We do not sell personal data
Your identity, private messages and activity are not products for data brokers or third-party advertising profiles.
SautiLink is being built as a privacy-first social network. This policy explains what we handle today, what the future platform may need, and the limits we place around every use of personal data.
Your identity, private messages and activity are not products for data brokers or third-party advertising profiles.
We design and govern the core platform. Operational providers, where necessary, act only under our instructions and safeguards.
You can remove waitlist data now. When accounts launch, deletion will be available from account settings and the web.
SautiLink Corporation is building SautiLink, a social network created in Tanzania for people around the world. For purposes of applicable data-protection law, SautiLink Corporation is responsible for deciding how and why personal data is processed through SautiLink.
This policy covers sautilink.com, our pre-launch waitlist, future SautiLink accounts and social features, and official SautiLink applications for web, Android, iOS, Windows and other supported devices. It does not govern independent websites or services that we do not control.
Pre-launch clarity: Today, SautiLink is primarily an informational website and waitlist. References to accounts, posts, messaging, recommendations or app permissions describe the rules that will apply when those features become available. We will update this policy and in-product notices before materially different processing begins.
Our registered contact address for this policy is Uhuru Street, Mwanza, United Republic of Tanzania.
We aim to request only what a feature needs and avoid collecting data merely because it may be useful later.
We do not sell or rent personal data, and we do not provide it to data brokers.
Camera, microphone, contacts, photos and precise location require a clear feature need and device permission.
Audience choices, blocking, reporting, consent withdrawal and account deletion are core product requirements.
SautiLink does not give independent third-party apps blanket access to user data. If integrations are introduced, access will require a clear user action, be limited to the selected purpose, and be revocable.
The data involved depends on whether you are using the current public website or a future SautiLink account feature.
| Category | Examples | When it applies |
|---|---|---|
| Waitlist details | Email address and requested username. | When you voluntarily join the pre-launch waitlist. |
| Account & profile | Name or display name, username, email, profile image, bio, language, age or age range where needed, and account settings. | When account creation launches and you provide or update this information. |
| Your content | Posts, replies, images, videos, audio, reactions, polls, drafts, reports and messages. | When you create, upload, send or interact with content. |
| Connections & activity | Accounts followed, blocked or muted; interactions; searches; saved items; notification choices and session activity. | When social and personalization features are used. |
| Device & log data | IP address, browser or app version, device and operating-system type, timestamps, crash data, security events and approximate region inferred from IP. | Automatically when needed to deliver, secure and troubleshoot the service. |
| Communications | Support requests, rights requests, feedback, moderation appeals and other messages sent to our team. | When you contact or respond to us. |
| Device permissions | Selected photos or files, camera, microphone, contacts or precise location. | Only when a feature requires it and you grant device-level permission. |
We receive data directly from you, from your use of SautiLink, from device or browser signals needed to operate the service, and from other people when they interact with you or report content. We do not purchase personal profiles from data brokers.
SautiLink does not require you to publish sensitive personal information. Please think carefully before posting health information, precise location, identity documents, political or religious beliefs, or other sensitive details. Where a feature genuinely needs sensitive data, we will use a clear notice and obtain consent or rely on another lawful basis as required.
We process personal data only for identified purposes, including:
Depending on the context and applicable law, our legal grounds may include your consent, performance of our agreement with you, compliance with a legal obligation, and legitimate interests such as securing and improving SautiLink. Where we rely on legitimate interests, we consider the impact on your rights and use proportionate safeguards. You can withdraw consent at any time where consent is the basis.
No hidden repurposing: We will not use data collected for one purpose for a materially incompatible purpose without a valid legal basis and, where required, a new notice or consent.
SautiLink is a social platform, so some information is intended to be seen by others. A public post, public profile field, reaction or reply may be viewed, copied, shared or indexed beyond your expected audience. Content shared with a limited audience will be delivered according to the controls available for that feature, but recipients may still capture or reshare it.
Deleting content removes it from active SautiLink surfaces, subject to reasonable technical processing time, lawful retention and copies already shared outside our control.
We design permissions around specific actions. For example, attaching a photo may require access to a selected photo; recording audio requires microphone permission; sharing live media requires camera permission. Declining an optional permission will not block unrelated features.
The current public website uses browser storage to remember your light or dark theme. Security systems may also use limited cookies or similar technologies to maintain sessions, prevent abuse and keep the service reliable. We do not currently use behavioral-advertising cookies on the public SautiLink website.
When apps launch, device operating systems will show permission controls. You can change those permissions in your device settings. We will explain a permission before or when it is requested.
We do not sell personal data. We disclose only what is reasonably necessary in these limited situations:
We disclose the categories of recipients and the purposes for any processing while keeping confidential technical details protected. SautiLink remains accountable for the privacy commitments made here.
SautiLink is based in Tanzania and is intended for global access. Data may be processed in countries other than where you live when required to operate the service. Before cross-border processing, we apply safeguards required by applicable law, which may include adequacy assessments, contractual protections, consent where appropriate, security controls and regulatory authorization.
We take account of Tanzania's Personal Data Protection Act and its cross-border transfer requirements. Availability in a country does not reduce the protections described in this policy.
We keep personal data only as long as reasonably necessary for the purpose collected, to maintain security, resolve disputes, enforce agreements and meet legal obligations. Retention varies by data type:
Today, waitlist participants can request removal by emailing support@sautilink.com. Once SautiLink accounts launch, users will be able to initiate permanent deletion in account settings and through our Account & Data Deletion page.
After a verified account-deletion request, we intend to deactivate access promptly and delete or irreversibly anonymize associated personal data from active systems within 30 days, unless a longer period is required by law or a legitimate security investigation. Encrypted backup copies may persist for up to 90 days before routine overwrite and will not be restored for ordinary product use.
We may retain narrowly limited records when legally required, needed to protect users, prevent repeated abuse, establish legal claims or document a completed deletion. We will not use retained records for unrelated product or marketing purposes.
Subject to applicable law and appropriate identity verification, you may have the following rights. We aim to make core controls available to all SautiLink users, not only where a law compels us.
Ask whether we process your data and request a copy.
Correct inaccurate or incomplete personal information.
Delete content, waitlist information or your full account.
Request eligible data in a usable format where applicable.
Challenge or limit certain processing in qualifying circumstances.
Change your mind where processing depends on consent.
You may also opt out of non-essential communications and appeal eligible moderation decisions. We will not discriminate against you for exercising a privacy right. We may ask for information needed to verify that a request concerns your data and may deny or limit requests where the law permits, explaining the reason.
To exercise a right, email support@sautilink.com. You may also complain to the Personal Data Protection Commission of Tanzania or another competent regulator where you live.
When social features launch, SautiLink may use automated signals to rank content, detect spam, protect accounts and identify possible violations. These systems may consider your choices and platform interactions, but we will not secretly build advertising profiles from sensitive data.
Automated signals can be wrong. Significant enforcement decisions should include appropriate review and an appeal route where feasible. We do not intend to make solely automated decisions that produce legal or similarly significant effects without the safeguards required by applicable law.
We use administrative, technical and organizational safeguards proportionate to the data and risk. These include access controls, encryption in transit, secure development practices, monitoring, data minimization, backup protections, staff confidentiality and incident-response procedures.
No online service can guarantee absolute security. You can help by using a strong unique password, protecting verification codes, keeping devices updated and reporting suspicious activity. If a personal-data incident creates a risk requiring notice, we will notify affected people and authorities as required by law.
SautiLink is not intended for children under 13, and a higher minimum age applies where local law requires it. We do not knowingly collect waitlist or account data from a child below the applicable minimum age. If we learn that this occurred, we will take steps to remove the data and close the account.
For teenagers, we intend to use age-appropriate defaults, clearer notices, limits on sensitive personalization and stronger safety controls. A parent or guardian who believes a child has provided data improperly can contact support@sautilink.com.
We may update this policy as SautiLink develops, laws change or new features launch. We will update the effective date and, for material changes, provide a prominent notice or direct communication where appropriate. We will seek consent when a change requires it.
Earlier versions may be made available where required. Continued use after an effective update means the current policy applies, but it does not override rights that cannot legally be waived.
Contact us if you have a privacy question, want to exercise a right, need waitlist data removed, or believe SautiLink is not following this policy.
SautiLink Corporation
Uhuru Street, Mwanza, United Republic of Tanzania
Privacy & support: support@sautilink.com
General team: team@sautilink.com