Data Protection & Privacy

Privacy Policy

Effective Date: July 8, 2026 Data Controller: Solstate LLC (Delaware, USA) Zero-Tracker Holding Posture

01. Corporate Controller & Scope

This Privacy Policy describes how Solstate LLC ("Solstate," "we," "us," or "our"), a Delaware limited liability company, collects, uses, protects, and discloses personal information obtained through our primary corporate website located at https://solstate.us (the "Site") and direct executive correspondence channels.

Solstate LLC acts as the data controller for information collected directly through this Site. This policy does not apply to the independent, operational data processing activities of our commercial subsidiaries, which maintain dedicated privacy notices and customer consent management systems tailored to their vertical use cases.

02. Zero-Tracker & Data Minimization Principles

In alignment with our engineering ethos of architectural sovereignty, Solstate LLC maintains a strict Zero-Tracker posture on this Site:

  • We do NOT embed third-party advertising tracking pixels, cross-site cookies, or behavioral advertising trackers (e.g., Meta Pixel, Google Remarketing, TikTok Pixel).
  • We do NOT sell, rent, monetize, or trade personal data or corporate contact records with commercial data brokers.
  • We do NOT conduct automated profiling or programmatic behavioral categorization on Site visitors.
  • We enforce end-to-end data minimization: we only process information that you voluntarily transmit or that is strictly required for network security.

03. Categories of Information Collected

We collect two primary categories of information:

A. Voluntarily Submitted Executive Inquiries

When you submit a message via the Executive Inquiry Desk or contact us directly via email, we collect your full name, corporate email address, organizational affiliation, inquiry classification (e.g., strategic partnership, corporate governance, carrier telephony), and the textual content of your message.

B. Technical Network & Security Telemetry

When you browse the Site, our web edge servers automatically log basic network telemetry strictly necessary for transmission and DDoS defense: IP address, timestamp of request, HTTP request method and resource path, user agent string, and TLS handshake version.

04. Purposes and Legal Basis for Processing

We process personal information under the following statutory legal bases:

  • Legitimate Interests: To review and respond to institutional inquiries, strategic business proposals, technical integration briefs, and corporate governance verifications.
  • Cybersecurity & Infrastructure Integrity: To prevent malicious cyberattacks, mitigate distributed denial of service (DDoS) events, and secure our hosting edge nodes.
  • Legal & Regulatory Compliance: To comply with applicable federal, state, and international laws, respond to lawful subpoenas, and maintain corporate governance ledgers under Delaware law.

05. Data Isolation & Information Sharing

Solstate LLC enforces strict structural data separation:

We do not disclose your information to third parties, except in the following limited circumstances:

  • Infrastructure Providers: Essential cloud edge hosting, DNS routing, and enterprise mail relay providers bound by strict confidentiality and data protection agreements.
  • Operating Subsidiaries: When an inquiry specifically pertains to a vertical operating subsidiary (e.g., contractor onboarding for StayBooked, telephony carrier interconnects for Vox AI), the brief is routed internally to the relevant subsidiary engineering lead.
  • Legal Mandates: Where disclosure is required by a valid court order, search warrant, grand jury subpoena, or binding directive from a regulatory authority with verified jurisdiction.

06. Data Retention & Security Architecture

All data in transit across our digital infrastructure is encrypted using modern cryptographic protocols (TLS 1.3). Inactive technical server telemetry logs are automatically purged on a rolling 90-day cycle. Corporate executive communications are retained only as long as necessary to fulfill the business engagement or satisfy statutory corporate recordkeeping mandates under Delaware corporate law.

07. Your Statutory Data Rights (CCPA, DOPPA, GDPR)

Depending on your jurisdiction (including the State of Delaware, California, the European Economic Area, and the United Kingdom), you hold specific statutory rights regarding your personal data:

  • Right of Access / Confirmation: Right to know what personal data we hold and request a copy.
  • Right to Rectification: Right to correct inaccurate or incomplete corporate records.
  • Right to Erasure ("Right to be Forgotten"): Right to request deletion of personal information, subject to statutory recordkeeping requirements.
  • Right to Non-Discrimination: We will never discriminate against any party for exercising any privacy right.

To submit a verified data rights request, email privacy@solstate.us. We verify requestor identity before processing and respond within statutory timeframes (typically within 30 days).

08. Data Protection Officer & Contact Channel

For inquiries regarding this Privacy Policy, corporate data governance, or regulatory privacy compliance, contact our designated privacy compliance team:

Data Controller: Solstate LLC
State of Formation: Delaware, United States
Privacy Officer Email: privacy@solstate.us
Legal & Compliance: legal@solstate.us