Privacy Policy
Last updated: 3 August 2026
1. What we collect
- Account data: email, handle, display name, optional profile details.
- Activity: campaigns you upload, download, rate, review, comment on, or collect; searches you save; who you follow.
- Payments: tip, purchase, and subscription records. Card details go directly to Stripe — we never see or store them.
- Technical: emails we send you are logged (recipient, subject, delivery status); push-notification subscriptions you opt into.
2. What we use it for
Running the platform: hosting and delivering content, paying creators, sending the notifications and emails you have enabled, moderation, fraud and abuse prevention, and legal compliance. Analytics run on an essential basis with consent for anything beyond it.
3. Where it lives
Platform data is hosted in the European Union, keeping it under EU data-sovereignty and GDPR protections. Our processors: Supabase (database, storage, authentication), Stripe (payments), Brevo (email), PostHog (analytics). Each processes data under a data-processing agreement.
Our optional Discord community (section 4) is the exception: Discord and our moderation model provider, OpenAI, both process that data in the United States under the safeguards described in section 4. Nothing from your platform account is sent to either.
4. Our Discord community
Our Discord server is optional and separate from your platform account. Discord itself holds your data there under its own privacy policy; this section covers only what we do with it.
- What we process: messages you post in public channels of our server, together with your Discord username and user ID, so that we can moderate the community.
- Automated assistance: an assistant reads public messages and flags possible rule breaches for our moderators. To do that, message text is sent to our model provider, OpenAI, which processes it on our behalf in the United States. That is a transfer outside the UK and EU; you can ask what safeguards apply using the contacts in section 7. Private staff channels and messages from moderators are excluded, and nothing from your platform account is sent.
- No automated decisions about you: the assistant cannot remove, mute, time out, or ban anyone — it holds none of those permissions. It only flags. Every moderation decision is made by a person, so no decision affecting you is made solely by automated means.
- What we keep: flagged messages and a short classification log are posted to private channels visible only to moderators, so that decisions can be reviewed and explained later. These are deleted automatically after 90 days.
- Legal basis: our legitimate interest in keeping the community safe and enforcing the server rules. You can object using the contacts in section 7, and you can leave the server at any time.
5. Your rights
- Access & portability: request a full export of your data — contact support and we will send a machine-readable copy.
- Deletion: delete your account at any time. Your profile disappears immediately; after a 30-day grace window (during which you can contact support to restore it) your personal data is permanently erased. Financial records we must keep (tips, purchases) are anonymised — your identity is removed from them.
- Correction & objection: edit your profile at any time; contact support for anything else, or complain to your data-protection authority (in the UK, the ICO).
6. Cookies
We use strictly necessary cookies for sign-in and security. Analytics beyond the essential level and any marketing tags load only with your consent via the cookie banner.
7. Contact
Data questions and rights requests: via the support contact on this site. We answer within one month as GDPR requires.
