Cookie Basics

Cookies are small text files stored on your browser. MyLightHost uses them to keep you signed in, remember language or currency preferences, and show localized routes. Essential cookies operate automatically; optional cookies are controlled by your consent.

Your continued use of MyLightHost constitutes consent to the cookie practices outlined here. You may withdraw consent at any time using the preference controls below.

Types of Cookies We Use

Manage Preferences

Use the buttons below to update cookie consent. Choices apply to the current browser for one year. Essential cookies remain active.

Current status: Not set

Privacy & Data Protection

We process personal data in compliance with GDPR and the Bangladesh Digital Security Act. Only data needed for hosting, billing, support, and security is collected.

  • Billing details are encrypted and shared only with PCI-DSS compliant payment providers.
  • Support transcripts are retained for up to 24 months to improve troubleshooting accuracy.
  • Analytics information is anonymized at collection and never combined with marketing identifiers without consent.
  • Data export or deletion can be requested via a compliance ticket; verified requests are fulfilled within 30 days.

Data Retention

Retention periods balance legal obligations with operational requirements. After the window closes, information is securely deleted or anonymized.

Third-Party Providers

We partner with vetted suppliers that meet or exceed our security requirements. Data processing agreements are in place for each vendor.

  • Payments: Stripe, Paddle, and regional bank gateways (PCI-DSS Level 1).
  • CDN & DDoS mitigation: Cloudflare Enterprise network.
  • Email delivery: transactional SMTP partners with suppression and bounce control.
  • Monitoring & analytics: in-region services with encrypted transport.

Security Measures

Security is embedded in every layer of MyLightHost. We invest in technology, people, and processes to keep workloads safe.

  • ISO 27001-aligned policies, quarterly penetration tests, and automated vulnerability scanning.
  • Layer 7 firewalls, DDoS scrubbing, WAF rules, and regional mitigation centers.
  • Role-based access, hardware security keys for staff, encrypted vaults for secrets.
  • 24/7 monitoring with automated alerting, incident runbooks, and post-incident reviews.

Legal Terms

Services are delivered under the MyLightHost Master Services Agreement. Highlights are summarised below; see the client portal for full documentation.

  1. Acceptable Use Policy bans spam, abusive content, and malicious exploitation of our network.
  2. Shared hosting backups rotate every 30 days; VPS/dedicated customers manage their own backup cadence.
  3. Dedicated servers require 30 days cancellation notice; cloud resources can be cancelled instantly.
  4. Service Level Agreements outline uptime targets and credits for covered incidents.

Policy Updates

We update this page when regulations change or when MyLightHost introduces new products. Significant changes are emailed to account contacts.

  • January 2024 – Added dedicated server cancellation notice and clarified marketing cookie usage.
  • April 2024 – Updated retention timelines for support transcripts and analytics data.
  • July 2024 – Disclosed CDN and SMTP partners as part of our transparency programme.

Contact Compliance

Need a signed Data Processing Agreement, help with a privacy request, or clarification on cookies? Our compliance desk is ready to assist.