Last Updated: June 19, 2025

Important: This policy explains how we collect, use, and protect your personal information. By using mysecretfan, you agree to these practices. Please read carefully.

1. Introduction

mysecretfan ("we," "us," or "our") is committed to protecting your privacy. This comprehensive Privacy Policy ("Policy") governs all personal data processing through our platform ("Services").

1.1 Scope

This Policy applies to:

  • Creators: Users who upload and monetize content
  • Fans: Users who view and interact with content
  • Content Collaborators: Individuals featured in user-generated content
  • Visitors: Anyone accessing our website or services

1.2 Data Controller

mysecretfan acts as the data controller for all personal data processed through our Services.

2. Data We Collect

We collect various types of personal data to provide and improve our Services:

Category
Description
Purpose
Identity Data
Creators: Full name, alias, date of birth, government ID, selfie with ID
Fans: Username, age verification
Account verification, fraud prevention, legal compliance
Contact Data
Email address, phone number, postal address (for creators)
Account communication, payment processing
Financial Data
Creators: Bank details, tax information, payout records
Fans:Payment card details, billing address
Transaction processing, regulatory compliance
Behavioral Data
Content preferences, interaction patterns, purchase history
Service personalization, recommendations
Technical Data
IP address, device information, browser type, operating system
Security, analytics, troubleshooting
Content Data
Uploaded media, messages, comments, profile information
Service provision, content moderation

Special Category Data

We process special category data (biometric data from ID verification) only when absolutely necessary, with explicit consent, and using specialized third-party processors that meet stringent security standards.

3. How We Collect Data

We obtain personal data through various methods:

3.1 Direct Collection

  • Account registration: When you create an account
  • Profile completion: When you add details to your profile
  • Content upload: When you post or share content
  • Verification processes: During identity and age verification
  • Customer support: When you contact our support team

3.2 Automated Collection

  • Cookies and similar technologies: For functionality and analytics
  • Server logs: Recording system interactions
  • Usage tracking: Monitoring service engagement

3.3 Third-Party Sources

  • Payment processors: Transaction confirmation
  • Age verification services: Identity confirmation
  • Social media platforms: When you connect social accounts

4. Legal Bases for Processing

We process your data under the following legal frameworks:

Legal Basis
When Applied
Your Rights
Contractual Necessity
To fulfill our Terms of Service (account creation, content delivery, payments)
Cannot opt-out without terminating service
Legal Obligation
Tax reporting, age verification, fraud prevention
Limited rights to object
Legitimate Interests
Service improvement, security, marketing (where appropriate)
Right to object in certain circumstances
Consent
Optional features, marketing communications, sensitive data processing
Right to withdraw at any time

5. Data Usage Purposes

We use your personal data for these specific purposes:

5.1 Core Services

  • Account management: Creating and maintaining user accounts
  • Content delivery: Hosting and distributing creator content
  • Monetization: Processing payments and payouts
  • Verification: Confirming age and identity

5.2 Service Improvement

  • Analytics: Understanding usage patterns
  • Quality assurance: Improving platform performance
  • Feature development: Creating new functionalities

5.3 Security & Compliance

  • Fraud prevention: Detecting and preventing abuse
  • Legal requirements: Meeting regulatory obligations
  • Dispute resolution: Addressing user concerns

6. Data Sharing & Disclosure

We may share your information with these parties when necessary:

Recipient
Data Shared
Purpose
Payment Processors
Billing information, transaction details
Financial transactions
Verification Services
ID documents, selfie images
Age/identity confirmation
Cloud Providers
Account data, content
Service hosting
Legal Authorities
As required by law
Legal compliance

International Transfers

When transferring data outside the EU/UK, we use:

You may request details about specific safeguards for your data.

  • EU Standard Contractual Clauses
  • Adequacy decisions (where applicable)
  • Additional technical safeguards

7. Data Retention

We retain personal data only as long as necessary:

7.1 Retention Periods

Data Type
Retention Period
Reason
Account Information
5 years after account closure
Legal compliance, dispute resolution
Financial Records
7 years after transaction
Tax obligations
Usage Data
2 years from collection
Analytics, service improvement
Deleted Content
90 days after deletion
Recovery period, dispute resolution

7.2 Deletion Process

When you request account deletion:

  1. Immediate removal from public view
  2. De-identification of non-essential data within 30 days
  3. Secure erasure of all non-retained data within 90 days

8. Your Rights & Choices

Depending on your jurisdiction, you may have these rights:

8.1 Fundamental Rights

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate information
  • Erasure: Delete your data ("Right to be Forgotten")
  • Restriction: Limit processing in certain cases
  • Portability: Receive your data in transferable format
  • Objection: Object to certain processing activities
  • Withdraw Consent: Revoke previously given permissions

8.2 Exercising Your Rights

To make a request:

  1. Contact our Data Protection Officer at [email protected]
  2. Provide sufficient identification
  3. Specify the right(s) you wish to exercise

We respond to all valid requests within 30 days. There is no charge for reasonable requests.

9. Security Measures

We implement robust security protections:

9.1 Technical Safeguards

  • End-to-end encryption for sensitive data
  • Regular security audits and penetration testing
  • Multi-factor authentication for staff access

9.2 Organizational Measures

  • Data protection training for all employees
  • Strict access controls and need-to-know principles
  • Incident response protocols

Breach Notification: In the unlikely event of a data breach affecting your rights, we will notify you and relevant authorities within 72 hours of discovery.

10. Children's Privacy

Our Services are strictly for adults:

  • We do not knowingly collect data from anyone under 18
  • Age verification is required for all users
  • Any discovered underage accounts are immediately disabled

11. Policy Updates

We may update this policy to reflect:

  • Changes in our services or data practices
  • New legal or regulatory requirements
  • Security or technology improvements

Notification Process

  • Material changes will be announced 30 days in advance
  • Notifications will appear in your account dashboard
  • Email alerts will be sent for significant changes

12. Contact Information

Data Protection Officer:
Email: [email protected]

For urgent privacy concerns, please include "PRIVACY URGENT" in your subject line.

You also have the right to lodge complaints with your local data protection authority.