Privacy Policy
In force since 21 September 2026 (updated 25 September 2026: numbers you type in yourself are synced, and your WhatsApp number appears on proposal pages)
This is a translation provided for convenience. Where the two differ, the Indonesian version is the one that applies.
This page sets out what we store, why, and for how long. It is written from what the system actually does, not from a template.
In short
If you use the phone app, a copy of your leads sits on our server. That is the only way leads gathered on a computer can be worked from a phone. Sync can be switched off at any time under Settings → Data → Sync to phone; switch it off and your leads stay on your computer while the phone app shows nothing.
To bill you and give you access, all we need is your email address, your subscription status and your device records. Everything else exists because you started it: publishing a page, uploading a CV, or pressing an AI button. All of it is set out below, including the other parties that process it.
What we keep on the server
- Your email address. This is your account. Without it you cannot sign in.
- Verification codes as a one-way hash, never the code itself, along with its expiry and the number of attempts.
- Order records: the order number, the amount, the payment status, and a copy of the Midtrans notification. We need these if a payment is ever disputed.
- Subscription status: when it started, when it ends, and whether it is on hold.
- Device records: a random identifier the extension generates, the browser and operating system name (for example “Chrome · macOS”), and when it was last used. This is what makes the 3-device limit enforceable and lets you release an old device yourself.
- Your IP address when you request a code and when the extension checks the licence. Used to limit code-request abuse and to detect licence sharing. We do not use it to track your location and we sell it to nobody.
- Visit counts for sitefrenz.web.id: which page was opened, where the visit came from, the campaign name on the link (utm_source), and the device type (phone, tablet, or computer). No cookies, and the IP address is not stored. All that is kept is a random fingerprint that changes every day, so today's visit cannot be joined to tomorrow's. Used to know how many people arrive and from where, then deleted after about 13 months.
- Referral link click counts. When you open a referral link we record one click for that code so whoever referred you knows the link was opened. It works like the visit count above: no cookies, no stored IP address, only a random fingerprint that changes daily, and one person counts once a day no matter how often they refresh. The referrer sees the number only — not who you are, not where you came from.
- A referral code on your device, if you arrived through someone's link. It sits in your browser's local storage for 30 days, then expires by itself. It is not a cookie and it goes nowhere until you actually buy — at which point it travels along so whoever referred you gets their commission. Clear your site data and it is gone instantly.
- Your sign-in on the referral page is kept in your browser's local storage for 15 minutes only, so reloading does not force you to request another code. After that it expires and you are asked for a new one.
- If you join the referral programme: your email address, your referral code, a commission record for every settled referral, and — only when you request a withdrawal — your bank name, account number, and account holder name. Bank details are never asked for at sign-up, only at withdrawal. Commission records are kept as accounting evidence. You can join from the referral page or straight from the panel under Settings → Referral; both use the same account and store the same things, only the door differs.
- A copy of your leads, if phone sync is on. Exactly what you see in the panel: business name, category, address, phone number, opening hours, rating, photos from Google, services, and review text along with the reviewer's name. Plus the notes, tags, status, follow-up history and business phone numbers you typed in yourself, and your seller settings: the name you sign messages with, your WhatsApp number, the fields you work in, your rate card, the language for clients, country, currency, and dialling code. Your consent for AI, WhatsApp and marketplaces does not travel: you give that per device. Stored per licence and never visible to another licence holder. Note that review part: it contains the names and words of people who have no relationship with you or with us, and that is exactly why the switch to turn it off exists.
- The contents of pages you publish. If you use publishing, we store the HTML — we have to, so it can be served to visitors, restored if you delete it, and taken down if it breaches the rules. Along with the subdomain, the page name, its size, and when it went live. The file contents are kept in Cloudflare R2, file storage that is closed to the public; visitors still open the page from our server, so a page that has been taken down cannot be opened from anywhere else.
- Custom domains you register: the domain name, which page it points at, and its verification token. Without those no certificate can be issued.
- Visit records for your published pages: the visitor's IP address, the time, and their browser type, in a server log like any website. We install no trackers, set no analytics cookies, and build no profile of anyone from those logs.
- The opportunity reading, if you press the button. When you ask AI to read one lead, that business's public facts are sent to our server: business name, category, city, rating, review count, the needs chain we compute from its trade, and — for a marketplace shop — follower count, product count, prices and units sold, plus buyer review text. Reviewer names are dropped before sending. The notes, tags, status and follow-up history you wrote yourself never go with it, and neither does your CV profile — matching your profile against opportunities runs entirely in your browser. The result is stored under a random fingerprint of those facts, with nobody's identity attached, so the next person reading the same business does not pay for it again — there is no column that could answer “who analysed what”. Analysis runs only when you press the button, never in the background, and can be switched off in Settings → Shopee, Tokopedia & WhatsApp.
- A profile built from your CV, if you upload one. Uploading a CV is optional. The file is sent, read once by AI, then discarded — all we keep is what it read: your headline, summary, skills, experience, education, certifications, and the assets you mention. Phone numbers, email addresses and home addresses found in the CV are stripped before anything is stored. Your name is kept, because a profile page without a name is of no use — and that name is also what you see on the review screen before anything is published. The profile is used to order the opportunities in your panel and, only if you publish it, becomes your online profile page. You can delete it at any time from Settings → Your profile.
- A profile photo, if you add one. The photo is optional, you pick the file yourself, and we never take it from your CV. It is stored in Cloudflare R2 like your other page files and published as part of your profile page, so anyone with the link can see it. The proposal pages you send show the same photo, so the business you approach can see who is writing. You can remove it at any time from Settings → Your profile without deleting the profile.
- The contact link on your profile page, if you fill it in. You type it yourself — we never copy a number out of your CV into it. It appears as a button on your profile page.
- The profile page and proposal pages you publish. Both are ordinary pages on your subdomain: we store their contents so they can be served, and neither appears in Google search. A profile page carries only the parts you ticked, plus your WhatsApp number from Settings if you filled it in, with a chat button and chat window to that number. A proposal page carries your prospect’s business name, the findings you picked, the prices from your rate card, a chat button to your WhatsApp number, and one photo of the business from Google Maps if the listing has one — you decide what goes in. A proposal is valid for 90 days, then turns into a short notice by itself rather than disappearing, because its link may already be out there.
- Analysis usage per licence: how many times it was called, which depth, and the estimated cost. That is what makes the quota enforceable. The analysis itself is not linked to your account.
Pay attention to the last two items if you publish pages. Before that feature existed, none of your working data touched our servers. The moment you publish a page, its contents are on our server — and if it carries a prospect's photo, name, or phone number, that is stored too. You decide what goes into it.
What we never store
- Scraped leads, if phone sync is off and you do not use AI analysis. With sync off, business names, phone numbers, addresses, reviews and photos stay in your browser's IndexedDB. Two things change that, and you switch on both: phone sync sends a copy of your leads, and AI analysis sends one business's public facts when you press the button. Both are described in the list above.
- The contents of your WhatsApp conversations. If you switch the reply assistant on, it reads only the conversation open on your screen, and only when you press the button. Groups and broadcast lists are refused outright. Message text reaches our server only if you press “Write with AI”, limited to the last ten turns, and is never stored — only the number of calls is recorded. The extension never sends a message: your finger presses Send. We also never read your chat list or your contacts.
- Shopee and Tokopedia storefronts, beyond what you save as a lead. A marketplace run happens in the tab you can see, using your own account. We do not keep a record of what you browsed there.
- The CV file you upload. The file is sent to our server, read once, then discarded. What we keep is only what was read, as a structured profile — and before anything is published, you tick which parts may appear.
- The website kit you download. The kit is built inside your own browser and downloaded straight away. We never see it. If you switch AI analysis on, what is sent is only that business's public facts, to build the strategy layer — exactly the list above, and without reviewer names. This is different from a page you publish — that one we do store, see the list above.
- Card or bank details. Payment is handled entirely by Midtrans. All we receive is the order number and its payment status.
- Who bought through your referral link. A referrer sees numbers only: how many clicks, how many purchases, and how much commission. We never show the buyer's email, location, or device — you are paid for the introduction, not handed a list of people.
- A password. There is none, because one was never created.
Third parties involved
Some parts of SiteFrenz run on other companies’ services. Each receives only the data its part needs, and none has our permission to use it for its own purposes.
- Midtrans (PT Midtrans) processes payments. Whatever you enter on the payment screen is subject to their privacy policy.
- OpenAI (United States) runs every AI feature: opportunity analysis, the strategy layer in the website kit, proposal page copy, CV reading and WhatsApp reply drafts. What goes there is exactly what the list above describes for each feature. For proposal copy, that is the business name, category, city, the findings you picked, and your name and title. For CV reading, the contents of your CV are sent, and if the file is a scan or a photo, the file itself is sent so it can be read. For reply drafts, at most the last ten messages of the open conversation. Reviewers’ names are always removed before anything is sent. Under OpenAI’s policy for API use, this data is not used to train their models and is kept for at most 30 days for abuse monitoring. Because their servers are outside Indonesia, this data leaves the country each time you use an AI feature. Analysis, the kit strategy, proposal copy and reply drafts only run once you have agreed to AI analysis, and stop as soon as you withdraw that agreement under Settings → Shopee, Tokopedia & WhatsApp. CV reading only runs when you upload a CV yourself.
- Cloudflare passes traffic through to the published page on
*.sitefrenz.web.idand filtering abuse, so the IP addresses of your page’s visitors pass through them. Cloudflare also stores the files of your published pages and your profile photo in Cloudflare R2, closed to the public; only our server can read them. - Google (Gmail SMTP) delivers our email to you. Its contents pass through Google's servers like any other email.
- Google Fonts supplies the typefaces on sitefrenz.web.id, so your browser requests font files from Google when it opens these pages. The introduction video plays from YouTube in no-cookie mode, and only loads after you press play.
- WhatsApp carries the messages you send through the WhatsApp buttons in the panel, including Contact the SiteFrenz team. That button opens WhatsApp with the message already written: your prospect’s business name, the needs outside your field, its Google Maps link, and your name and email. Nothing is sent until you press Send yourself, and after that we receive it like any other WhatsApp message.
Beyond that, we share your data with nobody. No ads, no third-party trackers, and no selling of data.
What we do with that copy of your leads
Two things, and only two.
- Delivering them to your own devices — that is what sync is for.
- Reading the aggregate patterns to improve SiteFrenz: which business types most often lack a website, which cities are busiest, which offers get used most. What we see here are counts and trends, not your prospect list one by one.
We do not sell your leads, do not hand them to other SiteFrenz users, and do not use them to contact the businesses in them. If you would rather your data was not used for the second purpose, switch sync off — both use the same copy.
How long it is kept
- Verification codes expire in 10 minutes and are cleared regularly.
- Order and payment records are kept for as long as bookkeeping and disputes require.
- Account and device data is kept while the subscription is live. Ask us to delete it and we do so within 30 days, except payment records we are required to keep.
- A published page's contents are kept for as long as the page exists. If you delete it, we hold it another 30 days so you can restore it if you change your mind, then it is gone. A page we took down for a breach is kept longer as a record of the decision.
- Visit logs for published pages are kept for at most 30 days.
- Commission and withdrawal records are kept as accounting evidence, including after you leave the programme. The account number on a withdrawal request is kept with them.
- Lead copies are kept while the subscription is live and sync is on. Switching sync off stops further uploads; to remove what is already stored, ask us and we delete it within 30 days. Deleting a lead in the panel also deletes its server copy on the next sync.
Your rights
You have the right to a copy of the data we hold about you, to have anything wrong corrected, and to have your account and its data deleted. Send the request from your registered email to sitefrenz@gmail.com and we reply within 14 working days.
The permissions the extension asks for, and why
Chrome shows a list of permissions when you install it. Here is why each one is there:
- Reading data on google.com/maps — the heart of the product. The extension reads the Maps page you have open, exactly what you see on screen yourself.
- googleusercontent.com — where listing photos live. Needed so the website kit can carry the business's real photos.
- api.sitefrenz.web.id — for signing in and the daily licence check.
- Storage — keeps your leads and settings in your browser.
- Tabs and scripting — reading the Maps, Shopee, Tokopedia or WhatsApp Web tab you have open.
- shopee.co.id and tokopedia.com — only if you switch marketplace lead finding on. It reads public storefronts in the tab you can see, using your own account, and stops dead the moment the platform asks for verification.
- web.whatsapp.com — only if you switch the reply assistant on. It reads the conversation you have open and puts a draft in the message box. It never presses Send.
- Side panel — where the interface appears.
- Downloads — saves kit files and exports to your computer.
- Alarms — schedules the once-a-day licence check.
- Unlimited storage — so a long lead list, with its reviews and photos, is not cut short by the browser’s default limit. All of it stays on your computer.
This extension does not run on other sites and does not read your browsing history. Beyond Google Maps it enters only three addresses — shopee.co.id, tokopedia.com and web.whatsapp.com — and only after you switch those features on yourself under Settings → Shopee, Tokopedia & WhatsApp. While the switch is off, none of its code is ever loaded into those pages.
The web app at client.sitefrenz.web.id asks for no permissions at all. The leads and settings you open there are kept in your phone browser’s storage, and disappear if you clear that site’s data in the browser. The copy on our server stays as long as sync is on.
An honest note about Shopee, Tokopedia and WhatsApp: all three forbid automated access in their terms. SiteFrenz runs at human speed, in the tab you can see, with no proxies and no disguise of any kind, stops entirely when told to stop, and never sends a message — but the risk is still yours, and the choice is yours.
Changes
If this policy changes in any meaningful way, we email the address on file before the change takes effect.
Contact
Alices Technology, Malang, East Java, Indonesia.
sitefrenz@gmail.com · +62 899 4980 352
See also the Terms and Conditions.
← Back to the home page