Privacy Policy
01. Corporate Controller & Scope
This Privacy Policy describes how Solstate LLC ("Solstate," "we," "us," or "our"), a Delaware limited liability company, collects, uses, protects, and discloses personal information obtained through our primary corporate website located at https://solstate.us (the "Site") and direct executive correspondence channels.
Solstate LLC acts as the data controller for information collected directly through this Site. This policy does not apply to the independent, operational data processing activities of our commercial subsidiaries, which maintain dedicated privacy notices and customer consent management systems tailored to their vertical use cases.
02. Zero-Tracker & Data Minimization Principles
In alignment with our engineering ethos of architectural sovereignty, Solstate LLC maintains a strict Zero-Tracker posture on this Site:
- We do NOT embed third-party advertising tracking pixels, cross-site cookies, or behavioral advertising trackers (e.g., Meta Pixel, Google Remarketing, TikTok Pixel).
- We do NOT sell, rent, monetize, or trade personal data or corporate contact records with commercial data brokers.
- We do NOT conduct automated profiling or programmatic behavioral categorization on Site visitors.
- We enforce end-to-end data minimization: we only process information that you voluntarily transmit or that is strictly required for network security.
03. Categories of Information Collected
We collect two primary categories of information:
A. Voluntarily Submitted Executive Inquiries
When you submit a message via the Executive Inquiry Desk or contact us directly via email, we collect your full name, corporate email address, organizational affiliation, inquiry classification (e.g., strategic partnership, corporate governance, carrier telephony), and the textual content of your message.
B. Technical Network & Security Telemetry
When you browse the Site, our web edge servers automatically log basic network telemetry strictly necessary for transmission and DDoS defense: IP address, timestamp of request, HTTP request method and resource path, user agent string, and TLS handshake version.
04. Purposes and Legal Basis for Processing
We process personal information under the following statutory legal bases:
- Legitimate Interests: To review and respond to institutional inquiries, strategic business proposals, technical integration briefs, and corporate governance verifications.
- Cybersecurity & Infrastructure Integrity: To prevent malicious cyberattacks, mitigate distributed denial of service (DDoS) events, and secure our hosting edge nodes.
- Legal & Regulatory Compliance: To comply with applicable federal, state, and international laws, respond to lawful subpoenas, and maintain corporate governance ledgers under Delaware law.
05. Data Isolation & Information Sharing
Solstate LLC enforces strict structural data separation:
We do not disclose your information to third parties, except in the following limited circumstances:
- Infrastructure Providers: Essential cloud edge hosting, DNS routing, and enterprise mail relay providers bound by strict confidentiality and data protection agreements.
- Operating Subsidiaries: When an inquiry specifically pertains to a vertical operating subsidiary (e.g., contractor onboarding for StayBooked, telephony carrier interconnects for Vox AI), the brief is routed internally to the relevant subsidiary engineering lead.
- Legal Mandates: Where disclosure is required by a valid court order, search warrant, grand jury subpoena, or binding directive from a regulatory authority with verified jurisdiction.
06. Data Retention & Security Architecture
All data in transit across our digital infrastructure is encrypted using modern cryptographic protocols (TLS 1.3). Inactive technical server telemetry logs are automatically purged on a rolling 90-day cycle. Corporate executive communications are retained only as long as necessary to fulfill the business engagement or satisfy statutory corporate recordkeeping mandates under Delaware corporate law.
07. Your Statutory Data Rights (CCPA, DOPPA, GDPR)
Depending on your jurisdiction (including the State of Delaware, California, the European Economic Area, and the United Kingdom), you hold specific statutory rights regarding your personal data:
- Right of Access / Confirmation: Right to know what personal data we hold and request a copy.
- Right to Rectification: Right to correct inaccurate or incomplete corporate records.
- Right to Erasure ("Right to be Forgotten"): Right to request deletion of personal information, subject to statutory recordkeeping requirements.
- Right to Non-Discrimination: We will never discriminate against any party for exercising any privacy right.
To submit a verified data rights request, email privacy@solstate.us. We verify requestor identity before processing and respond within statutory timeframes (typically within 30 days).
08. Data Protection Officer & Contact Channel
For inquiries regarding this Privacy Policy, corporate data governance, or regulatory privacy compliance, contact our designated privacy compliance team: