Privacy Policy
Last updated: September 8, 2026
The short version
- This website sets no tracking cookies and runs no analytics.
- It loads no third party scripts, fonts, or embeds. Every file comes from actuallycoded.com.
- The site brief travels through your own email app. Nothing you type on this site is sent or stored by the site itself.
- Payment happens on Stripe's own checkout page. This site never sees your card.
- Dae Calendar is an internal tool. It touches only the owner's own Google Calendar, stores tokens locally, and shares nothing.
- Your information is never sold, rented, or traded.
- Who this covers
- The website
- The site brief
- Payment
- Project data
- Hosting and email
- Dae Calendar
- Third parties
- Retention
- Your rights
- Children
- Where data is handled
- Changes
- Contact
1. Who this policy covers
actuallycoded is the business of Caleb Pierce, operating as a sole proprietorship in Orlando, Florida, United States. This page explains what information is handled when you visit actuallycoded.com, send a site brief, pay for a site, or work with actuallycoded, and how the business's internal scheduling tool, Dae Calendar, handles Google user data.
Questions about this policy go to calebseft@gmail.com.
2. The website
actuallycoded.com has no accounts and no logins. It is a static site, and browsing it does not create a profile or a record held by actuallycoded. Specifically:
- The site sets no tracking cookies and runs no analytics. There is no Google Analytics, no advertising pixel, no beacon, and no visitor counter. You will not see a cookie banner here, because there is nothing to consent to.
- It loads no third party scripts, fonts, or embeds. Every asset, including the typefaces, is served from actuallycoded.com itself, so your visit is not disclosed to an outside company as a side effect of loading the page. The site's own Content Security Policy enforces this in your browser.
- The JavaScript on the site runs the mobile menu, scroll animation, the copyright year, and the brief button described in section 3. It transmits nothing to actuallycoded or anyone else.
- It is hosted on GitHub Pages, and GitHub may record standard server logs, including IP addresses, as described in GitHub's own privacy statement. That is infrastructure logging by the host, not analytics collected by actuallycoded.
Concept pages
The pages linked under "Proof" are fictional businesses built to demonstrate the standard. They are labeled that way on every screen. Any form shown on a concept page is deliberately non-functional: it does not submit, transmit, or store what you type. It clears locally and confirms that nothing was sent. Please do not enter real personal information into a demonstration form on any website, including this one.
3. The site brief
The brief on the homepage is a set of text fields and a button. Pressing the button does one thing: it opens a new message in your own email app, addressed to hello@actuallycoded.com, with your answers written into it. The website does not send that message and cannot see whether you send it. Nothing is transmitted until you press send in your own mail app, and nothing you type into the fields is stored, logged, or sent anywhere by the site.
If you do send the brief, actuallycoded receives what you chose to include: typically a description of your business, who your page is for, what you want visitors to do, links to existing material, and your email address. That information is used only to build the page you asked for and to communicate with you about it.
Why I hold it: to take steps at your request before entering into a contract, and to perform that contract once you have paid. In GDPR terms this is Article 6(1)(b). Ordinary business correspondence is handled under legitimate interests, Article 6(1)(f).
Your email address is not added to a newsletter, a marketing list, or any automated outreach system. You will hear from actuallycoded about your order and nothing else.
4. Payment
Payment is taken by Stripe on Stripe's own hosted checkout page, which you reach by following a link from this site. This site loads no Stripe script and never sees, handles, or stores your card details. What Stripe collects on its checkout page, and how it protects it, is governed by Stripe's privacy policy.
After a payment, Stripe shows actuallycoded the information needed to fulfil the order and keep accounts: your name, your email address, the amount, the date, and the last four digits of the card. actuallycoded never receives your full card number. Payment records are kept for as long as tax and accounting law requires.
5. Project data
To build your page you may give me material such as text, images, logos, brand assets, and links. In some cases, to put the finished page live, you may give me access to a hosting account or domain registrar.
- That material and access are used only to build and deliver the page you paid for.
- Credentials are used for the engagement and are not shared with anyone else. You should change or revoke shared credentials once the page is live, and I will tell you when access is no longer needed.
- Your domain, hosting, and third party accounts remain yours and under your control throughout.
- If your page collects information about your own customers, you are the controller of that information, and I act only on your instructions in relation to it.
6. Hosting and email
The website is hosted on GitHub Pages (GitHub, Inc.), as described in section 2. Email sent to actuallycoded addresses is handled by Namecheap Private Email, which stores and delivers that mail under its own privacy policy. These providers process technical request and delivery data in order to serve pages and deliver mail, which is ordinary infrastructure operation rather than tracking by actuallycoded.
7. Dae Calendar and Google user data
Dae Calendar is an internal scheduling tool used by the business owner to manage his own Google Calendar. It is not offered to the public.
- Data accessed: calendar events, through Google's calendar.events scope, only on the calendar of the Google account that authorizes it.
- How it is used: creating, reading, updating, and deleting events on that authorizing account's own calendar. Nothing else.
- Storage: OAuth tokens are stored locally on the owner's own computer. Event data is not copied to any server, database, or third party.
- Sharing and selling: none. No advertising use, no sale of data, and no transfers except where required by law.
- Dae Calendar's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- Access can be revoked at any time at myaccount.google.com/permissions.
8. Third parties and outbound links
I do not sell, rent, trade, or share your personal information with third parties for their own marketing. Information is shared only where it is necessary to do the work you paid for (for example, with Stripe to take payment, or with your own hosting provider to put your page live), or where the law requires it.
This site links to external destinations such as Stripe, GitHub, and Steam. Once you follow an outbound link you are on someone else's website, governed by their privacy policy rather than this one.
Tools used in the work
Building a site involves software tools, including AI assisted tools, and I personally review and finish every deliverable before it reaches you. I do not put your credentials, your customers' data, or confidential business material into public AI services for training purposes. If your project requires a specific restriction on how tools are used, tell me before work starts and I will confirm it in writing.
9. Retention and deletion
Brief and project correspondence is kept for as long as it is useful for the work it concerns, and for any period required for tax, accounting, or dispute handling. Payment records are kept for the period tax law requires. To have your correspondence deleted, email calebseft@gmail.com and it will be removed, subject to any record I am legally required to keep.
10. Your rights
You may ask me to tell you what information about you I hold, provide a copy of it, correct anything inaccurate, delete it where I am not required to keep it, or restrict or object to a particular use.
Email calebseft@gmail.com and I will respond within 30 days. There is no charge for a reasonable request.
If you are in the European Economic Area or the United Kingdom, you also have the right to data portability and the right to lodge a complaint with your local supervisory authority.
If you are a California resident, you have the right to know what personal information is collected and how it is used, the right to request deletion, and the right not to be discriminated against for exercising those rights. actuallycoded does not sell or share personal information as those terms are defined by the CCPA and CPRA, and has not done so in the preceding twelve months. Because no sale or sharing occurs, no "Do Not Sell or Share My Personal Information" mechanism is required.
This website does not respond to Do Not Track or Global Privacy Control signals, because it does not track you in the first place.
11. Children
This site and the business's services are not directed to children under 13, and no information about children is knowingly collected. If you believe a child has sent me personal information, contact me and I will delete it.
12. Where information is handled
actuallycoded operates in the United States, and information you send is processed there. If you contact the business from outside the United States, you understand your information will be handled in the United States, where data protection law may differ from your own.
13. Changes
If this policy changes, this page will be updated and the date at the top revised. Material changes to how information is handled will be stated clearly rather than made quietly.
14. Contact
Caleb Pierce, doing business as actuallycoded
Orlando, Florida, United States
Privacy questions: calebseft@gmail.com
Business enquiries: caleb@actuallycoded.com