Legal
Privacy Policy
Last updated May 30, 2026
This Privacy Policy explains how Straight To Web (“we,” “us,” “our”) collects, uses, shares, and protects information when you visit straighttoweb.com, request a free audit, or sign up for our Google Ads Management service or any other product we offer.
1. Who we are
Straight To Web is operated by Dustin McCaffree at 3025 Grunion Ln, Spring Hill, TN 37174, United States. You can contact us at dustin@straighttoweb.com or +1 (916) 220-9814.
2. What we collect
2.1 Information you give us directly
- Contact info — name, business name, email, phone, mailing address — submitted via our forms (audit request, signup, contact, lead inquiries).
- Business info — industry, city/state, website URL, current marketing situation — collected to tailor our service and audit reports.
- Payment info — processed entirely by Stripe. We never see or store your credit card number; we only store the Stripe customer and subscription IDs.
2.2 Information we receive from third parties
- Google Search Console — site performance data (impressions, clicks, queries, positions) for sites you've granted us access to.
- Google Ads — campaign, ad group, keyword, and performance data for accounts you've linked to us. See section 6 for the full Google API disclosure.
- Telnyx — inbound and outbound call metadata (caller ID, duration, recording URLs) for phone numbers we provision on your behalf.
- Public business data — we scrape public business listings (BBB, Google Maps, business websites) for prospect research when evaluating outreach targets.
2.3 Information we collect automatically
- Usage data — pages viewed, links clicked, IP address, browser, referrer.
- Cookies and similar technologies — used for authentication, preferences, and basic analytics. We do not use third-party advertising cookies on our own site.
3. How we use your information
- To deliver the services you've signed up for.
- To generate audit reports and personalized recommendations for your business.
- To manage Google Ads, Telnyx, and other third-party accounts on your behalf when you've given us permission.
- To send you transactional emails (audit deliveries, billing receipts, account notifications) and, with your permission, newsletters or marketing follow-ups.
- To improve our services, detect abuse, and comply with legal obligations.
4. How we share your information
We do not sell your personal information. We share it only with:
- Service providers who help us operate the platform: Vercel (hosting), Neon (database), Cloudflare R2 (file storage), Stripe (billing), Resend (email), Telnyx (telephony), Google (search and ads), Anthropic and OpenAI (AI processing, including audit and campaign generation), DataForSEO and Ahrefs (SEO data), Firecrawl (web scraping), Trigger.dev (background jobs), fal.ai (Whisper transcription).
- Authorities when required by law (subpoena, court order, or valid government request).
- Acquirers in connection with a merger, acquisition, or sale of all or substantially all of our assets, in which case the acquirer is bound by these terms unless and until updated.
5. Call recordings and transcripts
Phone numbers we operate record both inbound and outbound calls (including the outbound calls we place on your behalf through our call screening and outreach tools). Recordings are stored in Cloudflare R2 and automatically transcribed via fal.ai's Whisper model.
If you live in a two-party-consent state (California, Florida, Illinois, etc.), we play a brief recording notice before bridging the call. By continuing the call after that notice, you consent to the recording. You can request deletion of any recording or transcript at any time by emailing us.
6. Google API Services User Data Policy
When you connect your Google Ads or Google Search Console account to Straight To Web, we receive access via Google's OAuth 2.0 flow. Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically:
- We use Google user data only to provide the services you have signed up for — managing your Google Ads campaigns, pulling Search Console metrics into your dashboard, and creating or modifying ad units, keywords, and budgets that you have authorized.
- We do not transfer your Google user data to third parties except as necessary to operate the service (e.g., storing performance data in our hosted database), to comply with applicable law, or as part of a merger or acquisition.
- We do not use Google user data to serve advertisements, including retargeted, personalized, or interest-based advertising.
- We do not allow humans to read Google user data unless (a) we have your specific consent to look at a specific piece of data, (b) it is necessary for security investigation or to respond to abuse, or (c) it is necessary to comply with applicable law.
You can revoke our access at any time by visiting myaccount.google.com/permissions and removing “Straight To Web.” You can also request that we delete any Google user data we have stored by emailing us.
7. Data retention
- Account data — retained while your account is active and for up to 24 months after cancellation.
- Call recordings and transcripts — retained for up to 12 months unless you request earlier deletion.
- Google Ads / Search Console performance data — retained while you're a customer plus 12 months after cancellation for historical reporting.
- Billing records — retained for at least 7 years to comply with US tax law.
8. Your rights
Depending on where you live, you may have the right to access, correct, or delete the personal information we hold about you, to object to or restrict certain processing, to data portability, and to lodge a complaint with a regulator. To exercise any of these rights, email us at dustin@straighttoweb.com. We'll respond within 30 days.
9. Security
We use TLS for all data in transit and rely on encryption at rest provided by our infrastructure vendors (Neon, Cloudflare R2). API credentials are stored as encrypted environment variables. We do not guarantee perfect security; no system is. If we ever experience a breach affecting your information, we'll notify you within 72 hours of becoming aware.
10. Children
Our services are not directed at children under 13. We do not knowingly collect information from anyone under 13. If you believe a child has provided us information, please contact us and we'll delete it.
11. International users
We operate from the United States. If you access our services from outside the US, you consent to your information being transferred to and processed in the US, which may have different data-protection laws than your country.
12. Changes to this policy
We may update this policy from time to time. The “Last updated” date at the top reflects the most recent revision. Material changes will be announced via email or a prominent notice on the site at least 14 days before they take effect.
13. Contact
Questions about this policy or our privacy practices? Email dustin@straighttoweb.com or write to Straight To Web, 3025 Grunion Ln, Spring Hill, TN 37174.