Privacy Policy
Version 2.2
Last updated: September, 9, 2026
Dot5TM is the trademark of Wicketech, LLC (“Company”). We at the Company (“we”, “our”, or “us”) respect your privacy and are strongly committed to keeping secure any information we obtain from you or about you. This Privacy Policy describes our practices with respect to Personal Data that we collect from or about you when you use our website, applications, and services (collectively, “Services”).
This Privacy Policy does not apply to personal data we process about our own personnel, which is described in our internal privacy notice provided to them directly. It also does not apply to personal data we process as a processor or service provider on behalf of our customers when providing services to them. For example, if your personal data is part of a database we manage or process for a customer, such customer will act as the controller and its privacy policy will govern the processing of your personal data. Our use of that data is governed by our customer agreements covering access to and use of those offerings.
1. Personal Data we collect
We collect personal data relating to you (“Personal Data”) as follows:
Personal Data You Provide: We collect Personal Data if you create an account to use our Services or communicate with us as follows:
Account Information: When you create an account with us, we will collect information associated with your account, including your name, contact information, user ID and organization ID. If you subscribe to a paid plan, we also collect the billing details you provide to us, such as your billing address and, where applicable, your tax identification or VAT number (collectively, "Account Information").
User Content: We collect Personal Data that you provide in the input to our Services (“Content”), including your prompts and other content you upload.
Communication Information: If you communicate with us, such as via our website, email or our pages on social media sites, or otherwise, we may collect Personal Data like your name, profession, organization name, email, telephone number or other contact information, and the contents of the messages you send (“Communication Information”).
Payment Information: Payments are processed securely by Stripe. We do not collect or store full payment card details ourselves, but we may receive limited payment-related information from Stripe, such as transaction status, payment confirmations and account-related data necessary to provide and administer the Services. Stripe processes payment information in accordance with its own privacy policy, available at https://stripe.com/privacy.
Events: if you attend a Company event, we may collect your Personal Data when you attend the event and exchange your details with us (for example, by providing your business card).
Potential Candidates: If we identify you as a potential candidate for a role and contact you directly, we may collect Personal Data such as your name, contact details, and the information contained in your CV or application, including your qualifications, employment history and professional activities. Where you provide referees, we may contact them and collect the references they provide.
Other Information You Provide: We collect other information that you may provide to us, such as if you create and manage tasks, contracts and talent profiles (including your name, contact details and contractual information), or when you participate in our events or surveys.
Personal Data We Receive from Your Use of the Services: When you visit, use, or interact with the Services, we receive the following information about your visit, use, or interactions (“Technical Information”):
Log Data: We, or our service providers, collect information that your browser or device automatically sends when you use our Services. Log data includes your Internet Protocol address, browser type and settings, the date and time of your request, and how you interact with our Services.
Usage Data: We, or our service providers, collect information about your use of the Services, such as the features you use and the actions you take, as well as your time zone, country, the dates and times of access, user agent and version and type of computer or mobile device.
Device Information: We, or our service providers, collect information about the device you use to access the Services, such as device name, operating system, device identifiers, and browser types.
Cookies and Similar Technologies: We use cookies and similar technologies to operate and administer our Services and improve your experience. Please visit our Cookie Policy for more information.
Product Analytics, Session Replay and Feedback Data: When you use our web application, including any beta environment, we and our analytics providers collect information about how you interact with the product, such as pages and screens viewed, feature interactions, clicks and scrolling, session duration, and frontend errors. This may include session recordings that replay your interactions with the interface; these recordings are configured to mask all text and images, so that the content you view or enter is not visible in the replay. If you submit feedback through the application, we collect the content of that feedback. Once you are logged in, this information may be linked to your email address, user ID, user type and organization ID. Where these technologies are not strictly necessary, we use them only with your consent, which you can withdraw at any time through our cookie settings.
Activity and Audit Log Data: To maintain an auditable record of actions within the platform, our backend systems automatically record:
The type of action performed (e.g. task created, contract updated).
The ID of the user who performed the action.
The ID of the task or contract affected.
A timestamp of when the action occurred.
Optional structured metadata relevant to the action.
These logs do not contain free-text content, IP addresses or device information.
Information We Receive from Other Sources: We receive information from our trusted partners, such as security partners, to protect against fraud, abuse, and other security threats to our Services. We maintain pages on social media platforms, such as Instagram, Meta, YouTube and LinkedIn, and other third-party platforms. When you visit or interact with our pages on those platforms, the platform provider’s privacy policy will apply to your interactions and their collection, use, and processing of your Personal Data. You or the platforms may provide us with your information through the platform, and we will treat such information in accordance with this Privacy Policy.
Where we are unable to verify a business customer's VAT registration and the customer does not provide supporting evidence, we may obtain business registration information about the customer from public company registries or the business's public website.
2. How we use Personal Data
We collect and process your Personal Data where we have a valid legal basis to do so. The legal basis for our collection and use of your Personal Data varies depending on the manner and purpose for which we collected it:
Provide and maintain the Services. To perform a contract with you, or when it is in our legitimate business interests to do so, we will use Personal Data to operate, provide and maintain our Services, including to create and manage your account so you can log in, build a profile, and interact with us to benefit from our Services.
Process payments and maintain financial records.To perform our contract with you, we use Personal Data to take payment for the Services, administer subscriptions and renewals, and issue invoices and payment confirmations. We also record and retain billing, invoice and transaction information, including any tax or VAT registration number you provide, because it is in our legitimate interests to maintain accurate financial records, to apply the correct tax treatment to our invoices, and to meet the tax and accounting record-keeping requirements that apply to us as a US company. Our customers are generally businesses; where we process the details of an individual acting as a contact for a business customer, we rely on our legitimate interests in administering our finances and our customer relationships. Where a customer is an individual rather than a business, this processing is necessary to perform our contract with them.
Improve, monitor and personalize the Services. It is in our legitimate interests to improve and keep our Services safe, which includes protecting the security of the Services and investigating suspected misuse where it arises. Where we use non-essential analytics, session-replay or feedback technologies, we rely on your consent. Where the processing is necessary to secure the Services or diagnose faults, we rely on our legitimate interests.
Communicate with you about the Services, including by sending you announcements, updates, providing you with customer support (including via chat messages), security alerts, and support and administrative messages. To perform our contractual obligations to you, or when it is in our legitimate interests to do so, we will use your Personal Data to send you announcements, updates, security alerts, support and administrative messages, responses to your requests, questions, and feedback, and communicate with you about our Services, including by sending technical notices, updates, security alerts, support and administrative messages, and to respond to your comments, questions, and customer service requests.
Research and development. We use Personal Data to help us better understand how people use our Services and how we can develop, analyze and improve them where it is in our legitimate interests to do so. This includes monitoring and analyzing trends, usage, and activities in connection with our Services. As part of these activities, we may create aggregated, de-identified or other anonymous data from Personal Data we collect. We may use this anonymous data and share it with third parties for our lawful business purposes, including to analyze and improve the Services, and promote the Services.
Compliance and protection. We use your Personal Data to comply with our legal obligations and to defend us against legal claims or disputes where it is in our legitimate business interests to do so, including to:
Comply with applicable laws, lawful requests, and legal process, such as to respond to subpoenas or requests from government authorities.
Audit our internal processes for compliance with legal and contractual requirements and internal policies.
Enforce the terms and conditions that govern our Services.
Where we have a legitimate interest, to prevent, identify, investigate, and deter fraudulent, harmful, unauthorized, unethical, or illegal activity, including cyberattacks and identity theft.
Where we have a legitimate interest, to protect our, your or others’ rights, privacy, safety or property (including by making and defending legal claims).
Marketing communications. We may send product updates and newsletters to our subscribers and beta testers. Where you have given us your contact details at an event or trade show, we may also send you a small number of emails to ask whether you would like to learn more about the Services. In either case, we rely on our legitimate interests, or your consent where required by law. You can object to these communications at any time by contacting us at privacy@dot5.io.
Recruitment. Where it is in our legitimate interests to identify and assess potential candidates for roles at Wicketech, we use Personal Data to contact individuals we believe may be suitable, request and review CVs, and make hiring decisions.
3. Disclosure of Personal Data
We may disclose your Personal Data in the following circumstances:
Affiliates: We may disclose your Personal Data between and among the Company and group entities for purposes consistent with this Privacy Policy.
Vendors and Service Providers: To assist us in meeting business operations needs and to perform certain services and functions, we may disclose Personal Data to vendors and service providers, including providers of hosting services, customer service vendors, cloud services, content delivery services, support and safety monitoring services, email communication software, web analytics services, payment and transaction processors, and other information technology providers. Pursuant to our instructions, these parties will access, process, or store Personal Data only in the course of performing their duties to us.
Business Transfers: If we are involved in a proposed or completed corporate transaction such as a merger, acquisition, reorganization, financing, asset sale or similar transaction, or in the event of bankruptcy, receivership or relation proceedings (collectively, a “Transaction”), your Personal Data may be disclosed in the diligence process with counterparties and others assisting with the Transaction and transferred to a successor or affiliate as part of that Transaction along with other assets.
Professional Advisors: We may disclose your Personal Data to professional advisors, such as lawyers, auditors, bankers, advisors and insurers, where necessary in the course of the professional services that they render to us.
Legal Compliance, Government Authorities or Other Third Parties: We may share your Personal Data, including information about your interaction with our Services, with government authorities, industry peers, or other third parties in compliance with the law (i) if required to do so to comply with a legal obligation, or in the good faith belief that such action is necessary to comply with a legal obligation, (ii) to protect and defend our rights or property, (iii) if we determine, in our sole discretion, that there is a violation of our terms, policies, or the law; (iv) to detect or prevent fraud or other illegal activity; (v) to protect the safety, security, and integrity of our products, employees, users, or the public, or (vi) to protect against legal liability.
Business Account Administrators: When you join a business account, the administrators of that account may access and control your account, including being able to access your Content. In addition, if you create an account using an email address belonging to your employer or another organization, we may share the fact that you have an account and certain account information, such as your email address, with your employer or organization to, for example, enable you to be added to their business account.
Other Users and Third Parties You Interact or Share Information With: Certain features may allow you to interact or share information with other users or third parties. You may be able to send information to third-party applications. Information you share with third parties is governed by their own terms and privacy policies, and you should make sure you understand those terms and policies before sharing information with them.
With your instruction or permission. We may disclose Personal Data to relevant third parties, where you give us permission to do so in the course of your relationship with us from time to time.
We do not sell personal data to third parties. We do not use any advertising networks or share personal data for targeted advertising purposes.
4. International data transfers
In the context of providing you with our Services, we will store your Personal Data in the United States, and may transfer your Personal Data to our affiliates and service providers in jurisdictions outside the European Economic Area (“EEA”) and the United Kingdom (“UK”), such as the United States and other jurisdictions. Please note that such jurisdictions may not provide the same protections as the data protection laws in your home country.
When we engage in cross-border data transfers, we will ensure that relevant safeguards are in place to afford adequate protection for Personal Data and we will comply with applicable data protection laws, in particular by relying on an EU Commission or UK government adequacy decision or on contractual protections for the transfer of Personal Data. For more information about how we transfer Personal Data internationally, please contact us as set out in the “How to contact us” section below.
5. Retention
Where required under applicable laws, we retain Personal Data only for as long as is necessary to fulfill the purposes for which it was collected and processed in accordance with applicable laws and regulatory obligations or until you withdraw your consent (where applicable).
To determine the appropriate retention period for Personal Data, we consider the amount, nature, and sensitivity of the Personal Data, the potential risk of harm from unauthorized use or disclosure of Personal Data, the purposes for which we use Personal Data, and whether we can achieve those purposes through other means, and the applicable legal and regulatory requirements.
In some cases, the length of time we retain data depends on your settings.
6. Your rights
Depending on your location and the nature of your interactions with our Services, you may have certain statutory rights in relation to your Personal Data. For example, you may have the right to:
Access your Personal Data and information relating to how it is processed. Where applicable, we will provide the information in a portable, machine-readable, readily-usable format.
Delete your Personal Data from our records.
Update or correct your Personal Data.
Restrict how we process your Personal Data.
Withdraw your consent—where we rely on consent as the legal basis for processing at any time.
Object to how we process your Personal Data.
You can exercise your rights through your account or by submitting your request to us at privacy@dot5.io. Prior to responding to your requests, we may verify your identity by matching any requested identifying information you provide against the information we have about you. If you do not have an account with us, or if we suspect fraudulent or malicious activity, we may ask you to provide additional Personal Data for verification. If we cannot verify your identity, we will not be able to honor your request.
In some instances, your rights and choices may be limited, such as where fulfilling your request would impair: the rights of others, our ability to provide a service you have requested, or our ability to comply with our legal obligations and enforce our legal rights.
Right to complain. Depending on where you reside, such as if you reside in the EEA or UK, you may have the right to complain to a data protection regulator where you live or work, or where you feel a violation has occurred. Click here to find your local supervisory authority in the EEA. In the UK, the competent authority is the Information Commissioner’s Office.
We do not “sell” Personal Data or “share” Personal Data for cross-contextual behavioral advertising, and we do not process Personal Data for “targeted advertising” purposes (as those terms are defined under state privacy laws). We also do not process sensitive Personal Data for the purposes of inferring characteristics about a consumer.
7. Security
We implement commercially reasonable technical, administrative, and organizational measures designed to protect Personal Data from loss, misuse, and unauthorized access, disclosure, alteration, or destruction. However, no Internet or email transmission is ever fully secure or error free. Therefore, you should take special care in deciding what information you provide to the Services. In addition, we are not responsible for circumvention of any privacy settings or security measures contained on the Service, or third-party websites.
8. Other sites and services
Our Services may contain links to websites and other online services operated by third parties. In addition, our content may be included on web pages or online services that are not associated with us. These links and integrations are not an endorsement of, or representation that we are affiliated with, any third party. We do not control third party websites or online services, and we are not responsible for their actions. Other websites and services follow different rules regarding the collection, use and disclosure of your Personal Data. We encourage you to read the privacy policies of the other websites and online services you use.
9. Children’s privacy
The Services are not intended for use by children under 18 years of age. If we learn that we have collected Personal Data through the Services from a child under 18 without the consent of the child’s parent or guardian as required by law, we will delete it as soon as possible.
10. Changes to the privacy policy
We reserve the right to modify this Privacy Policy at any time. If we make material changes to this Privacy Policy, we will notify you by revising the date at the top of this Privacy Policy and posting it on the website. In some cases, we may provide you with additional notice (such as adding a statement to our website homepage or sending you a notification). We encourage you to review the Privacy Policy whenever you access the Services or otherwise interact with us to stay informed about our information practices and the choices available to you.
11. How to contact us
Responsible entity. Wicketech, LLC is the entity responsible for the processing of Personal Data
Data Protection Officer and Representatives
Data Protection Officer. We have appointed a Data Protection Officer (DPO) who can be contacted about this policy, your personal data, or the exercise of your rights: Graham Reilly — graham.reilly@workstreet.com
EU Representative. As we are established outside the EU, we have appointed a representative under Article 27 of the EU GDPR. If you are in the European Economic Area, you may contact our EU representative: Ria Pardeep, WorkstreetBahnhofstraße 8, 30159 Hanover, Germany — ria@workstreet.com
UK Representative. As we are established outside the UK, we have appointed a representative under Article 27 of the UK GDPR. If you are in the United Kingdom, you may contact our UK representative: Rebecca Sham, WorkstreetRegus Exeter Business Park, 1 Emperor Way, Exeter, Devon, EX1 3QS, United Kingdom — rebecca@workstreet.com