1. Data We Collect
- Account information: email, display name, and avatar when you register.
- Content you create: products, posts, comments, reviews, and uploaded images.
- Interaction data: votes, follows, saves, and page views.
- Technical data: IP address, browser type, device, operating system, and access logs.
- Cookies and local storage: to maintain your session, remember preferences, and analyze usage.
2. How We Use Your Data
- To provide, operate, and improve our services.
- To authenticate accounts and prevent fraud or abuse.
- To personalize content recommendations and search results.
- To send important service notifications (security alerts, policy changes).
- To produce anonymous analytics that help us improve the experience.
3. Legal Basis
We process personal data on the basis of: (a) your consent when creating an account and using the service; (b) performance of our contract to provide the service; (c) legitimate interests such as fraud prevention and security; and (d) compliance with legal obligations.
4. Data Sharing
We do not sell your personal data. We only share data in the following circumstances:
- With technical service providers (hosting, email, analytics) — only to the extent necessary and under confidentiality obligations.
- When required by law or by a valid order from a competent authority.
- To protect the rights and safety of users and third parties.
- In the event of a business restructuring (merger, acquisition) — you will be notified in advance.
Third-Party Services We May Use
- Hosting and authentication infrastructure (Supabase / Lovable Cloud).
- Traffic analytics (e.g. Google Analytics) — only anonymous aggregate data is collected.
- An AI gateway used to translate content when you actively click "AI Translate".
5. Cookies
We use cookies and local storage to: maintain your login session, remember language and theme preferences, measure performance, and improve the experience. You may disable cookies in your browser, but some features may not work fully as a result.
6. Data Security
We apply reasonable technical and administrative safeguards: HTTPS encryption, access controls, regular backups, and security monitoring. However, no system is completely secure — you should use a strong password and not share your account.
7. Data Retention
Data is retained for as long as your account remains active. After account deletion, personal data will be removed within 30 days, except for data that must be retained by law (security logs, financial records).
8. Your Rights
- Access and correct your personal data on your Profile page.
- Delete your account and request erasure of associated data.
- Object to or restrict processing of your data in certain circumstances.
- Withdraw consent at any time (this does not affect prior processing).
- Lodge a complaint with the data protection authority in your country.
To exercise any of these rights, please send a request to privacy@example.com.
9. Children
Our service is not directed at children under 13. We do not knowingly collect data from children. If you are a parent and believe your child has provided personal data, please contact us so we can delete it.
10. International Data Transfers
Data may be processed on servers in various geographic regions. When transferring data across borders, we apply appropriate safeguards in accordance with international standards.
11. Policy Changes
This policy may be updated from time to time. For significant changes, we will notify you by email or on the website. The updated version takes effect from the date it is published.
Privacy Contact
For any questions about this Privacy Policy: privacy@example.com.
