Skip to content
R
roispends.
[ Privacy ]

Privacy, in plain English.

We collect what you give us. We don't sell it. We don't share it with advertisers. Below is the full version — written so you can actually read it.

Last updated · 2026-04-29

01

What we collect.

We collect only what you give us when you book an audit, request a call, or email us — name, work email, company, website, monthly ad spend bracket, channels in use, and free-text context. We collect anonymous, aggregated analytics about how the site is used (page views, time-on-page, referrer) via privacy-respecting tools.

02

Why we collect it.

To respond to inbound enquiries, send the requested audit brief, schedule kickoff calls, and improve the site. We do not sell, rent, or trade personal data. Ever.

03

How long we keep it.

Audit-form submissions: 24 months unless we engage further (then for the engagement lifetime + 7 years for tax/regulatory compliance). Newsletter / email list contacts: until you unsubscribe. Anonymous analytics: 14 months rolling.

04

Who we share it with.

Subprocessors used to run the business: email service provider (transactional + marketing), CRM, hosting (Vercel), error monitoring (Sentry), and analytics. Each is bound by data-processing agreements consistent with GDPR and CCPA. We do not share data with advertisers.

05

Cookies.

Strictly-necessary cookies for the site to function. No advertising or third-party tracking cookies on roispends.com itself. Where we link to client work or third-party platforms, those services have their own cookie policies.

06

Your rights.

Access, correction, deletion, portability, objection, and withdrawal of consent — all available on request to hello@roispends.com. We respond within 30 days. EU/UK residents have the right to lodge a complaint with their supervisory authority. California residents have CCPA rights including the right to know, delete, and opt out.

07

Data transfers.

Our infrastructure runs primarily in the United States. Where personal data is transferred internationally, we rely on standard contractual clauses or equivalent safeguards.

08

Security.

We use industry-standard encryption in transit (TLS 1.2+) and at rest, principle-of-least-privilege access controls, and incident-response procedures. No system is perfectly secure — we will notify affected parties within 72 hours of any incident requiring disclosure.

09

Children.

The site is not directed to anyone under 16. We do not knowingly collect data from minors.

10

Changes.

Material changes posted here with an updated effective date. We do not retroactively reduce protections without notice.

11

Contact.

Privacy questions or rights requests: hello@roispends.com.

[ Plain English ]

We try to write legal copy you can actually read. If anything here is unclear or you want a translation, email hello@roispends.com.