PlaceScale Pro – Privacy Policy
Effective Date: February 10, 2026
Last Updated: February 10, 2026
Version: 1.0.0
Introduction
This Privacy Policy applies specifically to PlaceScale Pro, a WordPress plugin developed by Ruhani Rabin (“we,” “us,” or “our”). This policy explains how we collect, use, store, and protect information related to your use of the PlaceScale Pro plugin.
Important: This privacy policy covers only the PlaceScale Pro plugin and related services. For information about our website (ruhanirabin.com), please see our main Privacy Policy.
Information We Collect
1. License and Activation Data
When you activate PlaceScale Pro on your WordPress website, we collect and process:
What We Collect:
- License key (unique identifier for your purchase)
- WordPress site URL/domain where the plugin is installed
- Activation timestamp (date and time of first activation)
- License tier (Studio, Agency, or Unlimited plan)
- Number of active installations (to enforce site limits)
- Deactivation events (if you deactivate the license)
Why We Collect It:
- Validate your license is legitimate and active
- Prevent unauthorized use and piracy
- Enforce site limits according to your plan (1, 5, or unlimited sites)
- Provide technical support
- Send license renewal reminders (for annual plans)
Legal Basis (GDPR): Contractual necessity – we need this data to provide the software you purchased
Data Storage: Encrypted on our secure licensing server (hosted in Singapore, Asia)
Retention Period: Lifetime of your license + 3 years after expiration or deactivation
2. Plugin Update and Version Information
PlaceScale Pro automatically checks for updates to ensure you have the latest features and security patches.
What We Collect:
- Current plugin version number
- WordPress version
- PHP version
- Site URL (to deliver version-specific updates)
- Timestamp of update check
Why We Collect It:
- Deliver compatible plugin updates
- Ensure your WordPress environment can support the latest version
- Provide security patches when needed
Frequency: Checked when you visit the WordPress admin updates page
Legal Basis (GDPR): Legitimate interest – keeping your plugin secure and up-to-date
Data Storage: Not permanently stored; only used for real-time update delivery
Retention Period: Real-time check data is not retained
3. Support and Communication Data
When you contact us for support:
What We Collect:
- Your email address
- Your name (as provided)
- License key (to verify your account)
- Site URL
- Plugin version, WordPress version, PHP version
- Description of your issue
- Screenshots or files you choose to attach
- Support conversation history
Why We Collect It:
- Provide technical assistance
- Troubleshoot issues you’re experiencing
- Track support ticket resolution
- Improve our support quality
Legal Basis (GDPR): Legitimate interest and contractual necessity
Data Storage: Support portal (https://be.ruhanirabin.com/support-portal/) with encryption
Retention Period: 3 years after last interaction; deletable on request
4. Payment Information
Important: We do NOT directly collect or store payment card information.
All payments are processed through Stripe, a PCI-DSS Level 1 certified payment processor.
What Stripe Collects:
- Credit/debit card information
- Billing name and address
- Email address
- Transaction details
We Receive from Stripe:
- Order confirmation
- Last 4 digits of card (for your reference)
- Transaction ID
- Purchase date and amount
- Billing email
Payment Processing Server: https://be.ruhanirabin.com/ (hosted in Singapore, Asia)
For more information, see Stripe’s Privacy Policy.
Legal Basis (GDPR): Contractual necessity
Data Storage: Stripe’s secure servers (PCI-compliant) + our server in Singapore
Retention Period: 7 years for tax and financial compliance
How We Use Your Information
We use the collected information for the following purposes:
Core Plugin Functions
- License Validation: Verify your license is active and not exceeding site limits
- Update Delivery: Provide plugin updates and security patches
- Feature Access: Enable or restrict features based on your license tier
Communication
- Support: Respond to your help requests
- Updates: Notify you of critical security updates
- License Management: Send renewal reminders for annual licenses
Legal and Security
- Fraud Prevention: Detect and prevent license abuse
- Compliance: Meet legal and tax obligations
- Security: Protect against unauthorized access and piracy
What We Don’t Collect
PlaceScale Pro does NOT collect or access:
Your Generated Content
- Page templates you create
- Placeholder terms (services, locations, products, etc.)
- Generated page content, titles, or meta descriptions
- Post content from your WordPress database
Your Website Visitors
- No tracking of your site’s visitors
- No cookies set on your website
- No visitor behavior analytics
- No personal data of your customers/users
Plugin Usage Analytics
- We do NOT currently track which features you use
- No analytics on page generation counts
- No error reporting or telemetry
- (This may be added as an optional feature in future versions)
Your WordPress Database
- We cannot access your WordPress database
- We cannot read your posts, pages, or custom post types
- We do not have FTP or database credentials
Sensitive Server Data
- Database passwords
- FTP credentials
- SSH keys or server access
- Other plugin/theme license keys
Exception: If you explicitly share content via a support request (e.g., screenshots, exported data for troubleshooting), we only use it to resolve your issue and delete it after resolution.
Third-Party Services
PlaceScale Pro uses the following third-party services to function:
1. Server Infrastructure (Singapore, Asia)
Purpose: License validation, storage, and payment processing
Data Processed:
- License keys (encrypted)
- Site URLs
- Activation timestamps
- Payment transaction records (via Stripe)
Location: Singapore, Asia
Hosting Provider: https://be.ruhanirabin.com/
Security:
- Encrypted in transit (TLS 1.3)
- Encrypted at rest (AES-256)
- Access restricted to authorized personnel only
- Regular security audits
2. CloudFlare CDN
Purpose: Fast and secure delivery of plugin updates
Data Processed:
- IP address (temporarily, for security)
- HTTP request data
- Site URL during update checks
Location: Global network with data centers worldwide
Privacy Policy: CloudFlare Privacy Policy
3. Stripe (Payment Processing)
Purpose: Secure payment processing for license purchases
Data Processed:
- Payment card information (processed by Stripe, not stored by us)
- Billing information
- Transaction details
PCI Compliance: Stripe is PCI-DSS Level 1 certified (highest security level)
Privacy Policy: Stripe Privacy Policy
Planned Future Features (Not Currently Active)
The following data collection features are planned for future versions but are NOT currently implemented:
Usage Analytics (Future – Optional)
In future versions, we may offer optional usage analytics that you can enable to help us improve PlaceScale Pro:
Would Collect (If Enabled):
- Features used (e.g., CSV import, bulk generation)
- Number of pages generated (count only)
- Error events for debugging
Would NOT Collect:
- Your actual content or templates
- Personal visitor data
- Any identifiable information
Opt-In: This will be entirely optional and disabled by default
When Available: We’ll update this privacy policy and notify you before implementing any usage tracking
Data Storage and Security
How We Protect Your Data
Encryption:
- In Transit: All data transmitted uses TLS 1.3 encryption
- At Rest: License data encrypted with AES-256 encryption
- Hashing: License keys are hashed before storage
Access Controls:
- Only authorized team members can access licensing data
- Multi-factor authentication (MFA) required for admin access
- Role-based permissions (support staff cannot access billing data)
Infrastructure Security:
- AWS security best practices
- Regular security audits (quarterly)
- Automated vulnerability scanning
- Firewall protection and DDoS mitigation (CloudFlare)
Data Backups:
- Daily encrypted backups
- Stored in separate geographic regions
- Tested monthly for restore capability
Data Breach Notification
If we discover a data breach affecting PlaceScale Pro users:
We Will:
- Notify affected users within 72 hours via email
- Describe what data was compromised
- Explain immediate steps we’re taking
- Provide guidance on protecting your site
- Report to relevant authorities if required by law (e.g., GDPR)
You Should:
- Change your license key (we’ll provide a new one free of charge)
- Review your WordPress admin access logs
- Update passwords if you reused them elsewhere
Your Rights and Choices
Under GDPR, CCPA, and other privacy laws, you have the following rights:
1. Right to Access
What: Request a copy of all data we hold about your license and site
How: Contact us with your license key and site URL
Timeframe: We’ll respond within 30 days
Format: JSON or CSV, your choice
2. Right to Rectification
What: Correct inaccurate license data (e.g., wrong site URL after domain migration)
How:
- Update via PlaceScale Pro → License panel in WordPress admin, or
- Contact support to manually update
Timeframe: Immediate via plugin; 5 business days via support
3. Right to Erasure (“Right to be Forgotten”)
What: Request deletion of your data
How: Contact us with your license key
What Happens:
- License data anonymized (not fully deleted for anti-fraud)
- Support tickets fully deleted
- Analytics data purged
- Backup data removed within 30 days
Exceptions:
- Data required for legal/tax compliance (7 years retention)
- Aggregated anonymized statistics (cannot be traced back to you)
Timeframe: Processed within 30 days
4. Right to Restriction
What: Limit how we process your data
How:
- Deactivate your license (stops all data collection except manual support requests)
- Contact us to restrict specific processing activities
Effect: Plugin still functions; license validation still required
5. Right to Data Portability
What: Receive your data in a portable format
How: Request via email
Format: JSON or CSV
Includes:
- License activation history
- Support ticket transcripts
Timeframe: 30 days
6. Right to Object
What: Object to data processing
How:
- Request license deactivation
- Object to specific processing activities
Effect: License validation is still required for plugin to function
7. Right to Withdraw Consent
What: Withdraw consent for future data processing features
How: If we add optional features (like usage analytics), you can disable them in settings
Effect: Only applies to optional features; core license validation still required
8. Right to Lodge a Complaint
What: File a complaint with your data protection authority
How:
- EU: Contact your local Data Protection Authority (EDPB Members)
- UK: Information Commissioner’s Office (ICO) – https://ico.org.uk/
- Malaysia: Personal Data Protection Department – https://www.pdp.gov.my/
- California: California Privacy Protection Agency – https://cppa.ca.gov/
International Data Transfers
PlaceScale Pro is developed by Ruhani Rabin, based in Malaysia. Your data is primarily stored and processed in:
Primary Location:
- Singapore, Asia: License server and payment processing (https://be.ruhanirabin.com/)
Data Transfer Safeguards:
Within Asia-Pacific: Data remains within the Asia-Pacific region (Singapore) for license validation and storage.
Stripe Payments: Payment data may be transferred to Stripe’s servers globally. Stripe is certified under:
- EU-U.S. Data Privacy Framework
- Standard Contractual Clauses (SCCs)
- PCI-DSS Level 1 compliance
CloudFlare CDN: Update delivery uses CloudFlare’s global network. Data transfers are protected by:
- TLS 1.3 encryption
- CloudFlare’s privacy framework
- Minimal data retention (real-time only)
Data Subject Rights:
Your rights (access, deletion, etc.) apply regardless of where your data is processed or stored.
Data Retention
We retain different types of data for different periods:
| Data Type | Retention Period | Reason |
|---|---|---|
| License Activation Data | License lifetime + 3 years | Anti-fraud, support history |
| Payment Records | 7 years | Tax and legal compliance |
| Support Tickets | 3 years after last interaction | Reference and quality assurance |
| Update Check Logs | Not retained | Real-time only |
| Error Logs | 90 days | Debugging and security |
You Can Request Earlier Deletion: Contact us to delete your data before these periods expire (except where legally required to retain).
Children’s Privacy
PlaceScale Pro is a business tool intended for WordPress site administrators and business owners.
We do not knowingly collect data from children under 13 (or 16 in the EU).
If you believe a child has provided us with personal information, please contact us immediately at contact form and we will delete it.
Changes to This Policy
How We Update This Policy
We may update this Privacy Policy from time to time to reflect:
- Changes in data protection laws
- New plugin features
- User feedback
- Security improvements
How We Notify You
For Minor Changes (clarifications, formatting):
- Updated on this page with new “Last Updated” date
- No active notification
For Material Changes (new data collection, new third parties):
- Email notification to all active license holders
- Admin notice in WordPress dashboard on next login
- 30-day notice before changes take effect
Your Choices After Changes
- Continue Using: Acceptance of new policy
- Disable Analytics: If new analytics features are added
- Request Deletion: If you disagree with changes
- Refund: Within 30 days of material changes (if eligible)
Version History
| Version | Date | Changes |
|---|---|---|
| 1.0.0 | February 10, 2026 | Initial privacy policy for PlaceScale Pro |
Contact Us
For questions, concerns, or requests regarding this Privacy Policy or your data:
Support Portal
PlaceScale Pro Support: https://be.ruhanirabin.com/support-portal/
General Inquiries: Via contact form
Response Time
- General Questions: 5 business days
- Privacy Requests (Access, Deletion): 30 days (may extend to 60 days for complex requests)
- Security Concerns: 24 hours
Mailing Address
Ruhani Rabin
(Add your business address if required by your jurisdiction)
Legal Information
Data Controller: Ruhani Rabin
Business Name: RuhaniRabin.com
Jurisdiction: Malaysia (governed by Personal Data Protection Act 2010)
Applicable Laws:
- Personal Data Protection Act 2010 (PDPA) – Malaysia
- General Data Protection Regulation (GDPR) – European Union
- California Consumer Privacy Act (CCPA) – California, USA
- UK GDPR – United Kingdom
Quick Reference: How to Control Your Data
| What You Want | How to Do It |
|---|---|
| Deactivate license | PlaceScale Pro → License → Deactivate |
| Request data copy | Email via support portal with license key |
| Delete my data | Email requesting deletion via support portal |
| Update site URL | PlaceScale Pro → License → Deactivate → Reactivate with new URL |
| File a complaint | Contact your local data protection authority |
| Get support | Visit https://be.ruhanirabin.com/support-portal/ |
Additional Resources
- Main Website Privacy Policy: https://www.ruhanirabin.com/privacy-policy
- PlaceScale Pro EULA
- PlaceScale Pro Refund Policy
- PlaceScale Pro Support Policy
By using PlaceScale Pro, you acknowledge that you have read and understood this Privacy Policy.
© 2026 Ruhani Rabin. All rights reserved.