Effective date: 30 July 2026. This is version 1.0.
This page explains, in plain language, what information Supplynaut collects when you visit this website or use its tools, why it is collected, who else receives it, how long it is kept, and how to get it deleted. If anything here is unclear, email [email protected] and I will answer personally.
Supplynaut is operated by Strahinja Jovanović, a sole trader registered in the Republic of Serbia. I am the data controller for everything described on this page.
There is no team, no call centre, and no sales department. Emails come to me.
I do not ask for and do not want: government identifiers, bank or card numbers, health information, or any special-category personal data.
fbclid and
_fbp/_fbc values, and TikTok's ttclid and _ttp
values. Which tell me which advertisement brought you here.utm_source,
utm_campaign, utm_content and similar).This website uses advertising pixels. These are small pieces of code from advertising platforms that record actions you take here. Such as opening a page or submitting your email. And report them back to the platform that showed you the advertisement.
The pixels in use are:
_fbp and _fbc cookies._ttp cookie.In addition, when you submit your email address I send a matching record of that action directly from my server to Meta and to TikTok. This is called a Conversions API or Events API event. Your email address is hashed with SHA-256 before it is sent, which means the platforms receive an irreversible fingerprint rather than the address itself, and use it only to match the action to an advertisement.
You can block pixels using your browser settings or an ad blocker, and the tools on this site will still work.
I use a small number of service providers. Each one only receives what it needs to do its job.
| Who | What they receive | Why |
|---|---|---|
| Meta Platforms Facebook, Instagram |
Hashed email, click identifiers, IP address, browser user agent, the action you took | To measure which advertisement produced a result and to improve advertising delivery |
| TikTok | Hashed email, click identifiers, IP address, browser user agent, the action you took | Same as above |
| MailerLite | Email address, campaign tags, calculator inputs | To send you the tool you asked for and the email course |
| Creem | Email, billing details, payment information | To take payment. Creem is the merchant of record and handles card data. I never see or store your card number. |
| Cal.com | Name, email, timezone, booking notes | To schedule calls |
| Cloudflare | IP address, technical request data | Hosting, security, and cookie-free traffic counting |
| Your record in my internal ledger, keyed by a random identifier and hashed email | Google Sheets is where I keep my own record of leads and sales |
I do not sell your data. I do not rent it. I do not share it with any other advertiser, data broker, or third party beyond the providers listed above.
Several of these providers are located in the United States, so your information is transferred outside Serbia and outside the European Economic Area. They operate under their own published data protection terms, including standard contractual clauses where applicable.
Whatever country you are in, you can ask me to:
Email [email protected] with the word "privacy" in the subject. I will act within 30 days and I will not ask you why. No account, no form, no verification hoops beyond confirming you control the email address.
Every marketing email also has a one-click unsubscribe link at the bottom. That works immediately and permanently.
If you are in the European Economic Area or the United Kingdom you also have the right to complain to your national data protection authority. In Serbia this is the Commissioner for Information of Public Importance and Personal Data Protection.
This is a business-to-business website. It is not directed at anyone under 18 and I do not knowingly collect information from children. If you believe a child has submitted information, email me and I will delete it.
The site is served over HTTPS. API credentials are stored as encrypted secrets and are never present in the pages you download. Email addresses are hashed before being sent to advertising platforms. No system is perfectly secure, and I do not pretend otherwise. Which is one reason I deliberately collect as little as possible.
If I change this policy I will update the effective date at the top and the version number. If a change materially affects how your information is used, I will email everyone on my list before it takes effect. Previous versions are available on request.
Questions about any of this: [email protected]
This policy is written to be readable rather than to be exhaustive legal boilerplate. It is not legal advice. If you operate in a regulated sector and need contractual data-processing terms, email me and I will provide them.