At VibeForums, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our membership platform. By using our services, you agree to these terms.
1. Information We Collect
Personal Information
- Account Information: Email address, password (encrypted), display name
- Profile Information: Bio, avatar, social media links (optional)
- Payment Information: Processed securely through Stripe (we do not store card details)
- Communication Data: Community posts, comments, messages
Automatically Collected Information
- Log Data: IP address, browser type, device information
- Usage Data: Pages visited, time spent, feature usage
- Cookies: Session cookies, authentication tokens, preferences
2. How We Use Your Information
- Provide Services: Deliver membership features and content access
- Authentication & Security: Verify identity and protect accounts
- Payment Processing: Handle subscriptions and billing
- Communication: Send transactional emails and platform updates
- Analytics: Improve platform performance
- Compliance: Meet legal obligations
3. Legal Basis for Processing (GDPR)
For users in the European Economic Area (EEA), we process your data based on:
- Contract: Processing necessary to fulfill our membership agreement
- Consent: You have given explicit consent for specific processing
- Legitimate Interests: Fraud prevention, security, platform improvement
- Legal Obligation: Compliance with applicable laws
4. Data Sharing
We share your information only with:
Service Providers
Supabase (database), Stripe (payments), Vercel (hosting)
Legal Requirements
When required by law, court order, or government regulation
5. Your Rights Under GDPR
If you are located in the EEA, you have the right to:
- Access: Request a copy of your data (Export Data)
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion (Delete Account)
- Restrict Processing: Limit how we use your data
- Data Portability: Receive your data in a machine-readable format
- Object: Object to processing based on legitimate interests
- Withdraw Consent: Withdraw consent at any time
6. Data Retention
- Account Data: Until deletion or 90 days after inactivity
- Payment Records: 7 years (tax and legal compliance)
- Community Posts: Anonymized after account deletion
- Security Logs: 90 days for fraud prevention
7. Cookies
- Essential Cookies: Required for authentication (always active)
- Analytics Cookies: Track usage patterns (requires consent)
- Preference Cookies: Remember your settings
Manage preferences through our cookie consent banner or browser settings.
8. Security
- End-to-end encryption for sensitive data
- Two-factor authentication (2FA) available
- HTTPS/TLS encryption for all data transmission
- Secure password hashing
9. International Transfers
Your data may be transferred outside the EEA. We ensure appropriate safeguards including Standard Contractual Clauses (SCCs) with our service providers.
10. Children's Privacy
Our platform is not intended for users under 16. We do not knowingly collect data from children. Contact us if you believe we have collected data from a child.
11. Changes
We may update this policy at any time. Material changes will be notified via email. Continued use constitutes acceptance.
12. Contact
For privacy questions or data requests, contact us at privacy@vibeforums.com
You also have the right to lodge a complaint with your local data protection authority.