhance security

Data Sharing and Transfers

We may share PII under the following circumstances:

  • With Hong Kong authorities: Customer data stored in Singapore may be shared with entities in Hong Kong when required by law, such as for accounting records, audit compliance, or in response to valid government requests.
  • With domain registries: As mandated by ICANN, domain contact information is shared with the appropriate TLD registry and may be publicly accessible via WHOIS.
  • With payment processors: During checkout, customers choose their preferred payment method. PII necessary for transactions (e.g., name, email, billing address) is shared directly with third-party processors such as Stripe, PayPal, and Cryptomus. These providers operate under their own privacy policies and security standards – please review them before purchasing if this is concerning for you.
  • With trusted service providers: We engage with vendors for technical, operational, or compliance purposes, all of whom are bound by contractual obligations such as their SLA, terms of service, etc., to protect PII. However, many of our vendors do not have direct access to customer data.

Cross-border data transfers are secured to the best of our abilities, and we ensure appropriate safeguards are in place regarding data access.

Data Protection Measures

We implement technical and organizational safeguards to protect PII, including:

  • Encryption of data at rest and in transit
  • Role-based access controls (RBAC)
  • Regular security audits and monitoring
  • Logging and audit trails for data access
  • Secure infrastructure configurations
We follow a “need-to-know” principle, limiting access to PII only to authorized personnel.

Data Retention

We retain PII only for as long as necessary to fulfill the purposes outlined in this policy, comply with legal obligations, resolve disputes, and enforce agreements. Retention periods vary by data type and jurisdiction. In most cases, this is 7 years (it can be up to 10 years).

Customer Rights and Choices

You have the right to:

  • Access, correct, or update your PII
  • Request deletion of your data, subject to legal and contractual obligations (this is only sometimes possible in the case that no payment has been made and no services have been used)
  • Opt out of non-essential communications
  • Disable backup services if you do not wish data to be stored in Singapore

To exercise these rights, please contact our support team or make the changes to your account in our client area.

Wait! Don’t Miss Out on 10% Off!

Before you go, here’s a special offer: Get 10% offyour next VPS purchase. Click the button to claim your discount and enjoy big savings!