Skip to main content

SiteLedger

Privacy

SiteLedger is a workspace used by organisations to run their own sites. Most of the information in it belongs to the organisation using it, not to us. This notice explains what is held, why, and who can see it.

Last updated August 2026.

Who is responsible for the information

The organisation that issued your SiteLedger account decides what goes into its workspace and who may reach it. SiteLedger holds and processes that information on its behalf, to provide the service.

What is held

Account information — the name, email address and role your administrator sets, and a one-way hash of your password. Plain passwords are never stored.

Work you put in — sites, jobs, tasks, registers, suppliers, statements, invoices and the documents uploaded against them, together with the record of who changed what.

Technical records — ordinary server and infrastructure logs needed to run the service and investigate faults.

Cookies

SiteLedger sets a signed session cookie when you sign in, so the application knows it is still you between pages. Signing out ends it.

A small number of preference cookies remember choices you make in the interface, such as the job you are working on and whether help mode is switched on.

There is no advertising and no third-party tracking in SiteLedger, and no cookie here follows you to another website.

We do count page views, using Cloudflare Web Analytics. It records which page was requested and roughly where in the world the request came from. It sets no cookie and stores nothing on your device, so it cannot recognise you on a return visit or on any other site; we cannot tell one person from another and we do not build a profile of you. It is the only third-party script the application loads.

Who can see it

People signed in to your organisation’s workspace, according to the access their account carries. Information is scoped to the organisation that owns it.

The infrastructure providers that host the application, its database and its file storage process the information as part of running those services. Nothing is sold, and nothing is shared for marketing.

How long it is kept

Operational records are kept for as long as the organisation that owns them needs them — a ledger that quietly deleted last year’s statements would not be much of a ledger. Removal is a decision for the organisation, and requests should go to its SiteLedger administrator.

Your rights

You can ask for a copy of the personal information held about you, ask for it to be corrected, or ask about its deletion. Because the organisation using SiteLedger decides these matters for its own workspace, please start with its administrator, who will pass the request on where it needs to go.

Back to the SiteLedger home page