1. Introduction
This Privacy Policy explains how HOLY SERVERS LLC, doing business as HolyHosting, collects, uses, stores, protects, and shares personal information related to its websites, panels, hosting services, servers, VPS, domains, bots, billing systems, support, and other associated services.
By using HolyHosting, creating an account, contracting a service, accessing the panels, or communicating with the team, the user accepts the processing of their data in accordance with this Privacy Policy, the Terms and Conditions, refund policies, and any other applicable policies available at holy.gg/legal.
2. Scope of this Policy
This Policy applies to the services, websites, panels, systems, and domains operated or used by HolyHosting, including, but not limited to:
- holy.gg
- panel.holy.gg
- clientes.holy.gg
- securekyc.holy.hosting
- estado.holy.gg
It also applies to subdomains or services associated with servers offered under alternative domains operated by HolyHosting, including, but not limited to:
- holyserver.pro
- holyserver.online
- holyserver.site
- holy-server.xyz
- holyhosting.club
- holyhosting.online
- holyhost.ing
- miservidor.pro
- miservidor.top
- servidor.lol
This Policy applies to services related to game server hosting, VPS, domains, bots, managed services, technical support, billing, fraud prevention, and operational security.
If a specific service has a separate policy, such as the internal KYC verification system, that policy shall supplement this Privacy Policy and shall prevail solely with respect to that specific process.
3. Data we collect
HolyHosting may collect different types of data depending on how the user uses the platform.
3.1. Account data
When registering, contracting services, or using the client area, HolyHosting may collect:
- Full name.
- Email address.
- Country.
- Minecraft nickname.
- Discord integration.
- Full address.
- Password encrypted or protected through security mechanisms.
- Data associated with the account, profile configuration, and preferences.
3.2. Billing and payment data
To process payments, billing, renewals, verifications, and administrative compliance, HolyHosting may collect:
- Full name.
- Billing address.
- Country.
- Contact details.
- Payment history.
- Contracted services.
- Invoices, receipts, credit notes, or related commercial information.
- Transaction identifiers.
- Partial payment method information.
- Status of subscriptions, automatic renewals, or recurring charges.
- Customer, subscription, mandate, or payment method identifiers provided by external processors.
HolyHosting uses external payment processors such as Stripe, PayPal, and Tebex.
HolyHosting does not store CVV, full card numbers, or full sensitive credit or debit card data.
In the case of Stripe, HolyHosting may retain a secure token associated with the payment method, internal customer or payment method identifiers, automatic renewal status, and the last 4 digits of the card for payment method identification, renewals, billing support, and fraud prevention. When the customer cancels their subscription, the tokens and payment data associated with Stripe are deleted in accordance with HolyHosting's internal procedures.
When the customer enables subscriptions, HolyHosting or its payment processors may retain identifiers, payment tokens, subscription IDs, mandate references, recurrence status, and partial payment method data necessary to execute renewals, manage cancellations, prevent fraud, and provide billing support.
In the case of PayPal, if the user enables recurring payments or subscriptions from that platform, PayPal may retain and manage the recurrence in accordance with its own terms and policies. The user is responsible for canceling such recurrences directly through PayPal when applicable, without prejudice to the support and cancellation channels available at HolyHosting.
When a purchase is made through Tebex, the user understands that Tebex may act as the official seller or merchant of record as applicable, and that its own privacy policies, terms, and conditions may apply independently.
3.3. Technical and usage data
HolyHosting may automatically collect technical information related to the use of its sites, panels, and services, including:
- IP address.
- Date and time of access.
- User agent, browser, operating system, and device.
- Login records.
- Activity records in the client area.
- Audit logs.
- Per-server logs.
- Records of changes made by the user or by the system.
- Security events, errors, failed access attempts, or suspicious activity.
- Performance, stability, and service availability information.
- Information related to resource consumption, technical limits, storage, CPU, RAM, network, ports, processes, backups, and operational status of the service.
These data are used to operate the platform, prevent abuse, detect fraud, investigate incidents, maintain security, diagnose errors, apply reasonable usage limits, and improve the quality of the service.
3.4. Support data
When the user opens tickets, sends emails, uses support channels, or communicates with HolyHosting, HolyHosting may collect:
- Name and email address.
- Content of the inquiry.
- Files, screenshots, logs, or information sent by the user.
- History of communications.
- Responses from the support team.
- Technical data related to the reported incident.
Support tickets and communications may be retained for as long as necessary for purposes of operational history, defense against disputes, abuse prevention, support continuity, compliance, security, and service improvement.
3.5. Service, server, and user file data
Hosting services may involve the user uploading, generating, or storing files, configurations, databases, mods, plugins, backups, logs, worlds, projects, bots, applications, scripts, or other content within their contracted server or service.
3.5.1. Access by HolyHosting authorized personnel
HolyHosting authorized personnel may have technical access capability to files, configurations, logs, or data hosted on nodes, panels, or related infrastructure solely when necessary to operate the service, maintain security, investigate abuse, prevent fraud, enforce the Terms and Conditions, comply with legal obligations, or resolve critical technical incidents.
Such access is governed by the principle of least privilege and is recorded in internal audit logs.
3.5.2. Access authorized by the user upon opening a ticket
By opening a support ticket and requesting technical assistance regarding their service, the user grants HolyHosting authorization to access files, configurations, logs, and data hosted on their service, to the extent reasonable and necessary to resolve the reported incident.
Such authorization may include, as applicable, access by internal technical personnel or authorized technical agents of HolyHosting, subject to obligations of confidentiality, security, and data protection.
Access authorized by opening a ticket is limited to the reasonable scope of the reported incident and is recorded in the corresponding audit logs.
3.5.3. Technical management of the service
HolyHosting may delete, limit, or restrict excessive files, oversized logs, temporary data, residual files, abusive content, or elements that affect the performance, security, storage, or stability of the service, in accordance with the Terms and Conditions.
Retention, deletion, suspension, expiration, disaster recovery, backups, and specific rules regarding service files are also governed by the Terms and Conditions published at holy.gg/legal/tos.
3.6. Sub-users, delegated access, and third parties authorized by the user
When the user uses sub-user features, delegated permissions, or technical access for authorized third parties, HolyHosting may process data associated with such access, including:
- Sub-user name or identifier.
- Email address.
- Assigned permissions.
- Activity records.
- IP address.
- Dates and times of access.
- Actions performed within the service.
- Changes applied to servers, files, configurations, databases, or panels.
The account holder is responsible for managing, limiting, supervising, and revoking such access when applicable. HolyHosting may retain records related to sub-users and delegated access for security, audit, abuse prevention, incident investigation, and defense against disputes.
4. Internal KYC verification in special cases
HolyHosting may request an internal KYC verification in special cases, including, but not limited to:
- Fraud prevention.
- Account security.
- Payment disputes.
- Chargebacks.
- Platform abuse.
- Suspicious payments.
- Prevention of identity impersonation.
- Compliance with internal, legal, or provider policies.
- Investigation of unusual or potentially harmful activity.
The information collected during the KYC process is governed by the specific privacy policy available within the verification flow or portal itself.
HolyHosting's KYC process is used in a manual, occasional, and limited manner for verification, fraud prevention, and security. The existence of this general Policy does not replace the specific policy of the KYC system when such process is requested.
5. Purposes of data processing
HolyHosting may use the collected data for the following purposes:
- Create, manage, and protect user accounts.
- Provide hosting, VPS, domain, bot, and related services.
- Process payments, renewals, billing, and refunds.
- Manage recurring payments, subscriptions, payment tokens, transaction identifiers, and automatic renewals.
- Provide technical support and customer service.
- Maintain the security, stability, and availability of the infrastructure.
- Detect, prevent, and investigate fraud, abuse, attacks, spam, misuse, or violations of the Terms and Conditions.
- Manage logs, audits, and change records.
- Apply technical limits, fair use policies, and storage rules.
- Migrate, replicate, back up, or restore data when necessary for availability, maintenance, disaster recovery, load balancing, or operational continuity.
- Comply with legal, tax, accounting, or regulatory obligations.
- Respond to valid legal requests, competent authorities, judicial proceedings, or third-party claims.
- Resolve disputes, chargebacks, claims, or investigations.
- Send transactional, administrative, or security communications.
- Send commercial or marketing communications when consent or applicable legal basis exists.
- Improve the services, panels, internal processes, and user experience.
- Protect HolyHosting's rights, property, infrastructure, customers, and operations.
6. Legal basis and justification for the use of data
Depending on the applicable jurisdiction and the type of user, HolyHosting may process personal data under different bases, including:
- The need to provide the contracted service.
- The performance of a contractual relationship.
- Compliance with legal, tax, or accounting obligations.
- The legitimate interest in operating, protecting, and improving the services.
- Fraud, abuse, and security risk prevention.
- The management of disputes, chargebacks, claims, or investigations.
- The user's consent when required, for example, for commercial communications or non-essential technologies.
- The need to defend legal rights or respond to disputes.
7. Email communications
HolyHosting may send different types of communications.
7.1. Transactional and security emails
These emails may be sent even if the user has unsubscribed from marketing, as they are necessary to operate the service.
They include, but are not limited to:
- Account confirmations.
- Invoices, payments, renewals, or expirations.
- Reminders prior to an automatic charge.
- Suspension or termination notices.
- Password changes.
- Security alerts.
- Support notifications.
- Important changes to services or policies.
- Communications related to fraud, abuse, KYC, or disputes.
7.2. Commercial or marketing emails
HolyHosting may send promotional communications, news, offers, or commercial information through tools such as Wix Email Marketing, subject to the user's consent or applicable legal basis.
The user may subscribe to the HolyHosting newsletter when registering their account or from the client area. Newsletter subscription is optional and separate from account creation or service contracting.
Each commercial communication includes a link to unsubscribe. HolyHosting maintains an internal list of users who have opted out of receiving commercial communications, in order to respect such decision.
The cancellation of commercial communications does not affect the sending of transactional, legal, operational, or security communications.
9. External providers and third parties
HolyHosting may share personal or technical data with external providers solely when necessary to operate, protect, bill, improve, or deliver the services.
9.1. Identifiable service providers
Among the providers with whom HolyHosting may share information are:
- Stripe, for payment processing, renewals, payment tokens, subscriptions, fraud prevention, and billing support.
- PayPal, for payment processing, recurring payments, subscriptions, and billing support.
- Tebex, for certain payments or sales where applicable, acting as processor or official seller as the case may be.
- Cloudflare, for security, CDN, attack protection, DNS, and performance.
- Google Workspace, for email, storage, internal tools, security, or related services.
- Discord, for support, community, communication, or integrations.
- Wix Email Marketing, for commercial communications, campaigns, newsletters, and management of promotional emails.
- Trustpilot, for reviews or reputation management.
- Blesta, for billing, customer management, and services.
- HetrixTools, for monitoring, public status page, and technical availability reports.
- Namecheap, as domain registrar, where applicable.
The use of each provider may depend on the country, payment method, contracted service, contact channel, account configuration, or specific user interaction with HolyHosting.
Each of these providers processes data in accordance with their own privacy policies, without prejudice to the contractual obligations agreed upon with HolyHosting where applicable.
9.2. Physical infrastructure providers
HolyHosting operates with providers of physical infrastructure, datacenters, networks, connectivity, and hardware in Argentina, Chile, United States, Canada, Germany, France, and Finland.
These providers are selected based on their technical capacity, security certifications, and reasonable contractual commitments of confidentiality and data protection applicable to the provision of infrastructure services.
The specific identity of each infrastructure provider constitutes internal operational information that HolyHosting does not publicly disclose, without prejudice to its availability to competent authorities upon valid legal request or to justified requests in accordance with section 12.5 of this Policy.
9.3. Other recipients
Additionally, HolyHosting may share information when necessary with:
- Public authorities, courts, administrative bodies.
- Legal, accounting, or technical advisors.
- Payment processors for the resolution of disputes or chargebacks.
- Authorized third parties when there is a legal obligation or need to defend against claims, fraud, abuse, or incidents.
HolyHosting does not sell its customers' personal data.
10. International transfers, migrations, and replication of data
HolyHosting provides services internationally.
Customer data may be hosted, processed, transferred, replicated, or migrated between the countries in which HolyHosting operates infrastructure, primarily Argentina, Chile, United States, Canada, Germany, France, and Finland, in addition to other locations where the external providers identified in section 9 operate.
By using HolyHosting, the user understands and accepts that their data may be transferred internationally when necessary to:
- Provide the contracted service.
- Process payments.
- Provide support.
- Operate infrastructure.
- Perform maintenance.
- Migrate services between nodes or servers.
- Balance load.
- Improve performance or availability.
- Manage backups or disaster recovery.
- Prevent fraud or abuse.
- Comply with legal obligations.
- Maintain security, availability, and operational continuity.
Data, files, and configurations of active services may be moved, replicated, or migrated between nodes, servers, datacenters, or internal systems, within the same region or to locations necessary for load balancing, maintenance, disaster recovery, security, availability, or service improvement.
Transferred data may be subject to the laws of the countries where they are processed, which may not offer the same level of protection as the user's country of residence. When required by applicable regulations, HolyHosting will endeavor to apply valid international transfer mechanisms.
11. Data retention
HolyHosting retains personal data for as long as necessary to fulfill the purposes described in this Policy, provide services, maintain internal records, comply with legal or tax obligations, prevent fraud, resolve disputes, investigate abuse, and protect the security of the platform.
The general retention periods are:
- Account data after account closure: up to 180 days from closure, on the basis of fraud prevention and operational security, unless a legal obligation or specific legitimate need justifies retaining them for a longer period.
- Billing and transaction data: for the time necessary to comply with applicable legal, tax, and accounting obligations, as well as fraud prevention and dispute resolution.
- Payment tokens, subscription identifiers, and partial payment method data: for the time necessary to manage renewals, support, billing, disputes, and fraud prevention. In the case of Stripe, they are deleted upon cancellation of the subscription. In the case of PayPal, recurring charges must be canceled by the user directly from their PayPal account.
- Security, audit, and activity logs: for the time necessary for defense against claims, fraud prevention, incident investigation, legal compliance, and protection of the platform.
- IP logs: up to 180 days, unless a legal obligation or legitimate need justifies retaining them for a longer period.
- Support tickets and communications: for the time necessary for historical support, security, abuse prevention, defense against claims, and compliance.
- Data related to disputes, fraud, abuse, chargebacks, or violations of terms: for the time necessary for defense, investigation, compliance, or prevention of new infractions.
- Customer server files: are deleted 7 days after the expiration of the service. Residual copies may exist in disaster recovery systems for a maximum period of 30 days, not available for ordinary restoration.
- KYC data: in accordance with the specific privacy policy of the internal KYC available on the corresponding verification portal.
Deletion of the service implies deletion of operational access and active service data. However, residual copies may exist in backup or disaster recovery systems for the limited period indicated, which will not be available for ordinary restoration and will be deleted in accordance with internal technical cycles.
When data is no longer necessary, HolyHosting may delete, anonymize, or retain it solely when a valid justification exists.
12. User rights and requests
12.1. General rights
Regardless of their location, the user may request that HolyHosting:
- Access their personal data.
- Rectify incorrect information.
- Delete personal data.
- Provide information about the purposes, categories, and recipients of the processing.
- Provide information about applicable retention periods.
12.2. Additional rights depending on applicable jurisdiction
Depending on the applicable jurisdiction, the user may have additional rights under local data protection regulations, including, where applicable:
- The right to restriction of processing.
- The right to object.
- The right to data portability.
- The right to withdraw consent when processing is based on consent.
- The right not to be subject to decisions based solely on automated processing, including profiling, where applicable.
- The right to lodge a complaint with a competent data protection authority.
12.3. How to exercise rights
Requests must be sent to [email protected], indicating the email associated with the account and the information reasonably necessary to identify the user and process the request.
HolyHosting will respond to requests within a maximum period of 30 days from receipt, extendable when the complexity or volume of the requests so requires, in accordance with applicable regulations.
12.4. Limitations on rights
HolyHosting may refuse, limit, or delay a request when:
- There is a legal obligation to retain the information.
- It is necessary to retain the data for defense against claims, disputes, or investigations.
- Deletion would prevent the investigation of fraud, abuse, or unlawful activity.
- The request is manifestly unfounded, excessive, repetitive, or impossible to verify.
- Applicable law permits or requires retention of the data.
Deletion of data does not always entail the immediate deletion of all associated information, especially when there are legal obligations, billing records, evidence of fraud or abuse, tickets related to incidents, temporary backups, security logs, or information necessary to protect the platform.
12.5. Information about specific infrastructure providers
Users who require detailed information about the identity of specific infrastructure providers that process their data, in the context of a justified request under applicable data protection regulations, may contact [email protected].
HolyHosting will evaluate such request on a case-by-case basis and may provide the information when there is a valid legal justification and a reasonable confidentiality commitment from the requester.
13. Legal requests, authorities, and third-party claims
Claims regarding copyright and other intellectual property rights are governed by the Copyright and Intellectual Property Claims Policy available at holy.gg/legal/copyright
14. Minimum age and minors
To purchase or contract services on HolyHosting, the user must be 18 years of age or older.
Minors under 18 years of age may only use HolyHosting services with the authorization and under the responsibility of their parent or legal guardian.
Minors under 13 years of age may not register, purchase, or contract services directly on HolyHosting.
If HolyHosting detects that an account was created or used in violation of this section, it will apply the following procedure:
- Immediate cancellation of the associated service or account.
- Refund of the service when applicable.
- Deletion of sensitive data associated with the minor.
- Retention of minimal data, such as email and identifiers, for the sole purpose of preventing new registrations, contracts, or requests until the user has valid authorization or reaches the age of majority.
- Application of reasonable technical measures to prevent retries, including, but not limited to, blocking by email and identifiers associated with the payment method.
15. Information security
HolyHosting applies technical, administrative, and organizational measures intended to protect personal data, accounts, systems, and infrastructure.
These measures may include, among others:
- Use of Cloudflare and perimeter protection systems.
- Encryption in transit through HTTPS/TLS.
- Access controls.
- Principle of least privilege.
- Two-factor authentication on internal or administrative access.
- Use of VPN and access restrictions.
- Audit logs.
- Security monitoring.
- Separation of permissions.
- Protection against abuse, attacks, and unauthorized access.
- Internal procedures for review and incident response.
- Additional security measures depending on the service, infrastructure, or detected risk.
However, the user understands that no system connected to the internet is completely secure.
Although HolyHosting makes reasonable and notable efforts to protect information, no method of transmission, storage, processing, or digital defense can guarantee absolute security. Therefore, HolyHosting cannot guarantee that its systems, services, providers, networks, or infrastructure are completely free of vulnerabilities, attacks, unauthorized access, human error, technical failures, third-party incidents, or security breaches.
In the event of a security incident that may significantly affect users' rights, HolyHosting will assess the scope, impact, and applicable obligations, and will notify affected users within a reasonable period once the internal investigation has been completed and in accordance with applicable regulations.
16. User responsibility
The user is responsible for:
- Keeping their password secure.
- Using unique and secure credentials.
- Activating available security measures when applicable.
- Not sharing access with unauthorized third parties.
- Properly managing sub-users, delegated permissions, and technical access.
- Revoking third-party access when no longer necessary.
- Keeping their contact information up to date.
- Ensuring that the content hosted in their services complies with the Terms and Conditions.
- Properly managing files, backups, configurations, and data within their own services.
- Immediately notifying any suspicious access or unauthorized use.
HolyHosting shall not be liable for losses, improper access, or damages arising from user negligence, compromised credentials, malware on user devices, insecure configurations made by the user, sub-users authorized by the holder, or improper use of the account.
17. User-hosted content
Users may host files, configurations, databases, mods, plugins, worlds, bots, applications, scripts, or other content within their services.
The user retains responsibility for the content they upload, execute, store, or distribute through HolyHosting.
HolyHosting may take action regarding content, services, or accounts when there is a violation of the Terms and Conditions, security risk, abuse, fraud, illegal activity, harm to third parties, valid claims, or operational necessity.
HolyHosting may review, limit, suspend, delete, or retain evidence related to hosted content when necessary to investigate abuse, respond to legal claims, comply with requests from authorities, protect the infrastructure, or enforce the Terms and Conditions.
18. Backups, disaster recovery, and operational deletion
HolyHosting may maintain internal backup, disaster recovery, snapshot, replica, or technical copy systems intended to preserve operational continuity, mitigate critical failures, respond to incidents, or protect the infrastructure.
These systems do not replace the user's personal backups. The user is responsible for maintaining their own external copies when the hosted content is important to them.
When a service is suspended, canceled, deleted for non-payment, deleted due to chargeback, or terminated for any other reason set forth in the Terms and Conditions, HolyHosting may delete the operational access and the active data associated with the service.
However, residual copies may exist in disaster recovery systems for a maximum period of 30 days from the termination of the service. Such copies will not be available for ordinary user restoration and will be deleted in accordance with internal retention, security, and operation cycles.
19. Linked or integrated third-party services
HolyHosting services may contain links, integrations, buttons, payment methods, widgets, review systems, support tools, or functionalities provided by third parties.
The use of such services may be subject to the privacy policies, terms and conditions, and practices of those third parties.
HolyHosting does not fully control the privacy practices of external providers, although it endeavors to use providers that are reasonably reliable and suitable for the operation of its services.
20. Changes to this Policy
HolyHosting may update this Privacy Policy when necessary to reflect legal, technical, operational, commercial, or security changes.
For substantial changes, HolyHosting will notify users at least 30 days in advance by email, client area, or other official channel, and users will have the right to terminate their services without penalty if they do not accept the modified version.
For minor, corrective, or clarifying changes, the version in effect shall be the one published at holy.gg/legal/privacy.
21. Contact
For inquiries, requests, or claims related to privacy, data protection, or this Policy, the user may contact HolyHosting through:
HOLY SERVERS LLC 30 N Gould St Ste N, Sheridan, WY 82801, USA
22. Relation to other documents
This Privacy Policy forms part of the contractual and operational framework of HolyHosting and must be read together with:
- Terms and Conditions: holy.gg/legal/tos
- Service Level Agreement (SLA): holy.gg/legal/sla
- Cookie Policy: holy.gg/legal/cookies
- Copyright Policy: holy.gg/legal/copyright
- Privacy Policy of the internal KYC verification, when applicable, available on the verification portal.
- Specific rules for contracted services.
- Applicable terms of external providers.
In the event of a conflict between this Policy and a specific policy, the specific policy shall prevail solely with respect to the specific service or process it governs.