Skip to main content
AppFrameBack to AppFrame
Your data

Last updated
23 July 2026

Privacy notice

Prelaunch notice

This legal text reflects the current prelaunch setup and should receive a final legal review before the public launch.

This notice explains how Estopia Engineering Ltd handles personal data on the AppFrame prelaunch website. AppFrame does not create user accounts and does not accept screenshot uploads on this website.

Controller and contact

The controller is Estopia Engineering Ltd, 3 Braemount, Cowdenbeath, KY4 9RB, United Kingdom (company number SC874827). For privacy requests or questions, email [email protected].

Information we process

  • Early access: your email address, consent record, submission time and an optional referral source from the page URL.
  • Design partner applications: your name, email, app name, optional app or social link, development stage, Shipaton participation, pricing preference and optional message.
  • Website delivery and security: technical request information such as IP address, user agent, requested URL and timestamps may be processed temporarily on our production server and by our infrastructure provider.
  • Optional analytics: after consent, a random pseudonymous identifier, page and campaign context, device and browser details, interaction and scroll data, performance data, error diagnostics, heatmaps and privacy-masked session replays.

Purposes and legal bases

Early access updates
Your consent under Article 6(1)(a) GDPR / UK GDPR. You may withdraw it at any time without affecting earlier lawful processing.
Design partner application
Steps taken at your request before a possible agreement under Article 6(1)(b).
Referral measurement
Our legitimate interest in understanding which community links are useful, under Article 6(1)(f). We store only the short referral label, not a full browsing history.
Hosting and abuse prevention
Our legitimate interests in operating a secure, reliable website under Article 6(1)(f).
PostHog analytics
Your consent under Article 6(1)(a). The site works the same if you refuse.

Optional PostHog analytics

PostHog is not loaded and receives no events before you choose “Allow analytics”. After consent, we measure page visits and exits, landing source and campaign labels, section and scroll depth, navigation and call-to-action clicks, demo and FAQ interactions, form funnel progress, successful submissions, Web Vitals, unhandled technical errors, dead and repeated clicks, heatmaps and session replays. This helps us understand which acquisition sources and page content lead to genuine early-access interest.

Forms are excluded from autocapture and replay. Input values, email addresses, names, app names, app links, messages, phone numbers and advertising click identifiers are not sent to PostHog. Replay masks all inputs, does not record form regions, console output, request or response bodies, request headers, canvas content or cross-origin frames. Autocapture masks visible text and records clicks only on links and buttons. We store only the referrer domain and URLs without queries or fragments.

Analytics uses a random pseudonymous ID and local storage only after consent. We do not call PostHog identify with an email address and disable person profiles. PostHog Cloud EU is configured with IP capture disabled at project level and analytics retention limited to six months. Surveys, product tours and advertising pixels are not part of this integration.

Your analytics choice is kept in your browser for up to 180 days so we can respect it. This preference storage is necessary to remember your decision. You can reopen the controls and withdraw consent at any time:

Recipients and processors

  • STRATO GmbH, Otto-Ostrowski-Straße 7, 10249 Berlin, Germany: planned production infrastructure for the AppFrame website. The site will run on a dedicated server in a German STRATO data centre. STRATO may process network and infrastructure data when providing and protecting the server.
  • Supabase: storage of early access and design partner submissions in the configured EEA production region.
  • PostHog Cloud EU: optional analytics after consent only.

Estopia Engineering Ltd will administer the production containers through a self-hosted Portainer installation on the same server. Portainer is an internal administration tool in this setup, not a separate cloud analytics or hosting recipient. Access will be limited to authorised administrators.

We do not sell personal data. We require processor terms and appropriate safeguards for international transfers, including adequacy arrangements or approved contractual clauses where applicable.

Retention

  • Early access records are deleted no later than 24 months after submission, or sooner if you withdraw consent.
  • Design partner applications are deleted no later than 12 months after submission unless an ongoing relationship requires the information.
  • PostHog analytics events are retained for no longer than six months.
  • Session replays are retained for no longer than 30 days.
  • The planned production configuration will rotate ordinary web access and application logs after no more than 14 days. Security records needed to investigate an incident may be retained for up to 90 days, or longer where required to establish, exercise or defend legal claims.

The production database stores an expiry timestamp for every submission and runs a daily deletion job for expired records.

The STRATO and Portainer production setup is not yet live. We will verify the server location, log rotation, access controls, backups, encryption and processor agreement before directing visitors to that deployment, and update this notice if the final data flow differs.

Your rights

Depending on applicable law, you may request access, correction, deletion, restriction or portability of your personal data, object to processing based on legitimate interests, and withdraw consent. Email [email protected]. We may need to verify that the request relates to your email address.

You may also complain to the UK Information Commissioner’s Office or, where EU GDPR applies, the supervisory authority in your country.

Security and automated decisions

Form submissions are validated on the server, protected by a honeypot, and written through a server-only Supabase credential. The database blocks direct public table access. We do not use these prelaunch submissions for automated decision-making or profiling that produces legal or similarly significant effects.

Changes

We will update this notice when AppFrame’s data use changes. Material changes will not expand consent-based processing without a new valid choice.

© 2026 Estopia Engineering Ltd
PrivacyImprint