Your data is not our commercial product.
This page explains what we keep about you, why, and your rights.
1. What we collect
Only what the service needs: (a) contact and project details you send through forms or email; (b) account details: name, email, optional mobile number (for SMS sign-in codes) and an encrypted password; (c) sign-in security records: session and device information, IP address and sign-in history, kept to protect your account; (d) Farr messenger content: the messages, voice notes, photos and files you send, and your contact list; (e) invoice and payment records for paid work; (f) if you enable them, push-notification subscriptions and two-step verification settings.
2. How we use it
To answer your requests, run your project and account, deliver your messages, send sign-in codes and service emails, issue invoices, keep the service secure and fix problems. We do not use your data for advertising, and we never sell, rent or trade it.
3. Who processes it for us
A few service providers help run the service and receive only what their task needs: our hosting provider (servers), an email delivery service (service emails), an SMS provider (sign-in codes to your mobile number), and web-push services built into your browser (notifications). We disclose information to authorities only when the law requires it.
4. Cookies and statistics
We only use the cookies listed below, which the site needs to work. Visit statistics come from our own self-hosted Umami instance, which does not use cookies. We do not use Google Analytics, Meta Pixel or any advertising tracker.
5. How long we keep it
Account and message data are kept while your account is active; you can delete messages and ask us to delete your account. Sign-in security records are kept for a limited period for security. Invoices and payment records are kept as long as tax and accounting law requires. Server backups are rotated and old backups are deleted automatically.
6. Your rights
You can ask to see the data we hold about you, correct it, receive a copy, or have it deleted (except records we must keep by law). Send your request to the contact email below; we reply within 15 working days.
7. Security
Connections are encrypted (HTTPS), passwords are stored only as one-way hashes, two-step verification is available, and each client project runs in its own isolated environment. No system is perfectly secure; if a breach affecting you ever occurs, we will tell you promptly.
8. Children
Our services are not intended for children under 16, and we do not knowingly collect their data.
9. Changes to this policy
If we change this policy, we update the date at the bottom of this page, and for significant changes we notify account holders by email.
What Cookies Are Deployed?
In strict compliance with Directive 2002/58/EC (ePrivacy Directive), here is the full registry of cookies deployed on this domain. Zero third-party ad profiling cookies are used.
| Cookie Identifier | Purpose | Category | Provider | Duration |
|---|---|---|---|---|
payload-token | Authenticates authorized studio editors accessing the secure workspace. | ESSENTIAL | Sajjad Platform (First-Party) | 7 Days (HttpOnly) |
site_gate_pass | Prevents automated bot spam registrations and maintains portal integrity. | ESSENTIAL | Sajjad Platform (First-Party) | Session |
NEXT_LOCALE | Remembers your preferred language and reading direction (RTL/LTR). | ESSENTIAL | Next.js Framework | 1 Year |
sajjad:personal-theme | Remembers customized accent theme and device preview chassis preference. | FUNCTIONAL | Local Client Storage | Persistent |
cookie_consent_preferences | Records your cookie consent choices so the banner is not shown repeatedly. | ESSENTIAL | Local Client Storage | 1 Year |
Contact and service owner
For questions, personal-data requests or complaints, contact us; we reply within 2 working days.
- Service owner
- Sajjad Samaei (Sajjad Studio)
- Phone
- +98 9999690358
- Address
- Remote / Iran