Create Website 2 3 4

Truly FREE Website

Create a Website In minutes. 4 Easy Steps. No Monthly Payments. Hosting Included.

Step 4: The final step - Pointing a Domain Name, Submitting your contact details, performing email verification and optional addons for you to choose from to enhance your website

Truly Free Website

Privacy Policy

Last Updated: September 1, 2026 (Version 1.0)

Important Notice

This Privacy Policy explains how personal information is collected, used, stored, processed, shared, transferred, and protected when you access or use the Truly Free Website website-building platform, hosting services, websites, tools, applications, integrations, APIs, business-growth services, affiliate program, customer support services, and related functionality (collectively, the "Services"). The Services are operated and provided by Navon Social LLC ("Company," "we," "us," or "our").

For purposes of this Privacy Policy, "User," "you," and "your" refer to any individual who accesses or uses the Services, including but not limited to visitors, account holders, website owners, affiliate program participants, and customers.

By using the Services, you acknowledge that you have read and understood this Privacy Policy.

If you do not agree with this Privacy Policy, you must discontinue use of the Services.

1. Scope of this Privacy Policy

This Privacy Policy applies to:

  • Visitors to our website;
  • Registered account holders;
  • Website owners using our Services;
  • Affiliate program participants;
  • Individuals communicating with us;
  • Customers purchasing paid services;
  • Users of business-growth services;
  • Users interacting with websites hosted through our platform;
  • Third-party service providers interacting with our infrastructure.

This Privacy Policy does not apply to:

  • Third-party websites not controlled by us;
  • Independent third-party service providers;
  • External payment processors;
  • Third-party integrations used by Users;
  • Websites hosted by Users where the User acts as the data controller.

2. Information We Collect

We may collect the following categories of information.

2.1 Information You Provide Directly

We may collect information that you voluntarily provide, including:

  • Full name;
  • Email address;
  • Billing information;
  • Payment-related details;
  • Business information;
  • Domain names;
  • Website content;
  • Uploaded files and media;
  • Communication history;
  • Support requests;
  • Marketing preferences;
  • Affiliate program information;
  • Tax-related information where legally required;
  • Information submitted through forms;
  • Information submitted through customer support channels.
2.2 Account Information

We may collect and store:

  • Username;
  • Login credentials;
  • Password hashes;
  • Account settings;
  • Subscription information;
  • Plan information;
  • Technical account configuration data.
2.3 Technical & Device Information

We may automatically collect technical information including:

  • IP address;
  • Browser type;
  • Device identifiers;
  • Operating system;
  • Screen size;
  • Device type;
  • Referring URLs;
  • Language settings;
  • Session information;
  • Access timestamps;
  • Log files;
  • Error logs;
  • Crash reports;
  • Security logs.
2.4 Usage Information

We may collect information relating to use of the Services including:

  • Pages visited;
  • Features used;
  • Website activity;
  • Editor interactions;
  • Click behavior;
  • Performance metrics;
  • API usage;
  • Traffic statistics;
  • Hosting usage;
  • Storage usage;
  • Bandwidth consumption;
  • Resource usage.
2.5 Cookies & Similar Technologies

We may use:

  • Cookies;
  • Pixels;
  • Analytics tools;
  • Session identifiers;
  • Local storage;
  • Tracking technologies;
  • Security-related cookies;
  • Advertising technologies.

These technologies may be used for:

  • Authentication;
  • Security;
  • Performance optimization;
  • Analytics;
  • Fraud prevention;
  • Personalization;
  • Marketing;
  • Service functionality.
2.6 Payment Information

Payments may be processed through third-party payment processors.

We generally do not store full credit card information directly on our servers.

However, we may receive limited billing-related information including:

  • Payment status;
  • Transaction identifiers;
  • Billing names;
  • Billing addresses;
  • Subscription status;
  • Payment metadata.
2.7 User Website Content

We may process content uploaded or created by Users including:

  • Text;
  • Images;
  • Videos;
  • Documents;
  • Databases;
  • Emails;
  • Customer information;
  • Form submissions;
  • Website analytics;
  • Website metadata.

Users are solely responsible for ensuring they have the legal right to upload and process such content.

3. How We Use Information

We may use collected information for the following purposes:

  • Providing the Services;
  • Operating the platform;
  • Hosting websites;
  • Maintaining infrastructure;
  • Processing payments;
  • Customer support;
  • Account management;
  • Security monitoring;
  • Abuse prevention;
  • Fraud prevention;
  • Performance optimization;
  • Analytics;
  • Improving functionality;
  • Product development;
  • Marketing;
  • Affiliate management;
  • Legal compliance;
  • Enforcing our agreements;
  • Communicating with Users;
  • Sending administrative notices;
  • Sending service updates;
  • Sending promotional communications where permitted by law.

4. Legal Bases for Processing

Depending on your jurisdiction, we may process personal information based on:

  • Performance of a contract;
  • Legitimate business interests;
  • Legal obligations;
  • Consent;
  • Protection against fraud or abuse;
  • Security and operational requirements.

5. User-Controlled Website Data

Users operating websites through our Services may independently collect personal information from visitors to their own websites.

In many situations:

  • The User acts as the "data controller"; and
  • The Company acts as a "data processor" or service provider.

Users are solely responsible for:

  • Obtaining necessary consents;
  • Maintaining legally required privacy notices;
  • Responding to privacy requests;
  • Complying with GDPR, CCPA, ePrivacy, cookie laws, or other applicable laws.

We are not responsible for User compliance failures.

6. Aggregated & Anonymized Data

The Company may generate aggregated, anonymized, statistical, or de-identified information relating to use of the Services.

Such information does not identify individual Users and may be used for:

  • Analytics;
  • Security monitoring;
  • Fraud prevention;
  • Performance optimization;
  • Product development;
  • Research;
  • Business operations;
  • Marketing;
  • Infrastructure planning.

7. Sharing of Information

We may share information with:

  • Hosting providers;
  • Cloud infrastructure providers;
  • CDN providers;
  • DNS providers;
  • Domain registrars;
  • Payment processors;
  • Security providers;
  • Analytics providers;
  • Customer support providers;
  • AI service providers;
  • Email delivery providers;
  • Marketing providers;
  • Contractors;
  • Business-growth service providers;
  • Social media management providers;
  • SEO providers;
  • Content-writing providers;
  • Live chat providers;
  • Affiliate-management providers;
  • Legal advisors;
  • Auditors;
  • Government authorities where legally required.
  • Successors or acquirers in connection with business transfers.

We may share User information with third-party service providers involved in delivering optional business-growth services.

8. Third-Party Services & Integrations

The Services may include integrations, plugins, APIs, widgets, embedded tools, analytics providers, social media integrations, AI providers, payment systems, and external technologies.

Third-party services may independently collect information.

We are not responsible for the privacy practices of third-party services.

Users should review applicable third-party privacy policies.

9. International Data Transfers

Information may be transferred, processed, stored, or accessed in multiple countries.

By using the Services, Users acknowledge that information may be transferred internationally, including to jurisdictions with different data protection laws.

10. Data Retention

We may retain information:

  • As long as necessary to provide the Services;
  • To comply with legal obligations;
  • To resolve disputes;
  • To enforce agreements;
  • To maintain backups;
  • For fraud prevention;
  • For security purposes;
  • For operational continuity.

Deleted content, backups, logs, records, metadata, fraud-prevention records, abuse-monitoring records, transactional logs, and security-related information may persist for limited periods.

The Company may preserve information where reasonably necessary for:

  • Fraud prevention;
  • Chargeback investigations;
  • Abuse investigations;
  • Security enforcement;
  • Legal compliance;
  • Dispute resolution;
  • Protection of the Services;
  • Enforcement of agreements.

Infrastructure, backups, databases, processing systems, and storage systems may be distributed across multiple jurisdictions and may change without notice.

The Company is not obligated to restore deleted content.

11. High-Risk Data & Regulated Information

Unless explicitly agreed in writing, the Services are not intended for storage or processing of:

  • Protected health information (HIPAA);
  • Payment card information requiring PCI-DSS compliance;
  • Government classified information;
  • Biometric identifiers;
  • Sensitive financial records;
  • Special-category personal data under GDPR;
  • Highly sensitive confidential information.

Users are solely responsible for ensuring that their use of the Services complies with all laws applicable to the information they upload or process.

The Company disclaims responsibility for unauthorized use of the Services involving regulated or high-risk information.

12. Security

We implement reasonable administrative, technical, and organizational safeguards intended to protect information.

However:

  • No online platform is completely secure;
  • No transmission method is fully secure;
  • No storage system is immune from breaches or attacks.

Users acknowledge that use of the Services is at their own risk.

13. Account Termination & Data Deletion

Users may request account deletion subject to:

  • Legal obligations;
  • Fraud prevention requirements;
  • Security requirements;
  • Outstanding payment obligations;
  • Backup retention;
  • Technical limitations.

The Company may permanently delete data following account termination.

Deleted data may be unrecoverable.

14. Cookies & Tracking Technologies

We may use cookies and similar technologies for:

  • Authentication;
  • Security;
  • Analytics;
  • Performance monitoring;
  • Advertising;
  • Personalization;
  • Fraud prevention;
  • Session management.

Users may disable cookies through browser settings.

Disabling cookies may affect functionality.

15. Analytics & Advertising

We may use analytics providers and advertising technologies that collect information relating to use of the Services.

These providers may use cookies, device identifiers, and similar technologies.

16. Email Communications

We may send:

  • Administrative communications;
  • Security notices;
  • Billing notifications;
  • Service announcements;
  • Marketing communications;
  • Affiliate communications.

Users may unsubscribe from certain promotional communications.

Users may continue receiving essential service-related communications.

17. Children's Privacy

The Services are not intended for children under 13 years of age.

We do not knowingly collect personal information from children under 13.

If we become aware that such information has been collected, we may delete it.

18. Affiliate Program Data

Affiliate program participants may provide:

  • Payment information;
  • Tax-related information;
  • Referral information;
  • Marketing information.

Affiliate-related information may be shared with payment providers, affiliate-management systems, fraud-prevention providers, and accounting providers.

19. Business Transfers

User information, operational records, databases, customer relationships, analytics information, and platform-related data may be considered business assets.

Such information may be transferred during:

  • Mergers;
  • Acquisitions;
  • Asset sales;
  • Corporate restructuring;
  • Financing transactions;
  • Bankruptcy proceedings.

20. Legal Disclosures

We may disclose information where reasonably necessary to:

  • Comply with legal obligations;
  • Enforce agreements;
  • Respond to lawful requests;
  • Protect rights or safety;
  • Prevent fraud or abuse;
  • Protect infrastructure or systems.

21. User Rights

Depending on jurisdiction, Users may have rights including:

  • Access rights;
  • Correction rights;
  • Deletion rights;
  • Objection rights;
  • Restriction rights;
  • Data portability rights;
  • Consent withdrawal rights.

Certain rights may be limited by:

  • Legal obligations;
  • Security requirements;
  • Technical limitations;
  • Fraud-prevention requirements;
  • Legitimate business interests.
21.1 Summary of User Rights by Jurisdiction

The following table provides a general summary of rights available under applicable privacy laws. This summary is for informational purposes only and does not constitute legal advice. Users should consult with a qualified legal professional for guidance specific to their situation.

Right GDPR (EU/UK) CCPA/CPRA (California) Other Jurisdictions
Access Yes – right to confirm processing and obtain copies Yes – right to know what personal information is collected, used, shared, or sold Varies by jurisdiction
Correction Yes – right to rectify inaccurate personal data Yes – right to correct inaccurate personal information Varies by jurisdiction
Deletion Yes – right to erasure ("right to be forgotten") Yes – right to delete personal information Varies by jurisdiction
Objection / Opt-Out Yes – right to object to processing based on legitimate interests or direct marketing Yes – right to opt out of sale or sharing of personal information Varies by jurisdiction
Restriction Yes – right to restrict processing in certain circumstances Limited – primarily through opt-out rights Varies by jurisdiction
Data Portability Yes – right to receive data in structured, machine-readable format Limited – right to request specific pieces of information Varies by jurisdiction
Consent Withdrawal Yes – right to withdraw consent at any time Yes – through opt-out mechanisms Varies by jurisdiction
Lodge a Complaint Yes – right to lodge a complaint with a supervisory authority Yes – right to lodge a complaint with the California Privacy Protection Agency (CPPA) Varies by jurisdiction
Non-Discrimination Yes – right not to be subject to discrimination for exercising rights Yes – right not to be discriminated against for exercising CCPA rights Varies by jurisdiction

How to Exercise Your Rights: To exercise any of the rights described above, please contact us using the information provided in Section 37 (Contact Information). We may need to verify your identity before processing your request. We will respond to verifiable requests within the timeframes required by applicable law.

22. GDPR Notice

Where applicable under the GDPR:

  • Users may have additional rights;
  • Users may contact local supervisory authorities;
  • We may process information under contractual necessity, legitimate interests, consent, or legal obligations.

Users operating websites through our Services remain responsible for their own GDPR compliance obligations.

23. California Privacy Rights

California residents may have additional privacy rights under applicable California privacy laws.

24. Do Not Track Signals

The Services may not respond to browser "Do Not Track" signals.

25. Third-Party Links

The Services may contain links to third-party websites.

We are not responsible for third-party privacy practices.

26. Domain Registration Information

Users purchasing domain-related services may be required to provide registration information to registrars.

Certain domain registration information may become publicly accessible through WHOIS systems unless privacy protection services are used.

27. AI Services

The Company may use artificial intelligence ("AI"), machine learning systems, automation tools, content-generation systems, moderation systems, and third-party AI providers in connection with the operation, security, support, improvement, and delivery of the Services.

The Services may include AI-powered features, tools, integrations, or functionality. Information submitted to such systems may be processed by the Company and/or third-party AI providers solely for the purpose of providing the requested functionality or operating the Services.

Unless explicitly disclosed otherwise, the Company does not use private User website content to train general-purpose artificial intelligence models.

Users should avoid submitting highly sensitive, confidential, regulated, or otherwise sensitive information to AI-powered systems unless appropriate safeguards are in place and such submission is necessary for the intended use of the Services.

28. Service Providers

We may use contractors, licensors, infrastructure providers, consultants, support providers, and external service providers to operate the Services.

Such providers may have access to information where reasonably necessary.

29. Data Accuracy

Users are responsible for ensuring submitted information remains accurate and current.

30. Security Incidents

In the event of a security incident, data breach, cyberattack, unauthorized access, suspected compromise, or other security-related event, the Company may investigate, preserve logs and evidence, restrict or suspend access, cooperate with law enforcement, regulatory authorities, or affected third parties, and take any reasonable technical, operational, or legal measures it considers appropriate to protect the Services, Users, and the Company's systems.

Where required by applicable law, or where the Company determines that notification is appropriate under the circumstances, the Company may notify affected Users of certain security incidents.

The Company does not guarantee that security incidents, data breaches, cyberattacks, unauthorized access, or other security-related events will never occur.

31. User Responsibility

Users are responsible for:

  • Maintaining account security;
  • Using strong passwords;
  • Securing devices;
  • Maintaining backups;
  • Ensuring website compliance;
  • Ensuring lawful collection of customer data;
  • Ensuring legal use of cookies and tracking technologies;
  • Reviewing third-party integrations;
  • Managing their own customer data lawfully.

32. No Guarantee of Compliance Tools

The Company may provide templates, generators, automated tools, AI-assisted tools, compliance-related features, cookie tools, policy generators, or informational materials.

The Company does not guarantee that such tools or materials satisfy legal requirements in any jurisdiction.

Users remain solely responsible for obtaining independent legal advice and ensuring compliance with all applicable laws.

33. No Guarantee of Data Availability

The Company does not guarantee:

  • Continuous data availability;
  • Permanent backups;
  • Error-free storage;
  • Data recovery;
  • Restoration capabilities.

Users are solely responsible for maintaining independent backups of all website content, databases, files, emails, and other information they consider important.

34. Abuse Monitoring & Automated Detection

The Company may scan, analyze, or monitor platform activity, uploaded content, traffic behavior, files, emails, APIs, integrations, or hosting activity for purposes including:

  • Malware detection;
  • Spam prevention;
  • Fraud prevention;
  • Phishing detection;
  • Bot detection;
  • Security enforcement;
  • Abuse prevention;
  • Infrastructure protection;
  • Crypto-mining prevention;
  • Platform stability.

The Company may use automated systems, artificial intelligence systems, spam-detection systems, fraud-prevention systems, abuse-monitoring systems, rate-limiting systems, and security-analysis tools to monitor activity relating to the Services.

Such monitoring may include analysis of:

  • Traffic patterns;
  • Login activity;
  • API activity;
  • Hosting usage;
  • Security events;
  • Malware detection;
  • Spam detection;
  • Abuse reports.

The Company reserves the right to restrict, suspend, investigate, or terminate accounts based on security or abuse-detection systems.

35. DISPUTE RESOLUTION

35.1 Exclusive Jurisdiction. Any dispute, claim, or controversy arising out of or relating to this Privacy Policy or the processing of personal data shall be resolved exclusively in the courts of Coimbra, Portugal, as set forth in Section 36 of this Privacy Policy.

35.2 No Class Actions. To the maximum extent permitted by law, Users waive any right to participate in class actions, class arbitrations, consolidated proceedings, or representative actions in any forum.

35.3 Waiver of Jury Trial. To the maximum extent permitted by law, Users waive any right to trial by jury in any proceeding arising out of or relating to this Privacy Policy.

35.4 Equitable Relief. Nothing in this section prevents the Company from seeking injunctive or equitable relief in a court of competent jurisdiction to protect its intellectual property, confidential information, or other proprietary rights.

36. GOVERNING LAW AND JURISDICTION

36.1 Governing Law. This Privacy Policy and any dispute, controversy, or claim arising out of or in connection with it (including non-contractual disputes) shall be governed by and construed in accordance with the laws of Portugal.

36.2 Exclusive Jurisdiction. For the resolution of any dispute arising from or relating to this Privacy Policy, the courts of Coimbra, Portugal shall have exclusive jurisdiction, given that the Company's principal place of business and the location where all data processing activities are performed is in Coimbra, Portugal. The parties irrevocably submit to the jurisdiction of those courts and waive any objection to proceedings being brought in those courts on the grounds of forum non conveniens or any other grounds.

36.3 Service of Process. Users agree that service of process in any proceeding arising out of this Privacy Policy may be effected by sending a copy of the process to the User's address as set forth in the User's account or by email to the User's email address on file.

36.4 Portuguese Language. Users acknowledge that any proceedings in Portuguese courts shall be conducted in Portuguese, and Users shall be responsible for arranging their own translation and interpretation services at their own expense.

36.5 Waiver of Jury Trial. To the extent permitted by applicable law, the parties waive any right to trial by jury in any proceeding arising out of or relating to this Privacy Policy.

36.6 Costs. If either party initiates any proceeding in a jurisdiction other than as set forth in Section 36.2, the party initiating such proceeding shall pay all costs and reasonable attorneys' fees incurred by the other party in enforcing this Section 36, including but not limited to any motion to dismiss based on forum non conveniens.

36.7 Data Protection and GDPR. Notwithstanding the foregoing, where applicable data protection laws (including but not limited to the General Data Protection Regulation (GDPR) (EU) 2016/679, the UK GDPR, or other applicable privacy laws) require a different governing law, jurisdiction, or standard of data protection, those laws shall apply to the extent required by law. In such cases, the provisions of this Privacy Policy shall be interpreted in a manner consistent with the applicable data protection laws.

36.8 Corporate Status and Center of Gravity. The Company is a limited liability company organized under the laws of the State of Wyoming, United States. The Company's principal place of business and the location where all data processing activities under this Privacy Policy are performed is Coimbra, Portugal. Users acknowledge and agree that the "center of gravity" of this Privacy Policy is Coimbra, Portugal, and that the Company's Wyoming incorporation does not create any basis for jurisdiction in the United States or any other jurisdiction outside Coimbra, Portugal.

37. Contact Information

Truly Free Website

Operated by Navon Social LLC



For Legal & Physical Documents:

Navon Social LLC
30 N Gould St
Ste N
Sheridan, WY, 82801, USA


Website:
Contact Us Form

Email:
hello@trulyfreewebsite.com

For GDPR, Privacy, or Data Protection Inquiries:
hello@trulyfreewebsite.com

38. Survival

The provisions of Sections 35 (Dispute Resolution) and 36 (Governing Law and Jurisdiction) shall survive any termination of this Privacy Policy or any User's use of the Services.