Privacy Policy
Last Updated: March 26, 2026  •  Business Detonator  •  Memphis, Tennessee
This Privacy Policy explains how Business Detonator collects, uses, stores, and protects information about you and your business. We do not sell your data. We never will.
Table of Contents
  1. Who We Are
  2. What Data We Collect
  3. How We Use Your Data
  4. Third-Party Services
  5. Data Retention
  6. Your Data Rights
  7. Security Practices
  8. Cookies & Tracking
  9. Children's Privacy
  10. International Data Transfers
  11. Changes to This Policy
  12. Contact Us

1 Who We Are

Business Detonator is an AI-assisted content marketing service operated by Rob in Memphis, Tennessee, United States. We provide content creation, marketing automation, and related services to small and medium-sized businesses.

For the purposes of applicable data protection law, Business Detonator is the data controller for information collected through our website and services at businessdetonator.com and associated subdomains.

This Privacy Policy applies to all information collected through our website, client dashboard, onboarding forms, and the services we provide. It does not apply to third-party websites that may be linked from our platform.

2 What Data We Collect

2.1 Account & Business Information

When you create an account or complete our onboarding process, we collect:

2.2 Payment Information

Business Detonator uses Stripe, Inc. to process all payments. We do not store your credit card number, CVV, or full card data on our servers at any time. What we do store:

Your full payment card data is transmitted directly to and stored by Stripe under their PCI-DSS compliant systems. Stripe's privacy policy is available at stripe.com/privacy.

2.3 Content Created for You

We store all content created on your behalf, including:

This content is your intellectual property (per the Terms of Service) and is stored to facilitate service delivery, revision requests, and your content history.

2.4 Third-Party Access Credentials

For Done-For-You (DFY) clients, we may store access credentials to your GoHighLevel account, WordPress installation, or other platforms you authorize us to access for managed publishing. These credentials are:

2.5 Usage and Technical Data

When you access the Business Detonator client dashboard and website, we automatically collect:

2.6 Communications

We retain records of:

3 How We Use Your Data

We use the information we collect for the following purposes:

3.1 Service Delivery

To create and deliver content tailored to your business, publish content to your platforms (DFY), manage your CRM automation sequences, provide access to the client dashboard, and fulfill all obligations under the Service Agreement.

3.2 Billing and Account Management

To process your subscription payments via Stripe, send billing receipts and invoices, notify you of upcoming charges, manage subscription changes and cancellations, and enforce the terms of the subscription agreement.

3.3 Communications

To send service announcements, billing notifications, content delivery notices, support responses, and — with your consent — marketing updates about Business Detonator services. You may opt out of non-transactional communications at any time by emailing [email protected] or clicking the unsubscribe link in any marketing email.

3.4 Legal Compliance and Enforcement

To maintain records of agreement acceptance for legal enforceability, comply with applicable law and legal process, investigate potential violations of our Terms of Service, and enforce our rights under applicable law.

3.5 Service Improvement

To analyze aggregate usage patterns to improve platform features, identify and fix technical issues, and improve the quality of our content creation processes. Any such analysis uses aggregated or de-identified data wherever possible.

We do not: sell your data to third parties; use your business data to train publicly available AI models; share your content with other clients; or use your data for any purpose not listed in this policy without your prior consent.

4 Third-Party Services

We share data with third-party services strictly as necessary to operate the Business Detonator platform. The following table identifies the third parties we use, the data shared, and the purpose.

Service Data Shared Purpose Privacy Policy
Stripe, Inc. Name, email, billing address, payment card data (collected directly by Stripe) Payment processing, subscription management stripe.com/privacy
GoHighLevel (GHL) Content created for your account; your GHL credentials (DFY only) CRM automation and managed content publishing gohighlevel.com
Google (various tools) Content topics and keywords (no personally identifiable client data) SEO research, content optimization tools policies.google.com
Hetzner Online GmbH All platform data at rest (encrypted) Primary server infrastructure hosting (Germany) hetzner.com
HostMDS Static files, images, select client content files US-based file and asset hosting hostmds.com
n8n (workflow automation) Content workflow data, prompts, client configuration Automated content generation pipeline n8n.io

We require all third-party service providers to maintain appropriate security measures and prohibit them from using your data for their own marketing purposes. We are not responsible for the privacy practices of third-party platforms you independently use (e.g., your own WordPress host or social media accounts).

5 Data Retention

5.1 Active Clients

While your subscription is active, we retain all account information, content history, communications, and billing records indefinitely to support ongoing service delivery and your content history. You may request a copy of your data at any time (see Section 6).

5.2 After Cancellation

Following the effective cancellation date of your subscription, your data is retained for ninety (90) days in a deactivated state. This retention period exists to: (a) allow you to request a data export or content archive; (b) resolve any billing disputes; and (c) comply with our legal and financial record-keeping obligations.

After the 90-day post-cancellation period:

5.3 Backup Retention

System backups may contain copies of your data for up to thirty (30) days after deletion from active databases. These backups are not accessible in the ordinary course of business and are overwritten on a rolling schedule.

6 Your Data Rights

You have the following rights with respect to your personal and business data held by Business Detonator. To exercise any of these rights, contact us at [email protected] with "Data Rights Request" in the subject line. We will respond within thirty (30) days.

Right to Access
Request a copy of all personal and business data we hold about you in a portable format (CSV or JSON).
Right to Correction
Request correction of any inaccurate personal or business information in your account. You can also update most information directly in your account dashboard.
Right to Deletion
Request deletion of your personal data following account cancellation, subject to our legal retention obligations (billing records, agreement signatures).
Right to Data Portability
Request a structured, machine-readable export of your content history and account data for transfer to another service.
Opt Out of Marketing
Opt out of non-transactional marketing emails at any time via the unsubscribe link or by emailing us. Transactional emails (billing, service notices) cannot be opted out of while your account is active.
Right to Object
Object to specific uses of your data. We will assess and respond within 30 days. Some uses may be necessary to continue providing the service.

If you are located in the European Union, European Economic Area, or United Kingdom, you may also have additional rights under the GDPR or UK GDPR, including the right to lodge a complaint with your local supervisory authority. We treat all client data rights requests with equal priority regardless of geographic location.

7 Security Practices

We implement industry-standard technical and organizational measures to protect your data against unauthorized access, disclosure, alteration, or destruction. Our security practices include:

No security system is impenetrable. In the event of a data breach that materially affects your personal information, we will notify you by email within seventy-two (72) hours of becoming aware of the breach, in accordance with applicable law.

8 Cookies & Tracking

Business Detonator uses cookies and similar technologies on our website and client dashboard. We use:

We do not place advertising trackers on our site or share your browsing data with advertising platforms.

9 Children's Privacy

Business Detonator services are intended for use by businesses and are not directed at individuals under the age of 18. We do not knowingly collect personal information from minors. If you believe we have inadvertently collected personal information from a minor, please contact us immediately at [email protected] and we will promptly delete such information.

10 International Data Transfers

Business Detonator's primary operations and customer base are in the United States. Our primary server infrastructure is operated by Hetzner Online GmbH, located in Germany, within the European Economic Area (EEA). Data processed on Hetzner infrastructure is subject to European data protection standards.

If you are accessing our services from outside the United States, please be aware that your information may be transferred to, stored, and processed in the United States or Germany. By using our service, you consent to this transfer. We take appropriate measures to ensure that cross-border data transfers comply with applicable law.

11 Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. When we make material changes, we will notify active clients by email and update the "Last Updated" date at the top of this page. Your continued use of the service after notification constitutes acceptance of the updated policy.

We encourage you to review this policy periodically. The current version is always available at businessdetonator.com/legal/privacy.php.

12 Contact Us

For questions, concerns, or requests related to this Privacy Policy or your data rights, please contact:

Business Detonator — Privacy Inquiries
Memphis, Tennessee
Email: [email protected]
Subject line: "Privacy Request"

We are committed to working with you to resolve any privacy concerns. If we are unable to resolve your concern directly, you have the right to contact applicable regulatory authorities.

Summary: We collect what we need to serve you, we protect it carefully, we never sell it, and we delete it when the relationship ends. That's the short version.