Sobolsoft
Privacy Policy
Sobolsoft website and Sobolsoft Read-only Reporting · Updated September 8, 2026
About this notice
Sobolsoft operates sobolsoft.com and Sobolsoft Read-only Reporting, a private tool for preparing sales and website-performance reports for authorized Sobolsoft operators. This notice explains the website and reporting practices described below. It does not describe every downloaded desktop application's handling of files, accounts, or services; consult the information supplied with the particular application. Software licensing terms are separate in our End-user License Agreement.
Privacy questions and requests can be sent to natesobol@gmail.com. Please do not include passwords, API credentials, full payment-card details, or other unnecessary sensitive information.
Website, purchases, and support
- Website operation: our hosting and security services process technical request information, which can include IP address, requested URL, browser information, and request time, to deliver the website, investigate errors, and protect against abuse. Cloudflare Web Analytics supplies website-performance and traffic statistics, including page views, visits, and popular pages. Visits are not necessarily distinct people, and reported traffic can be estimated or sampled.
- Shopping cart: the website stores cart contents in your browser's local storage so they can survive navigation and later visits. You can remove this information through your browser's site-data controls; doing so can clear your saved cart.
- Purchases: checkout uses Stripe. Sobolsoft stores order, payment-status, product, and license-fulfillment information to process purchases, provide licenses, maintain records, and resolve purchase questions. Internal reports summarize recorded payments and orders; they are not a record of full payment-card numbers.
- Support: when you contact us, we process the contact details, subject, message, and any product or order reference you provide. Technical and message-delivery information can also be processed to prevent abuse, route requests, and investigate failures. Support processing can include automated or AI-assisted handling through OpenAI and Cloudflare services, as well as staff review. Do not submit sensitive information that is unnecessary for your request.
- Email: Resend is used for application-generated email. Email providers process recipients, message content, and delivery information as part of sending and handling messages. Our ordinary mailboxes also use their respective email providers.
Google data and the reporting application
Website visitors do not need to grant Google Account access to use this reporting tool. Google authorization is for Sobolsoft's authorized reporting operator, not a customer sign-in requirement.
The reporting connection uses read-only authorization for Google Search Console. It retrieves Sobolsoft property-level search clicks, impressions, click-through rate, average position, dates, search queries, pages, device categories, and country-level statistics. It uses these figures to prepare reports, compare reporting periods, and identify pages or search topics to review. Search Console statistics do not tell us who an individual searcher is.
The current authorization also includes Google Analytics read-only permission. Google Analytics collection by this reporting tool is not currently connected. If connected for an authorized Sobolsoft property, its reporting purpose is traffic-source, engagement, and conversion-event statistics. The presence of a permission does not mean those data have already been collected.
This reporting connection does not request access to Gmail messages, contacts, Google Drive files, or permission to edit Search Console or Analytics settings. Google access can be removed through your Google Account connections settings. Removing access stops future authorized reads; it does not automatically erase reports already created.
Reporting storage, use, and disclosure
The reporting pipeline reads Sobolsoft sales records from Cloudflare D1 and traffic statistics from Cloudflare. It processes order-level records to produce summaries. Saved report data exclude customer names, customer email addresses, payment identifiers, and license keys. Google search queries and public page names may appear in reports; query filtering reduces, but cannot guarantee the removal of, accidentally sensitive text.
Report data and generated HTML, graphs, and email files are stored in Sobolsoft-controlled storage. The current reporting setup runs on an operator's Windows computer. Its stored Google authorization and reporting-provider credentials use Windows account-bound encryption and restricted file permissions. Report files are separate from those encrypted credentials. Private reports and credentials are not intended for publication in the website's source repository.
Reports are for authorized Sobolsoft operators. When email reporting is enabled, report content and recipient addresses are processed by Resend and the recipients' email providers. Authorized report-review and AI-assisted development tools may process selected report information during setup, review, or troubleshooting. These are separate from the reporting tool's Google permissions; the reporting sign-in itself does not grant those tools additional Google Account access.
Google API data are used for the authorized reporting purpose, not sold to data brokers, used for personalized advertising, or used to make lending or credit decisions. Access and disclosure must remain consistent with the Google API Services User Data Policy, including its Limited Use requirements where applicable. Changes to Google data access or use that require additional consent will be disclosed before that new use begins.
Service providers process information to supply the relevant hosting, security, payment, email, support, or reporting functions. Information may also be disclosed when required by applicable law or as necessary to investigate abuse and protect security. Provider processing may take place outside your country and is subject to the providers' applicable terms and privacy notices.
Retention, security, and your choices
There is currently no automatic fixed-period deletion schedule for local reporting snapshots and generated reports. Removing a Google connection alone does not delete those files, stored authorization files, backups, or copies already sent by email. Retention of orders, licenses, support records, provider records, and backups can differ from report retention.
Contact the privacy address above to request access, correction, deletion of information we control, removal of stored reporting authorization, or cessation of future reports. Identify the relevant account, record, or report without sending credentials. We may need to verify your authority before acting. We will assess requests under applicable law and explain relevant limits, such as records needed for accounting, security, legal obligations, or license support. Rights and applicable requirements depend on your location and circumstances. You can also contact the relevant provider about information it controls.
Access controls, encrypted credentials, and secure connections help protect information, but no system can guarantee absolute security. Deletion of an active copy does not necessarily immediately remove backup copies or copies controlled by email recipients or independent providers.
Changes and contact
We will update this page when the described practices change and revise the date above. Where additional notice or consent is required, updating this page alone does not replace that requirement. For questions about this notice or the reporting application, email natesobol@gmail.com.
