DosSantos Systems
Legal 02 / 02DosSantos Systems LLC

Privacy Policy

Effective September 6, 2026 · DosSantos Systems LLC · applies to everything we publish and build

The short version

We build software for other people, and we publish a few apps of our own. We collect as little as the job allows: our apps keep your data on your device, this website sets no cookies and runs no trackers, and we have never sold anyone's data to anyone. Where a particular product does something different, it is named below — if it is not named, the general rules are the whole story.

01

Who this covers, and what it covers

This is the privacy policy of DosSantos Systems LLC ("we", "us"), 488 Pleasant St, Unit 1A, New Bedford, MA 02740. It applies to:

  • This website, dossantossystems.com.
  • The apps and software we publish under our own name. Today that is PlaneSimple for iPhone and iPad. Anything we add later is listed here, with its own section if it behaves differently from the general rules.
  • The work we do for clients — the software we design, build, and in some cases run for other businesses.

It does not cover a separate company's product just because we built it. If we built or host something for another business, that business decides what happens to the data in it and publishes its own policy; section 07 explains what our role is in that case.

For PlaneSimple this policy sits alongside the Terms of Service.

02

What we hold to, across everything

These are commitments, not aspirations. They apply to every product in section 01, and any future exception has to be written into this policy before it ships, not after.

  • No advertising. No ad networks, no advertising identifiers, no ad SDKs, in anything we publish.
  • No trackers or data brokers. No cross-site tracking, no fingerprinting, no enrichment services, no selling or renting of data to anyone.
  • No sale or sharing of personal information in the sense the California Consumer Privacy Act and comparable laws use those words. We have never done it and the business does not depend on it.
  • Local by default. Where an app can keep your data on your own device, it does, and we do not receive a copy.
  • Ask, do not assume. If a product needs to collect something new to do its job, we say so before it does, in the product and on this page.
  • Least data, shortest time. We would rather not hold something than hold it carefully.
03

This website

The site is static and we host it on our own hardware. There are no cookies, no logins, no analytics scripts, and no tracking pixels. The typefaces, scripts and images are all served from this domain — your browser makes no request to Google, to a CDN, or to anyone but us while loading a page.

Two things still happen, and they are worth stating plainly:

  • Server logs. Our web server records ordinary request data — IP address, time, the page requested, referring page, and browser user-agent string. We use it to keep the site running and to see, in aggregate, how much traffic it gets. It is not tied to a person and it is not used to build a profile.

The inquiry form. If you send us one, we receive what you typed: your name, your company, your email address, the project type and budget range you picked, and your description of the problem. We use it to reply and to keep a record of the conversation. It is recorded on our own server, and a notification is emailed to us through SendGrid (Twilio SendGrid, our only third-party service anywhere on this site) — so your message passes through SendGrid on its way to us. We do not sell it, share it, or add you to a mailing list, and there is no sales sequence. Ask us to delete it and we will.

04

Our apps, in general

Unless a product's own section below says otherwise:

  • There is no account. You do not give us a name, an email address or a password to use the app.
  • Your data is written to storage on your device. We do not run a server it syncs to, and we have no copy — if someone demanded your data from us, we would have nothing to give.
  • There is no analytics or crash-reporting SDK. We do not measure which screens you open or how often you use it.
  • If the app is sold or subscribed through an app store, that store handles payment and holds the payment details. We never see your card, billing address or store account. Stores give developers aggregate sales reports — units, revenue, country — which do not identify you.
  • If an app offers sync, it runs through your account with the platform provider, under their policy, not through infrastructure of ours.
05

PlaneSimple

PlaneSimple is a logbook and cost tracker for pilots and aircraft owners. It follows the general rules above with no exceptions, which in practice means:

  • Everything you enter — flights, aircraft, expenses, currency dates, maintenance items, partners, notes — stays on your device. It is not sent to us.
  • iCloud, if you turn it on. Sync runs through your Apple account, in Apple's infrastructure, under Apple's privacy policy. We have no access to it and cannot read what is in it. Turning it off keeps everything local to the device.
  • Premium is an auto-renewable subscription sold through the App Store using Apple's StoreKit. Apple takes the payment. The app asks Apple whether your subscription is active so it knows what to unlock; that check goes to Apple, not to us.
  • Apple's App Store, StoreKit and iCloud are the only third-party services PlaneSimple uses. There is no other integration of any kind.
06

If you email us

If you write to Sales@DosSantosSystems.com we have your email address and whatever you tell us — that is how email works. We use it to answer you, and we keep the thread for context if you write again. We do not add you to a mailing list. Ask us to delete the correspondence and we will.

If you send a screenshot or an export to help us reproduce a bug, we use it for that bug and delete it afterwards.

07

When we build or run software for you

Client work involves two different kinds of data, and they are governed differently.

Data about you as a client. Names, work email addresses and phone numbers, company details, contracts, invoices, and the ordinary record of a project — briefs, notes, tickets, designs, correspondence. We hold it to do the work, to bill for it, and to keep the records a business is required to keep. We do not use it for marketing to anyone else and we do not sell it.

Data inside the systems we build for you. Your customers' data in your application is yours, not ours. We act on your instructions: we handle it only to build, fix, run or migrate the system, only for as long as that needs, and never for our own purposes. In the language of data-protection law you are the controller and we are the processor. Practically:

  • We ask for the least access that will do the job, and prefer test or anonymised data where it will.
  • Credentials you give us are kept out of anything we publish and are rotated or handed back when the work ends.
  • We do not copy production data onto machines that are not part of the engagement.
  • If you need a data processing agreement, or need us named in your own privacy notice, ask.
  • If we become aware of a breach affecting your data, we tell you — promptly, with what we know — so you can meet your own notification duties.

If you are a customer of one of our clients and have a question about your data, ask that business: they decide what is collected and why. We will help them answer you.

08

Who else touches any of this

We keep the list short on purpose, and it is the whole list:

  • Apple — App Store, StoreKit and iCloud, for PlaneSimple, as described in section 05.
  • Twilio SendGrid — delivers the notification email when someone uses the inquiry form on this site, and any transactional email our own products send.
  • Our own servers — this website and our internal systems run on hardware we control, not on a third-party platform.

An engagement may require us to work inside infrastructure you have chosen — your cloud account, your CRM, your payment processor. Those are your vendors under your agreements with them, not subprocessors of ours.

09

Children

Nothing we publish is directed to children, and we do not knowingly collect information from one. In our apps' case that is easy to honour, because we do not collect anything from anyone.

10

How long we keep things

Data in our apps lives on your device for as long as you keep it, and we hold no copy to expire. For everything we do hold: inquiries and support correspondence are kept while the conversation is useful and deleted on request; client project records are kept for the life of the engagement and for as long afterwards as our contract, and tax and accounting rules, require; server logs are kept for a short operational window and are not archived. Ask us to delete something and we will, unless a law requires us to keep it — in which case we will tell you that is why.

11

Your rights

Wherever you live, you can ask us what we hold about you, ask us to correct it, ask us to delete it, or ask for a copy in a portable form. Write to Sales@DosSantosSystems.com. We do not charge for this, and we will not treat you differently for asking. If you are somewhere with statutory rights — the CCPA/CPRA in California, the GDPR in the UK or EU, or a comparable state or national law — those rights apply to whatever we actually hold, and we honour them regardless of where you are.

For our apps the honest answer is usually that we hold nothing, and the controls are already in your hands: the data is in the app, exports let you take it, and deleting the app removes the local copy — plus, if you used sync, deleting the app's data in your platform account removes the synced copy.

12

Security

Our strongest security measure is not holding your data. Where an app keeps everything on your device, its protection is your device's — passcode, encryption, and the settings on your platform account — which is why we prefer that arrangement over promising to guard a copy of our own.

For what we do hold: access is limited to the people who need it for the work, credentials are not shared or reused, our servers are kept patched, and anything reachable from the internet is served over TLS. No system is perfect, and we would rather say that than imply otherwise.

13

Where data is handled

We operate from the United States and our servers are in the United States. If you contact us or work with us from elsewhere, your information is handled here. For our apps, the question mostly does not arise: your data does not leave your device, and any sync is between you and your platform provider under their arrangements.

14

Changes to this policy

If we change what we collect, we will update this page with a new effective date, and we will do it before the change takes effect, not after. Material changes are also noted in the release notes of the product they affect.

15

Contact

DosSantos Systems LLC · 488 Pleasant St, Unit 1A, New Bedford, MA 02740 · Sales@DosSantosSystems.com

If you think we have got something wrong here, tell us. We would rather fix it than argue about it.