Update legal privacy disclosures and dates
Some checks failed
linter / quality (push) Has been cancelled
tests / ci (push) Has been cancelled
tests / ui (push) Has been cancelled

This commit is contained in:
Codex Agent
2026-01-04 11:17:04 +01:00
parent 103c8d4dfd
commit fae5ec26fb
7 changed files with 13 additions and 9 deletions

View File

@@ -1,5 +1,5 @@
# Privacy Policy
**Last updated:** October 2025
**Last updated:** January 2026
## 1. Data Controller
Responsible under the General Data Protection Regulation (GDPR):
@@ -23,7 +23,7 @@ Use of the Fotospiel App requires only the personal data necessary to host and p
## 3. Types of Data Processed
- Organizer data: name, email address, payment information (via Paddle), event details (title, date, photo tasks, photos)
- Guest data: uploaded photos, display name (optional), likes/reactions
- Technical data: IP address, browser type, timestamp, device information, anonymous session identifier (session_id)
- Technical data: IP address, browser type, timestamp, device information, anonymous session identifier (session_id), and checkout/coupon abuse signals (e.g., device/browser characteristics, coupon/transaction metadata)
- Communication data: messages sent via contact form or email
---
@@ -34,6 +34,7 @@ Use of the Fotospiel App requires only the personal data necessary to host and p
| Providing the app and hosting events | Art. 6(1)(b) GDPR | Contract performance |
| Storing and displaying photos | Art. 6(1)(b) GDPR | Core feature of the app |
| Payment processing and invoicing | Art. 6(1)(b), (c) GDPR | Use of Paddle services |
| Fraud and abuse prevention (checkout/coupons) | Art. 6(1)(f) GDPR | Protecting against fraud, abuse, and improper coupon redemptions |
| Web analytics via Matomo | Art. 6(1)(f) GDPR | Statistical analysis to improve the app |
| Server logs and security | Art. 6(1)(f) GDPR | Ensuring system security |
| Responding to inquiries | Art. 6(1)(f) or (b) GDPR | Communication with users |
@@ -50,6 +51,7 @@ All processing takes place within the EU.
## 6. Payment Processing
Payments are handled by **Paddle.com Market Ltd.**
We do not store payment or credit card data.
During checkout and coupon redemption, we process technical signals (e.g., IP address, device/browser characteristics, timestamps) for fraud and abuse prevention. This data may be shared with Paddle.
Legal basis: Art. 6(1)(b) and (c) GDPR.
Privacy policies: