Last updated: October 5, 2026
Privacy Notice
This notice explains how the Peter Sirianni website handles information when you visit or send Team Sirianni a message. It describes the current website features, not a promise that all privacy requirements in every country have been met.
Information you send
The contact form asks for your name, email address, inquiry type, broad location region, and message. These fields are required to submit. A saved message also has a record number and a submission timestamp.
Your selected region is supplied by you; it is not your precise device location. Please do not include passwords, payment details, health information, or other sensitive information in your message.
Why messages are stored
Messages are saved in the website’s database so Team Sirianni can review inquiries, handle requests, and respond using the details you provide. Messages are not displayed on public website pages.
Approved team members can view messages in a sign-in-protected inbox. They can record whether an inquiry has been read or replied to and keep internal reply notes. The database also records those updates, their times, and the identifier of the team member who made them.
The current contact form saves your message; it does not send an email notification or an automatic email reply. Although a SendGrid integration is configured for the project, the current submission route does not send your message to SendGrid.
You do not need an account to send a message. The form does not sign you up for a newsletter or ask you to agree to marketing. This notice is information about processing, not a new consent checkbox.
Spam protection and technical records
To limit automated abuse, the form uses a hidden empty field, a short wait, a single-use security token, and request limits. Separate database records hold hashed security tokens and hashed versions of the normalized email address and the network address seen by the server, along with counters and timestamps. The network address may belong to a shared hosting proxy rather than an individual visitor. Hashing is a protective measure, not a guarantee of anonymity.
Request-limit windows last 15 minutes and unused tokens expire after 30 minutes. Expired protection records are removed when contact requests are processed, so expiry is not an exact deletion deadline. Tokens and the hidden field are not stored with your message.
The application logs request methods, paths without query strings, response status codes, and operational errors. Its contact-error logging avoids submitted message contents. Hosting services may also process technical connection information to operate and secure the website.
Website analytics
When Replit’s publishing analytics is enabled, its tracker records page visits. This website also sends two event names: when someone starts interacting with the contact form, and when the server confirms that a message has been saved. No name, email address, location choice, inquiry type, message, or security token is attached to these custom events by the website code.
These events help measure use of the form. They are separate from stored contact messages. Analytics may process technical visit information through the hosting provider. The website does not add its own analytics script or an analytics consent banner; provider settings and any applicable consent requirements need to be confirmed by the site owner.
Hosting, email, and external links
Contact inquiries are also forwarded to Peter using SendGrid. SendGrid processes the details you submit to provide email delivery. A saved copy remains in the private team inbox even if email forwarding is unavailable.
Replit provides this website’s hosting and database infrastructure and, when enabled, publishing analytics. Information may be processed by these services as needed to operate the site. This notice does not specify an unverified storage country or promise that data stays in your country.
Clerk provides sign-in and session handling for the private team inbox. The public contact form and this notice do not require you to sign in. The inbox checks team access through Clerk; it does not send contact-message text to Clerk in those access checks.
The website loads fonts from Google Fonts. Your browser makes requests to Google’s font services, which receive technical connection information such as your network address when those fonts are loaded.
Links to YouTube, Instagram, X, and other external sites take you to services with their own privacy practices. Their policies apply when you visit them.
The homepage also embeds a YouTube video using YouTube’s privacy-enhanced player. When the player loads or you watch the video, your browser connects to YouTube, which may receive technical connection information such as your network address and information about your interaction with the player. YouTube’s privacy practices apply to that content.
How long information is kept
The current contact-message storage has no automatic deletion schedule. The owner has not yet specified a fixed message-retention period. No fixed retention or deletion deadline for messages, hosting logs, analytics, or backups is promised here. The temporary spam-protection windows described above are not a retention period for your message.
Privacy questions and requests
To ask about a message you sent, or to request access, correction, or deletion, use the contact form, choose “General Inquiry,” and put “Privacy request” in your message. Provide only the details needed to identify your earlier inquiry. Team Sirianni may need to verify the request before acting on it.
Any rights and response requirements depend on the laws that apply to you and the website operator. The owner still needs to confirm the operator’s legal identity, a dedicated privacy contact, retention rules, and applicable legal requirements. No guaranteed response deadline is stated here.