1. Data We Collect
We collect the following personal data:
- Account information: name, email address, profile picture (provided during registration or via social login)
- Payment information: processed and stored by Stripe; we never store card numbers on our servers
- Event data: tickets purchased, events attended, chat messages, ratings
- Usage data: essential cookies for authentication and session management
2. How We Use Your Data
- To provide and maintain the Platform
- To process payments and issue refunds
- To send event confirmations and reminders
- To enforce our Terms of Service and Content Policy
- To moderate chat and ensure safety (including AI-assisted moderation)
3. Data Sharing
We do not sell your personal data. We share data only with:
- Stripe: for payment processing
- Event hosts: your name and profile when you attend their events
- Law enforcement: when required by law
4. Cookies
We use essential cookies for authentication and session management. With your consent, we may also use analytics cookies to improve the Platform. You can manage your cookie preferences at any time via the cookie consent banner.
5. Your Rights (GDPR)
If you are in the European Economic Area, you have the right to:
- Access your data: download all your personal data from your Profile page
- Delete your data: request account deletion from your Profile page. Your account is disabled immediately; personal data is permanently deleted after 30 days. Transaction records are retained as required by law.
- Rectify your data: update your profile information at any time
- Object to processing: contact us to object to specific data processing activities
6. Data Retention
- Account data: retained until you delete your account
- Chat messages: retained for the duration of the event and 30 days after
- Transaction records: retained for 7 years (legal requirement)
- Moderation logs: retained for 1 year
7. Data Security
We use HTTPS encryption for all data in transit, encrypt sensitive data at rest, and follow industry best practices for infrastructure security. In the event of a data breach, we will notify affected users within 72 hours as required by GDPR.
8. Event Recording
Events may be recorded by the host. A clear notification is displayed when recording is active. Recording requires host opt-in and participants are informed before joining.
9. Age Restrictions
Vidol is not intended for users under 13 (16 in the EU). We do not knowingly collect data from minors. If you believe a minor is using the Platform, please report it to us.
10. Changes to This Policy
We may update this privacy policy from time to time. We will notify users of material changes via email.
11. Contact
For privacy-related questions or to exercise your rights, contact our Data Protection Officer at privacy@vidol.com.