Introduction
Mukdi (“we”, “us”, “our”) provides hosting, domain, email, and related infrastructure services through https://mukdi.net and our client platforms. This Privacy Policy explains what personal information we collect, why we collect it, how we protect it, and the rights you may have regarding that information.
We design our systems to support privacy-by-default and data minimization principles. However, because we operate customer workloads globally, some data processing is required to deliver secure and reliable services. By using our website or purchasing services, you acknowledge the data practices described in this policy.
Information We Collect
Account and identity information
When you create an account, place an order, or request support, we collect information such as your name, email address, company name, billing address, and country. Depending on service type, we may request additional verification to prevent fraud and comply with payment processor or registry requirements.
Service and technical information
To provide infrastructure services, we process technical data including domain names, IP addresses, DNS records, server metadata, authentication events, API logs, and ticket attachments. We may also process limited telemetry for uptime monitoring, abuse detection, and service reliability engineering.
Billing and transactional information
Payments are handled through third-party processors. We store billing references, invoice data, and payment status, but we do not store complete credit card numbers on our application stack. Financial records are retained based on tax and accounting obligations.
How We Use Your Data
We process personal data for the following lawful and operational purposes:
- Provisioning, configuring, and maintaining hosting and domain services.
- Authenticating account access and preventing unauthorized use.
- Providing technical and billing support through tickets and communication channels.
- Sending service notices, maintenance alerts, and account updates.
- Detecting abuse, fraud, malicious traffic, and policy violations.
- Complying with legal obligations, court orders, and regulatory requests.
- Improving platform performance, product quality, and customer experience.
Where required by applicable law, we rely on consent for marketing communications and offer unsubscribe mechanisms. Transactional and security notices are treated as service communications and may be sent regardless of marketing preferences.
Data Sharing
We do not sell personal information. We share personal data only with trusted third parties where needed to operate services or satisfy legal requirements. These may include:
- Payment processors handling transactions and fraud screening.
- Infrastructure and network providers hosting service components.
- Domain registries and registrars required for domain operations.
- Email and messaging vendors used for account communications.
- Legal authorities when disclosure is required by law.
All subprocessors are selected with security and contractual safeguards, including data processing terms where appropriate.
Cookies
Our website and control panels may use cookies and similar technologies for session management, authentication, analytics, and fraud prevention. Some cookies are required for core functionality; others improve usability and performance metrics.
You can manage cookies through browser settings. Disabling certain cookies may affect sign-in flows, checkout, and dashboard behavior.
Your Rights (GDPR)
Depending on your location, you may have rights to access, correct, delete, restrict, or export personal data, and to object to certain processing activities. You may also withdraw consent where consent is the legal basis for processing.
To protect account security, we verify identity before fulfilling data requests. Some requests may be limited where legal obligations require retention or where disclosure would impact third-party rights.
Data Retention
We retain personal data only as long as necessary for service delivery, dispute resolution, legal obligations, and fraud prevention. Retention periods vary by category: billing records may be retained longer than support metadata due to statutory requirements.
After retention periods expire, we delete or anonymize data according to internal lifecycle policies and backup rotation schedules.
Security
We implement administrative, technical, and organizational controls to protect data, including access controls, network monitoring, encrypted transport protocols, audit logs, and least-privilege practices for internal systems.
No environment is perfectly secure, but we continuously update controls and incident response procedures to reduce risk and improve resilience.
Contact DPO
Privacy and data protection requests can be sent to support@mukdi.com. Please include your account identifier, request type, and jurisdiction to help us respond quickly.
Changes to This Policy
We may update this policy as services, regulations, or security practices evolve. Updated versions are posted on this page with a revised “Last updated” date. Material changes may also be communicated through account notices or email where appropriate.