Privacy Policy

Effective Date: May 7, 2026
Last Updated: May 7, 2026

WebHaus Co. (“WebHaus,” “we,” “us,” or “our”) respects your privacy. This Privacy Policy explains how we collect, use, disclose, and protect information when you visit webhausco.com (the “Site”) or engage us for web design, SEO, analytics, or related services (collectively, the “Services”).

By using the Site or Services, you agree to the practices described in this Policy. If you do not agree, please do not use the Site or Services.


1. Who We Are

WebHaus Co. is a web design and digital marketing studio operated by Thomas Guardado, headquartered in Connecticut, United States. We build fast, SEO-optimized websites for small businesses across the U.S.

Contact for privacy matters:
Email: [INSERT EMAIL]
Mailing Address: [INSERT ADDRESS]


2. Information We Collect

We collect information in three ways: (a) information you give us, (b) information collected automatically, and (c) information from third parties.

a. Information You Provide

When you contact us, request a proposal, schedule a consultation, or hire us, you may provide:

b. Information Collected Automatically

When you visit the Site, we and our analytics providers may automatically collect:

c. Information From Third Parties

If we work on your existing website or campaigns, we may receive analytics, search, advertising, or CRM data through tools you authorize us to access, including Google Analytics, Google Search Console, Google Ads, Google Business Profile, Meta Ads, Bing Webmaster, Semrush, BrightLocal, and similar platforms.

We do not knowingly collect information from children under 13. If you believe a child has provided us information, contact us and we will delete it.


3. How We Use Information

We use the information we collect to:

Legal bases (for visitors in the EEA/UK): performance of a contract, our legitimate interests (operating and improving our business), your consent, and compliance with legal obligations.


4. How We Share Information

We do not sell your personal information. We share information only as described below:


5. Healthcare Clients (HIPAA-Aware Services)

For medical, dental, and other healthcare clients, we offer HIPAA-aware web design. We do not intentionally collect Protected Health Information (PHI) through this Site. Where our Services involve handling PHI on a client’s behalf, we will sign a Business Associate Agreement (BAA) and limit our use of PHI to what is permitted under that BAA and HIPAA.


6. Data Retention

We retain personal information only as long as needed for the purposes described, to comply with legal, tax, and accounting obligations, to resolve disputes, and to enforce agreements. Inquiry and prospect data is typically retained for up to 24 months after last contact unless you ask us to delete it sooner. Client records are retained for the duration of the engagement plus a reasonable period thereafter.


7. Cookies and Tracking Technologies

The Site uses cookies and similar technologies for essential functionality, analytics, and (where applicable) conversion tracking. Categories may include:

You can control cookies through your browser settings or, where available, our cookie banner. Disabling cookies may affect Site functionality. We honor Global Privacy Control (GPC) signals as a request to opt out of “sale” or “sharing” of personal information where applicable.


8. Your Privacy Rights

Depending on where you live, you may have the following rights:

California (CCPA/CPRA), Connecticut (CTDPA), Virginia, Colorado, Texas, and other U.S. state residents: you have the rights above and may appeal a denied request by replying to our response. We do not sell personal information and do not knowingly process sensitive personal information for purposes that require an opt-out.

EEA/UK residents (GDPR): you also have the right to lodge a complaint with your supervisory authority.

To exercise any right, email [INSERT EMAIL]. We will verify your request and respond within the time required by law (generally 45 days). You may use an authorized agent where permitted.


9. Email and SMS Communications

If you opt into marketing emails, you can unsubscribe any time using the link in the email or by contacting us. We will continue to send transactional messages (proposals, invoices, project updates) related to your engagement.


10. Data Security

We use reasonable administrative, technical, and physical safeguards to protect personal information, including encrypted transport (HTTPS), least-privilege access, and reputable hosting and SaaS providers. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.


11. International Data Transfers

We are based in the United States. If you access the Site or Services from outside the U.S., your information will be transferred to, stored, and processed in the U.S. Where required, we use appropriate safeguards (such as Standard Contractual Clauses) for international transfers.


The Site may link to third-party websites or services. We are not responsible for their privacy practices. Review their policies before sharing information.


13. Do Not Track

Our Site does not respond to browser “Do Not Track” signals at this time. We do honor Global Privacy Control (GPC) where applicable as described in Section 7.


14. Changes to This Policy

We may update this Policy from time to time. The “Last Updated” date above shows when it was last revised. Material changes will be posted on this page and, where appropriate, communicated by email.


15. Contact Us

Questions, requests, or complaints about this Policy or our privacy practices:

WebHaus Co.
Attn: Privacy
Email: hello@webhausco.com
Web: https://webhausco.com