Last Updated: June 19, 2025
Important: This policy explains how we collect, use, and protect your personal information. By using mysecretfan, you agree to these practices. Please read carefully.
1. Introduction
mysecretfan ("we," "us," or "our") is committed to protecting your privacy. This comprehensive Privacy Policy ("Policy") governs all personal data processing through our platform ("Services").
1.1 Scope
This Policy applies to:
- Creators: Users who upload and monetize content
- Fans: Users who view and interact with content
- Content Collaborators: Individuals featured in user-generated content
- Visitors: Anyone accessing our website or services
1.2 Data Controller
mysecretfan acts as the data controller for all personal data processed through our Services.
2. Data We Collect
We collect various types of personal data to provide and improve our Services:
Category | Description | Purpose |
---|---|---|
Identity Data | Creators: Full name, alias, date of birth, government ID, selfie with ID Fans: Username, age verification | Account verification, fraud prevention, legal compliance |
Contact Data | Email address, phone number, postal address (for creators) | Account communication, payment processing |
Financial Data | Creators: Bank details, tax information, payout records Fans:Payment card details, billing address | Transaction processing, regulatory compliance |
Behavioral Data | Content preferences, interaction patterns, purchase history | Service personalization, recommendations |
Technical Data | IP address, device information, browser type, operating system | Security, analytics, troubleshooting |
Content Data | Uploaded media, messages, comments, profile information | Service provision, content moderation |
Special Category Data
We process special category data (biometric data from ID verification) only when absolutely necessary, with explicit consent, and using specialized third-party processors that meet stringent security standards.
3. How We Collect Data
We obtain personal data through various methods:
3.1 Direct Collection
- Account registration: When you create an account
- Profile completion: When you add details to your profile
- Content upload: When you post or share content
- Verification processes: During identity and age verification
- Customer support: When you contact our support team
3.2 Automated Collection
- Cookies and similar technologies: For functionality and analytics
- Server logs: Recording system interactions
- Usage tracking: Monitoring service engagement
3.3 Third-Party Sources
- Payment processors: Transaction confirmation
- Age verification services: Identity confirmation
- Social media platforms: When you connect social accounts
4. Legal Bases for Processing
We process your data under the following legal frameworks:
Legal Basis | When Applied | Your Rights |
---|---|---|
Contractual Necessity | To fulfill our Terms of Service (account creation, content delivery, payments) | Cannot opt-out without terminating service |
Legal Obligation | Tax reporting, age verification, fraud prevention | Limited rights to object |
Legitimate Interests | Service improvement, security, marketing (where appropriate) | Right to object in certain circumstances |
Consent | Optional features, marketing communications, sensitive data processing | Right to withdraw at any time |
5. Data Usage Purposes
We use your personal data for these specific purposes:
5.1 Core Services
- Account management: Creating and maintaining user accounts
- Content delivery: Hosting and distributing creator content
- Monetization: Processing payments and payouts
- Verification: Confirming age and identity
5.2 Service Improvement
- Analytics: Understanding usage patterns
- Quality assurance: Improving platform performance
- Feature development: Creating new functionalities
5.3 Security & Compliance
- Fraud prevention: Detecting and preventing abuse
- Legal requirements: Meeting regulatory obligations
- Dispute resolution: Addressing user concerns
6. Data Sharing & Disclosure
We may share your information with these parties when necessary:
Recipient | Data Shared | Purpose |
---|---|---|
Payment Processors | Billing information, transaction details | Financial transactions |
Verification Services | ID documents, selfie images | Age/identity confirmation |
Cloud Providers | Account data, content | Service hosting |
Legal Authorities | As required by law | Legal compliance |
International Transfers
When transferring data outside the EU/UK, we use:
You may request details about specific safeguards for your data.
- EU Standard Contractual Clauses
- Adequacy decisions (where applicable)
- Additional technical safeguards
7. Data Retention
We retain personal data only as long as necessary:
7.1 Retention Periods
Data Type | Retention Period | Reason |
---|---|---|
Account Information | 5 years after account closure | Legal compliance, dispute resolution |
Financial Records | 7 years after transaction | Tax obligations |
Usage Data | 2 years from collection | Analytics, service improvement |
Deleted Content | 90 days after deletion | Recovery period, dispute resolution |
7.2 Deletion Process
When you request account deletion:
- Immediate removal from public view
- De-identification of non-essential data within 30 days
- Secure erasure of all non-retained data within 90 days
8. Your Rights & Choices
Depending on your jurisdiction, you may have these rights:
8.1 Fundamental Rights
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate information
- Erasure: Delete your data ("Right to be Forgotten")
- Restriction: Limit processing in certain cases
- Portability: Receive your data in transferable format
- Objection: Object to certain processing activities
- Withdraw Consent: Revoke previously given permissions
8.2 Exercising Your Rights
To make a request:
- Contact our Data Protection Officer at [email protected]
- Provide sufficient identification
- Specify the right(s) you wish to exercise
We respond to all valid requests within 30 days. There is no charge for reasonable requests.
9. Security Measures
We implement robust security protections:
9.1 Technical Safeguards
- End-to-end encryption for sensitive data
- Regular security audits and penetration testing
- Multi-factor authentication for staff access
9.2 Organizational Measures
- Data protection training for all employees
- Strict access controls and need-to-know principles
- Incident response protocols
Breach Notification: In the unlikely event of a data breach affecting your rights, we will notify you and relevant authorities within 72 hours of discovery.
10. Children's Privacy
Our Services are strictly for adults:
- We do not knowingly collect data from anyone under 18
- Age verification is required for all users
- Any discovered underage accounts are immediately disabled
11. Policy Updates
We may update this policy to reflect:
- Changes in our services or data practices
- New legal or regulatory requirements
- Security or technology improvements
Notification Process
- Material changes will be announced 30 days in advance
- Notifications will appear in your account dashboard
- Email alerts will be sent for significant changes
12. Contact Information
Data Protection Officer:
Email: [email protected]
For urgent privacy concerns, please include "PRIVACY URGENT" in your subject line.
You also have the right to lodge complaints with your local data protection authority.