LEGAL & POLICIES
Privacy Policy
Effective Date: [Date]
Last Updated: [Date]
At Spinhub, we take your privacy seriously. This Privacy Policy explains how Spinhub Limited ("Spinhub," "we," "us," or "our") collects, uses, shares, and protects your personal information when you use our platform.
Table of Contents
1. Overview
📋 Key Information
Data Controller: Spinhub Limited
Registered Address: [Address], Dublin, Ireland
Registration Number: [Number]
Data Protection Officer: [email protected]
🎯 Our Commitment
We are committed to:
- Protecting your personal data
- Being transparent about our practices
- Giving you control over your information
- Complying with GDPR and all applicable laws
- Never selling your personal data
📍 Scope
This Privacy Policy applies to:
- All Spinhub websites and applications
- All users (creators, supporters, visitors)
- All personal data we process
- All jurisdictions where we operate
2. Information We Collect
📝 Information You Provide Directly
Account Information
- Full legal name
- Email address
- Username and password
- Date of birth
- Profile information (bio, avatar, cover image)
- Account preferences and settings
Identity Verification Data
- Government-issued ID documents (creators only via Stripe Connect)
- Identity verification results from Stripe
- Proof of address (creators only)
- Additional verification documents (when required)
Creator-Specific Information
- Tax identification numbers (VAT, EIN, etc.)
- Banking and payment account details
- Business registration information
- Payout preferences
- Content and media uploads
Payment Information
- Payment card details (tokenized by Stripe)
- Billing address
- Transaction history
- Subscription details
- Purchase records
- VAT/tax information
Communications
- Messages between users
- Support tickets and inquiries
- Community forum posts
- Comments and feedback
- Survey responses
- Email correspondence
Content You Create
- Posts, images, videos, audio
- Livestream data
- Blog articles
- Comments and interactions
- Metadata associated with content
Content Preference Settings
- NSFW content visibility preference (opt-in status)
- Timestamp of preference enablement
- Warning acknowledgment records
- Content filtering choices
- Audit trail of setting changes
🖥️ Information We Collect Automatically
Usage Information
- Pages visited and features used
- Time spent on platform
- Click patterns and interactions
- Search queries and filters
- Content engagement metrics
- Platform navigation paths
Device and Technical Information
- IP address
- Browser type and version
- Operating system
- Device type and identifiers
- Screen resolution
- Language preferences
- Time zone
Location Information
- Country and region (from IP address)
- Language preferences
- Currency preferences
- Content localization data
Cookies and Similar Technologies
- Session cookies
- Preference cookies
- Analytics cookies
- Marketing cookies (with consent)
- [See our Cookie Policy for details]
🤝 Information From Third Parties
Payment Processors
- Transaction confirmations
- Payment success/failure status
- Fraud prevention scores
- Chargeback notifications
Identity Verification Services
- Age verification results
- Document authentication status
- Identity confidence scores
- Fraud indicators
Social Media Platforms (if connected)
- Basic profile information
- Authentication tokens
- Friend lists (with permission)
- Profile photos
Analytics Providers
- Aggregated usage patterns
- Performance metrics
- Error reports
- Conversion data
3. How We Use Your Information
✅ To Provide Our Services
Account Management
- Create and maintain your account
- Authenticate your identity
- Enable platform features
- Manage your preferences
- Provide customer support
Content and Connections
- Display your content to authorized users
- Connect creators with supporters
- Enable messaging and communications
- Facilitate community interactions
- Recommend relevant content
Payment Processing
- Process transactions securely
- Calculate and collect fees
- Handle payouts to creators
- Manage subscriptions
- Prevent fraud
- Generate invoices and receipts
🛡️ For Safety and Security
Platform Protection
- Verify user age (21+ requirement - declaration for supporters, full verification for creators)
- Detect and prevent fraud
- Identify suspicious activities
- Enforce our Terms and Guidelines
- Protect against cyberattacks
- Maintain platform integrity
User Safety
- Investigate reports of violations
- Remove harmful content
- Prevent CSAM and illegal content
- Protect vulnerable users
- Coordinate with law enforcement (when required)
- Implement safety features
Content Access Control
- Enforce age-appropriate content access
- Maintain NSFW content visibility preferences
- Track consent for adult content viewing
- Implement periodic re-confirmation
- Ensure minors cannot access adult content
- Maintain compliance audit trails
⚖️ For Legal Compliance
Regulatory Requirements
- Comply with DAC7 tax reporting
- Meet anti-money laundering obligations
- Respond to legal requests
- Preserve evidence for investigations
- Comply with court orders
- Meet data protection requirements
Tax Obligations
- Calculate and collect VAT
- Generate tax documents
- Report earnings to authorities
- Maintain financial records
- Support creator tax compliance
📊 For Improvement and Analytics
Service Enhancement
- Understand how users interact with Spinhub
- Identify popular features and content
- Improve platform performance
- Develop new features
- Fix bugs and issues
- Optimize user experience
Business Intelligence
- Analyze platform trends
- Measure feature adoption
- Understand user demographics
- Track business metrics
- Inform product decisions
📢 For Communications
Service Communications
- Send account notifications
- Deliver security alerts
- Provide transaction confirmations
- Share platform updates
- Communicate policy changes
Marketing (with consent)
- Share creator recommendations
- Announce new features
- Send promotional offers
- Provide platform tips
- Share success stories
4. Legal Basis for Processing
Under GDPR, we process your data based on:
📄 Contract Performance
We process data necessary to:
- Provide our platform services
- Process payments and payouts
- Enforce our Terms of Service
- Deliver creator content to supporters
- Enable platform features
Data types: Account information, payment data, content, usage data
⚖️ Legal Obligations
We must process data to:
- Verify user age (21+ requirement)
- Report taxes under DAC7
- Comply with anti-money laundering laws
- Respond to lawful requests
- Preserve records as required
Data types: Identity documents, tax information, financial records
💼 Legitimate Interests
We have legitimate interests in:
- Keeping our platform safe and secure
- Preventing fraud and abuse
- Improving our services
- Understanding our business
- Direct marketing to existing users
Data types: Usage data, device information, analytics
We balance these interests against your rights and freedoms.
✅ Consent
We obtain your consent for:
- Marketing communications
- Non-essential cookies
- Sharing data with third parties
- Processing sensitive data
- Using your content in promotions
Data types: Contact preferences, optional profile information
You can withdraw consent at any time.
🛡️ Vital Interests
In rare cases, we may process data to:
- Protect someone's life
- Prevent serious harm
- Assist in emergencies
Data types: As necessary for the situation
🏛️ Public Interest
We may process data for tasks in the public interest:
- Preventing CSAM
- Combating terrorism
- Assisting law enforcement
- Protecting public health
Data types: As required by authorities
6. Data Retention
⏱️ Retention Periods
We keep your data only as long as necessary:
Data Type | Active Account | After Deletion |
---|---|---|
Account information | Duration of account | 30 days |
Identity verification | Status only retained | Immediately deleted |
Content | While on platform | 30 days (backups) |
Messages | While account active | 30 days |
Financial records | 7 years | 7 years (legal requirement) |
Tax documents | 7 years | 7 years (legal requirement) |
Support tickets | 2 years | Not applicable |
Analytics data | 2 years | Anonymized |
Marketing preferences | While subscribed | Immediately |
Legal holds | As required | As required |
🗂️ Retention Principles
- Minimization - Keep only what's necessary
- Purpose limitation - Delete when no longer needed
- Legal compliance - Meet regulatory requirements
- User control - Honor deletion requests
- Security - Protect retained data
🗑️ Deletion Process
When data is deleted:
- Removed from active systems immediately
- Marked for deletion in backups
- Purged from backups within 30 days
- Destruction verified and logged
- Irreversible process
7. Your Privacy Rights
🔑 Your GDPR Rights
As an EU data subject, you have the right to:
1. Access (Right to Know)
- Request a copy of your personal data
- Understand how we use it
- Know who we share it with
- Free first request (reasonable fee for additional)
2. Rectification (Right to Correct)
- Fix inaccurate information
- Complete incomplete data
- Update outdated details
- Verified through secure process
3. Erasure (Right to be Forgotten)
- Delete your personal data
- Remove from all systems
- Notify third parties to delete
- Some exceptions apply (legal obligations)
4. Restriction
- Limit how we process your data
- Suspend certain uses
- Maintain but not use
- Pending resolution of issues
5. Portability
- Receive your data in standard format
- Transfer to another service
- Machine-readable file
- Direct transfer where feasible
6. Object
- Opt-out of certain processing
- Stop direct marketing
- Prevent automated decisions
- Challenge legitimate interests
7. Automated Decision-Making
- Not be subject to purely automated decisions
- Request human review
- Express your point of view
- Challenge the decision
🎯 How to Exercise Your Rights
Self-Service Options
- Download your data: Account Settings → Privacy → Export Data (JSON format)
- Update information: Edit Profile
- Delete account: Account Settings → Delete Account
- Cookie preferences: GDPR Management section
- Marketing preferences: Email footer links
Contact Us
- Email: [email protected]
- Form: spinhub.com/privacy-request
- Mail: [Privacy Team Address]
Required Information
- Your account email
- Specific right you're exercising
- Details of your request
- Identity verification may be required
Response Timeline
- Acknowledgment: 48 hours
- Response: Within 30 days
- Complex requests: Up to 60 additional days with notice
- Free of charge (except repeated requests)
🌍 Rights for Non-EU Users
California (CCPA)
- Right to know
- Right to delete
- Right to opt-out
- Right to non-discrimination
Other Jurisdictions
- We respect local privacy laws
- Provide similar rights where applicable
- Contact us for specific information
8. Data Security
🔒 Security Measures
We protect your data through:
Technical Safeguards
- End-to-end encryption for sensitive data
- TLS 1.3 for all connections
- Encrypted storage at rest
- Secure key management
- Regular security updates
Access Controls
- Role-based permissions
- Multi-factor authentication
- Regular access reviews
- Principle of least privilege
- Audit logging
Infrastructure Security
- ISO 27001 certified data centers
- 24/7 monitoring
- DDoS protection
- Regular penetration testing
- Incident response team
Organizational Measures
- Employee security training
- Background checks
- Confidentiality agreements
- Security policies and procedures
- Regular security audits
🚨 Incident Response
If a data breach occurs:
- Immediate containment
- Impact assessment
- Notification within 72 hours (to authorities)
- User notification if high risk
- Remediation and prevention
- Full documentation
🤝 Your Security Role
Help protect your account:
- Use strong, unique passwords
- Enable two-factor authentication
- Don't share login credentials
- Report suspicious activity
- Keep your email secure
9. International Data Transfers
🌐 Transfer Mechanisms
Your data may be transferred outside the EU. We ensure protection through:
Standard Contractual Clauses (SCCs)
- EU-approved contracts
- Binding data protection obligations
- Enforceable rights
- Regular reviews and updates
Adequacy Decisions
- UK (post-Brexit)
- Switzerland
- Other approved countries
Additional Safeguards
- Encryption in transit
- Access controls
- Contractual protections
- Regular audits
📍 Data Locations
Primary Storage
- EU (Ireland) - Main data center
- EU (Germany) - Backup location
Processing Locations
- Payment processing - EU/US (Stripe)
- Email delivery - US (SendGrid)
- Analytics - EU (Self-hosted)
- Support tools - EU
✅ Your Rights
For international transfers:
- Request information about transfers
- Obtain copies of safeguards
- Object to specific transfers
- Lodge complaints with supervisory authority
11. Children's Privacy
👶 No Users Under 21
Spinhub is strictly for users 21 and older:
- We don't knowingly collect data from anyone under 21
- Age verification required for all users
- Immediate deletion if underage user discovered
- No content targeted at minors
🛡️ Protection Measures
- Automated age verification
- Manual review for suspicious accounts
- Content moderation for minor safety
- Reporting mechanisms
- Cooperation with child safety organizations
📢 Reporting
If you believe someone under 21 is using Spinhub:
- Email: [email protected]
- Use in-platform reporting
- We investigate within 24 hours
12. Third-Party Services
🔗 External Links
Spinhub may contain links to third-party websites:
- We're not responsible for their privacy practices
- Read their privacy policies
- Links don't imply endorsement
- Exit warnings for external sites
🤝 Integrated Services
Payment Processing
- Stripe - [Privacy Policy](https://stripe.com/privacy)
- Bound by their terms
- PCI DSS compliant
- Data shared only for transactions
Identity Verification
- Jumio - [Privacy Policy](https://jumio.com/privacy)
- Only verification results retained
- Data deleted after verification
- EU-US Privacy Shield
📱 Social Media
If you connect social accounts:
- Limited data access
- Revocable permissions
- Used only for authentication
- No automatic posting
13. Marketing Communications
📧 Types of Marketing
With your consent, we may send:
- Platform updates and features
- Creator recommendations
- Promotional offers
- Tips and best practices
- Community highlights
- Survey invitations
🎯 Marketing Preferences
Opt-In
- Explicit consent required
- Clear description of communications
- Frequency indicated
- Easy consent process
Opt-Out
- Unsubscribe link in every email
- Account settings control
- Email: [email protected]
- Immediate processing
📊 Marketing Data
- We track email opens and clicks
- Used to improve relevance
- Never sold to third parties
- Deleted when you unsubscribe
14. Changes to This Policy
📅 Update Process
We may update this Privacy Policy:
- Regular reviews (at least annually)
- Legal requirement changes
- New features or services
- Industry best practices
- User feedback incorporation
📢 Notification
Minor Changes
- Updated policy posted
- Date changed at top
- Changelog maintained
Material Changes
- 30 days advance notice
- Email notification
- Dashboard announcement
- Clear summary of changes
- Option to object
✅ Your Choices
If you disagree with changes:
- Download your data
- Close your account
- Contact us with concerns
- Continued use implies acceptance
15. Contact Information
📧 Privacy Contacts
Data Protection Officer
- Email: [email protected]
- Mail: [DPO Address]
- Response: Within 48 hours
Privacy Team
- Email: [email protected]
- Form: spinhub.com/privacy-contact
- Response: Within 48 hours
General Support
- Email: [email protected]
- Live chat: Available 24/7
- Response: Within 24 hours
Company Information
Spinhub Limited
[Address]
Dublin, Ireland
Company Registration: [Number]
VAT: [Number]
🏛️ Supervisory Authority
You have the right to lodge a complaint:
Irish Data Protection Commission
- Website: www.dataprotection.ie
- Email: [email protected]
- Phone: +353 57 8684800
- Address: 21 Fitzwilliam Square South, Dublin 2
Your Local Authority
Find yours: EDPB Website
🌐 Additional Resources
- Privacy Portal: spinhub.com/privacy
- Transparency Report: spinhub.com/transparency
- Security: [email protected]
- Legal: [email protected]
Privacy Commitment
Your privacy is fundamental to our mission. We commit to:
- ✅ Transparency - Clear about what we do
- ✅ Control - You decide about your data
- ✅ Security - Protecting your information
- ✅ Respect - Your privacy choices matter
- ✅ Accountability - Taking responsibility
Thank you for trusting Spinhub with your personal information.
This Privacy Policy is available in multiple languages. The English version controls in case of conflicts.
Contact Information
Support
General support: [email protected]
Creator support: [email protected]
Policy questions: [email protected]
Payment issues: [email protected]
Business Development
Partnerships: [email protected]
Premium creator program, brand collaborations, integration opportunities
Legal & Compliance
Legal matters: [email protected]
Privacy concerns: [email protected]
Data Protection Officer: [email protected]