SOCIAL PAGE

FeaturesWhy Social PageProfile ShowcaseFAQ’sSign Up

Social Page Legal

Privacy Policy

How [LEGAL ENTITY NAME] collects, uses, shares, secures and retains personal data when you use Social Page, what legal bases we rely on, which processors are involved, and the rights you can exercise over your data.

Version1.0
Effective12 August 2026
Last updated12 August 2026
Sections25

Contents

  1. 01Introduction and who we are
  2. 02Scope of this policy
  3. 03Summary at a glance
  4. 04The personal data we collect
  5. 05Where the data comes from
  6. 06Why we use your data, and our legal bases
  7. 07Consent and how to withdraw it
  8. 08Your profile is public by design
  9. 09Cookies and similar technologies
  10. 10Profile analytics and how we count views
  11. 11Moderation, safety and abuse prevention
  12. 12Who we share personal data with
  13. 13Our service providers and sub-processors
  14. 14We do not sell your data or run behavioural advertising
  15. 15International data transfers
  16. 16How long we keep data
  17. 17How we protect data, and what happens if something goes wrong
  18. 18Your data-protection rights
  19. 19United States state privacy rights
  20. 20Children's privacy
  21. 21Automated processing and content scanning
  22. 22Do Not Track and Global Privacy Control
  23. 23Third-party links and embedded content
  24. 24Changes to this policy
  25. 25Contact us and how to complain

01Introduction and who we are

[LEGAL ENTITY NAME], trading as Social Page, is the controller of the personal data described in this policy. Social Page is a customisable public profile platform for gamers: you sign in with Discord, build a page from links and content cards, and publish it at a public address.

This policy explains, in specific terms rather than generalities, what data we hold, why we hold it, who else sees it, how long we keep it, and what you can require us to do about it. We have written it against what the platform actually does, so you can verify our claims against your own experience of the product.

Controller
[LEGAL ENTITY NAME]
Registered office
[REGISTERED ADDRESS, CITY, POSTAL CODE, COUNTRY]
Privacy contact
[email protected]
Responsible person
[DATA PROTECTION OFFICER OR RESPONSIBLE PERSON]
EU representative
[EU ARTICLE 27 REPRESENTATIVE, NAME AND ADDRESS]
UK representative
[UK ARTICLE 27 REPRESENTATIVE, NAME AND ADDRESS]

Terminology

"Personal data" means information relating to an identified or identifiable person. "Processing" means anything we do with it. "You" means the person whose data we hold, whether you hold an account or are simply a visitor to someone's profile. Words defined in the Terms of Service have the same meaning here.

02Scope of this policy

This policy applies to https://social.page, to every public profile served on social.page and its subdomains, to profiles served on custom domains connected to the Service, to our APIs, and to the transactional emails we send you.

It does not apply to:

  • Discord. Discord is our identity provider, not part of the Service. Your Discord account, and the data Discord holds about you, are governed by Discord's own privacy policy.
  • Sites you link to. When a visitor clicks a link on a profile and leaves the Service, the destination site's own policy applies.
  • Embedded third-party players. Where a profile embeds content from a platform such as Spotify or YouTube, that platform may process visitor data directly under its own policy.
  • What a profile owner does with data you give them. If you send an AMA question or otherwise interact with a profile, the owner decides whether to publish it. Where an owner uses the Service to collect or publish other people's data, they act in their own right and are responsible for that activity.

03Summary at a glance

QuestionShort answer
Do you sell my data?No. We do not sell personal data and we do not share it for cross-context behavioural advertising.
Do you run ads or ad tracking?No. There is no advertising on the Service and no third-party advertising or marketing analytics SDK in the product.
What is the main source of data?Discord, when you sign in, plus whatever you choose to put on your profile.
Do you track visitors to my profile?We count views and link clicks first-party. We do not store visitors' raw IP addresses for analytics; uniqueness is judged from an irreversible hash. Profile owners can switch analytics off.
Do you store my card details?No. Stripe processes payments. We keep only a payment reference, the tier and the purchase source.
Is my profile private?No. A published profile is public by design and can be indexed and copied by third parties.
Can I get my data deleted?Yes. Email [email protected] and we will action a verified request, subject to records we must keep.
Do you use my content to train AI models?No. We do not use your content to train generative or machine-learning models, and we prohibit others from scraping the Service to do so.
This summary is for orientation only. The detailed sections below govern.

04The personal data we collect

The following is a complete description of the categories of personal data the platform holds. Where a field is optional, you control whether it exists at all.

4.1Account and identity data received from Discord

Discord is currently the only sign-in method. When you authorise the connection, we request the identify, email, connections and guilds scopes, and we receive and store:

  • Your Discord user identifier, which we use as the permanent key for your account.
  • Your Discord username and global display name.
  • Your email address, which we use for service, billing and moderation communications.
  • Your Discord avatar URL, used as your initial profile picture unless you replace it.
  • Your list of Discord platform connections, which we use only to offer to pre-fill your social links. You choose which of them, if any, to publish.
  • An OAuth refresh token, held encrypted with AES-256, so that we can maintain your session and refresh your Discord profile data without asking you to sign in repeatedly.

You can override the email address and avatar we received from Discord, and we record the fact that you have overridden them so that a later refresh from Discord does not overwrite your choice. We do not store your Discord password, because we never see it.

About the guilds scope

The guilds scope is requested during authorisation, but we do not store your server list as a record on your account. If we later use it for a feature, we will update this policy and, where required, ask for your consent first.

4.2Profile and customisation data

Everything you build into your page: your username and username history, display name, biography, location if you enter one, avatar, social links and their labels and icons, cards and their configuration, theme and layout settings, effects, fonts, favicons, text blocks, presets you create or favourite, and your feature toggles such as whether likes and AMA are enabled and whether the profile is published.

This data is stored so that we can render your page. Anything you publish becomes public. Anything you leave unpublished remains visible only to you and, where necessary, to staff carrying out moderation or support.

4.3Uploaded media

Images, video, audio, custom fonts and favicons you upload. For each upload we store the storage key, the file kind and content type, its processing status, its public URL once approved, and, where an upload is rejected, the reason. Uploads are held in cloud object storage and delivered through a content delivery network.

Media you upload may contain personal data in itself, including your image and voice, and may carry embedded metadata such as capture time or location. Please strip metadata you do not want published before uploading, since we do not guarantee to remove it.

4.4Payment and entitlement data

When you buy or gift a paid tier, Stripe collects and processes your payment details directly. We never receive or store your full card number, expiry date or security code.

We store the record of what you are entitled to: the tier, whether it came from a purchase, a gift or a grant by us, the Stripe payment reference, who gifted it if applicable, whether it is active, and the time it was created. This is what lets us unlock paid features and show you a purchase history.

4.5Profile analytics data

For each published profile we count page views, unique views and link clicks, and record the referring source category. Counters are buffered in memory and written to the database as hourly aggregates. The Profile analytics section below explains exactly how uniqueness is determined and what is not stored.

4.6Interaction data

  • Likes. Where you like a profile, we store the pairing of your account and that profile so each account can like a profile once and the owner can see the total.
  • AMA questions. The question text, the time it was submitted, its status, the answer if the owner writes one, whether it has been published, and either the submitting account identifier if the submitter was signed in, or an irreversible submitter hash if they were not. The hash exists to enforce rate limits and to trace abuse, and it cannot be reversed into an IP address.
  • Notifications. Records of the in-app notifications we generate for you, covering AMA activity, likes, moderation actions, appeal responses and gifts.
  • Presets. Presets you save, publish or favourite, and the share tokens generated for them.

4.7Technical, device and log data

  • IP address and user-agent string, processed when you make a request, in order to route it, apply rate limits, detect abuse and secure the Service.
  • Session identifiers held in cookies, and the associated server-side session record.
  • Server and application logs, including request metadata, timestamps and error traces.
  • Security and administrative audit records. These deliberately include the IP address of the actor, together with the action taken, the entity affected and any relevant metadata, so that account changes, moderation decisions and staff actions can be reconstructed if they are challenged.
  • Diagnostic and crash data captured by our error-monitoring provider when something fails, which may incidentally include your account identifier and the request context.

4.8Moderation, safety and enforcement data

  • Reports you submit, including the target, the category, the severity assessment and your identity as the reporter. Reporting requires an account so that reports can be held to a good-faith standard.
  • Reports submitted about you or your content.
  • Automated moderation outcomes, including results from the image and video scanning service and matches against our block list of content hashes.
  • Enforcement records: the action taken, the reason code, any moderator note, the date, the expiry of a suspension, and the identity of the reviewer.
  • Appeals you submit, their content and their outcome.
  • Account state flags such as whether the account is shadowbanned, disabled or suspended, and until when.

4.9Communications

The content of support and legal correspondence you send us, and the transactional emails we send you. Transactional email is delivered through our cloud email service. Where you contact us through a third-party channel such as a support community, that channel's operator also processes your data.

4.10Data we do not collect

For the avoidance of doubt, the platform does not ask for or store: your date of birth, your postal address, your telephone number, government identification documents, biometric identifiers, precise geolocation, or your card number. We do not knowingly collect special-category data, and you should not publish special-category data about other people on your profile.

Sensitive information you choose to publish

If you voluntarily put information about your health, religion, ethnicity, political views, sexual orientation, trade-union membership or similar into a biography, card or upload, you are making it public yourself. We process it only to display your page as instructed and, where required, to moderate it. Please think carefully before publishing such information about yourself, and do not publish it about anyone else.

05Where the data comes from

SourceWhat we receive
You, directlyEverything you type, upload, configure, publish, like, ask, report or appeal.
DiscordIdentity, username, global name, email, avatar and platform connections when you authorise sign-in, and refreshed copies of that profile data afterwards.
StripeThe outcome of a payment, a payment reference and the tier purchased, delivered to us by webhook. Not your card details.
Your browser and device, automaticallyIP address, user-agent, cookies you already hold for the Service, and the referring page.
Other usersAMA questions submitted to you, likes on your profile, and reports about your content.
Our own systemsAnalytics aggregates, moderation outcomes, entitlement records, audit records and diagnostic data generated as the Service runs.
Third-party content APIsPublic metadata about a track, playlist or video you reference on a card. This describes the media, not you.

06Why we use your data, and our legal bases

Where the EU or UK General Data Protection Regulation applies, we must have a lawful basis for each purpose. The table sets out ours. Where you are outside those regimes, the purposes still describe exactly what we do.

PurposeData usedLegal basis
Create your account and authenticate youDiscord identity data, encrypted refresh token, session dataPerformance of a contract (Art. 6(1)(b))
Host, render and deliver your public profileProfile, customisation, cards, links, uploadsPerformance of a contract (Art. 6(1)(b))
Operate likes, AMA, presets and notificationsInteraction data, account identifiersPerformance of a contract (Art. 6(1)(b))
Take and record payments, and apply entitlementsPayment reference, tier, entitlement record, emailPerformance of a contract (Art. 6(1)(b)); legal obligation for tax and accounting records (Art. 6(1)(c))
Provide first-party analytics to profile ownersView and click aggregates, irreversible visitor hash, referrer categoryLegitimate interests (Art. 6(1)(f)) in giving owners basic insight into their own page, balanced by aggregation, de-identification and an owner-level opt-out
Detect, review and act on prohibited content and conductUploads, content, reports, moderation and enforcement records, IP addressLegitimate interests (Art. 6(1)(f)) in protecting users and the Service; legal obligation where the law requires action (Art. 6(1)(c)); substantial public interest for unlawful-content handling
Prevent fraud, abuse, ban evasion and platform manipulationIP address, user-agent, hashes, account state, audit recordsLegitimate interests (Art. 6(1)(f)); legal obligation (Art. 6(1)(c)) where applicable
Secure the Service and investigate incidentsLog data, audit records, session data, diagnostic dataLegitimate interests (Art. 6(1)(f)); legal obligation for security of processing (Art. 32)
Provide support and answer your requestsCorrespondence, account dataPerformance of a contract (Art. 6(1)(b)); legitimate interests (Art. 6(1)(f))
Send service, billing and moderation noticesEmail address, account dataPerformance of a contract (Art. 6(1)(b)); legal obligation (Art. 6(1)(c))
Diagnose faults and improve reliabilityDiagnostic and log dataLegitimate interests (Art. 6(1)(f)) in a working, stable service
Comply with law and respond to legal processAny relevant dataLegal obligation (Art. 6(1)(c)); legitimate interests in establishing, exercising or defending legal claims (Art. 6(1)(f))
Handle a corporate transactionAccount and transaction recordsLegitimate interests (Art. 6(1)(f)) in the lawful conduct of business
Optional features you switch on that need consentOnly the data the feature needsConsent (Art. 6(1)(a)), withdrawable at any time

6.1Our legitimate-interests assessment, in short

Where we rely on legitimate interests, we have considered whether the purpose is necessary, whether a less intrusive route exists, and whether our interest is outweighed by your rights. The safeguards we apply are:

  • Analytics are aggregated to counts, and visitor uniqueness is judged from a one-way hash rather than a stored identifier, so an individual visitor cannot be singled out from the analytics we keep.
  • Profile owners can disable analytics collection for their own page.
  • Moderation data is restricted to trained staff under role-based permissions, and every consequential staff action is recorded in an audit trail.
  • Automated scanning is used to prioritise and flag, and consequential decisions receive human review.
  • Retention periods are limited to what the purpose requires, and are published in the retention section below.
  • You can object to processing based on legitimate interests at any time, and we will stop unless we have compelling grounds we can demonstrate.

You can request a summary of the balancing assessment for any specific purpose by writing to [email protected].

07Consent and how to withdraw it

Most of what we do does not run on consent, because it is either necessary to deliver the Service you asked for, necessary to keep it safe, or required by law. Where we do ask for consent, we will make the request specific and separate, and we will not bundle it into acceptance of the Terms.

  • You can withdraw consent at any time, without giving a reason, and doing so is as easy as giving it. Withdrawal does not affect the lawfulness of processing already carried out.
  • Authorising the Discord connection is consent to Discord sharing your data with us. You can revoke it in Discord's authorised applications settings at any time, which will prevent future sign-in.
  • To withdraw any other consent, use the relevant setting where one exists, or write to [email protected].
  • Where consent is required for a feature and you withdraw it, that feature will stop working, but the rest of the Service will continue.

08Your profile is public by design

Read this before you publish

A published profile is public. It can be opened by anyone who has or guesses the address, without an account, and it is intended to be shared. Treat everything you put on it as permanently public information.

Specifically, when your profile is published:

  • Your username, display name, avatar, biography, location if you set one, links, cards, uploads, badges, like count and published AMA answers are visible to anyone.
  • Search engines and other crawlers may index it, and it may then appear in search results and in their caches. We do not control how long a third party keeps a copy.
  • We generate an Open Graph preview image and metadata so the page renders as a rich card when shared. Those previews are cached by the platforms your link is posted on.
  • Anyone can screenshot, download, archive, mirror or repost your content, including services that archive the web automatically.
  • Unpublishing or deleting content removes it from the Service, but does not remove copies already taken by third parties.

You control the exposure. You can leave your profile unpublished, choose not to appear in directory and discovery features, disable likes, disable AMA, disable analytics collection, and delete any individual card, link or upload at any time from your profile settings. Where a specific field is optional, the simplest privacy measure is not to fill it in.

If content about you appears on someone else's profile and you want it removed, use the reporting control on that profile or write to [email protected]. We treat publishing another person's private information without their consent as a serious violation of the Community Guidelines.

09Cookies and similar technologies

We use a deliberately small number of cookies, and none of them are advertising cookies. We do not deploy third-party marketing or profiling trackers.

CookiePurposeTypeLifetime
sp.sidHolds your session identifier so you stay signed in. The session record itself is stored server-side.Strictly necessary, first-party, HTTP-onlyAbout 24 hours by default
phaedra_authedA non-sensitive marker that lets the app tell the difference between a signed-out visitor and an expired session, so we can show the right screen.Strictly necessary, first-party, readable by the appMatches the session
sp.admin.sidSession cookie for the internal staff administration panel. Not set for ordinary users.Strictly necessary, first-party, HTTP-onlyAbout 24 hours by default
Third-party embed cookiesWhere a profile embeds a player or widget from another platform, that platform may set its own cookies when the embed loads.Third-party, controlled by that platformSet by the third party

Because our own cookies are strictly necessary to provide a service you have requested, we do not need consent for them under the ePrivacy rules, and there is no consent banner to dismiss. If we ever introduce a non-essential cookie, we will ask for your consent first and give you a way to manage it.

You can block or delete cookies in your browser settings. Blocking our session cookies will prevent you from signing in. We also use ordinary web-server logs and hashed request fingerprints as described elsewhere in this policy; these do not rely on cookies.

10Profile analytics and how we count views

Profile owners see how many times their page was viewed, how many of those views were unique, which sources traffic came from, and how often each link was clicked. We built this first-party rather than adding a third-party analytics product, precisely so that visitor data does not leave our systems.

10.1What actually happens when a profile is viewed

  1. The request arrives with an IP address and a user-agent string, as every web request does.
  2. Those two values are combined and passed through a SHA-256 hash to produce a short-lived fingerprint. The hash is one-way: it cannot be reversed to recover the IP address.
  3. The fingerprint is checked against a de-duplication key so that repeated views from the same visitor in the same window count once towards unique views.
  4. Counters for total views, unique views, sources and link clicks are incremented in an in-memory store.
  5. On an hourly cycle, the counters are flushed to the database as an aggregate row. Only counts and source categories survive this step.
  6. If the viewer is signed in as the profile owner, the view is not counted at all.

What we do not do

We do not store visitors' raw IP addresses in the analytics records, do not build cross-site profiles of visitors, do not follow visitors between profiles for advertising purposes, do not sell or share analytics data, and do not give profile owners any means of identifying an individual visitor. Owners see numbers, not people.

10.2Opting out

Profile owners can switch off analytics collection for their own page in profile settings, in which case we stop counting views and clicks for it. Visitors who prefer not to be counted at all can use a browser that blocks the analytics request, or browse with tracking protection; the profile will still render.

11Moderation, safety and abuse prevention

Keeping a public publishing platform safe requires processing some data specifically for that purpose. We have set out what that involves so it is not a surprise.

  • Automated scanning of uploads. Images and video are analysed by a cloud image-and-video moderation service before they are published, to detect explicit, violent or otherwise prohibited material. Uploads are also compared against a list of hashes of content we have previously removed.
  • Reports. If you report content, we record who you are so that we can prevent malicious and automated reporting, follow up if we need more information, and identify retaliation. We do not disclose your identity to the person you reported, unless we are legally required to do so.
  • Human review. Reports and automated flags enter a moderation queue. Reviewers can see the reported content, the surrounding profile, prior enforcement history on the account and the report metadata. Access is limited by role-based permissions.
  • Enforcement and appeal records. We record what action was taken, why, by whom and when, together with your appeal and its outcome. These records are what allow you to challenge a decision and allow us to demonstrate that we applied our rules consistently.
  • Evasion prevention. We use technical signals, including IP address and hashed fingerprints, to detect attempts to evade a suspension or ban with a new account. We retain the minimum needed for this purpose.
  • Referral to authorities. Where we encounter material or conduct that we believe involves a serious risk to life or the sexual exploitation of a child, we will preserve the relevant evidence and report it to law enforcement or the appropriate authority, as the law requires or permits.

The actions available to us, the severity framework, and the 14-day appeal window are described in full in the Community Guidelines.

12Who we share personal data with

We disclose personal data only in the situations below. We do not disclose it for anyone else's independent marketing purposes.

The public
Anything you publish on your profile. This is the primary and intended disclosure, and it is under your control.
Service providers acting for us
The processors listed in the next section, each engaged under a written contract that restricts them to processing on our instructions, requires appropriate security, and prohibits use of the data for their own purposes.
Other users, in limited ways
A profile owner sees the questions submitted to them and whether an account has liked their profile. Reporters are not identified to the people they report.
Legal and regulatory recipients
Courts, law-enforcement agencies, regulators and other authorities, where we are legally compelled, or where disclosure is necessary to establish, exercise or defend legal claims, to comply with a valid legal request, or to prevent imminent harm to a person. We assess each request, require it to be lawful and specific, decline requests that are overbroad, and will notify you where we are permitted to do so.
Professional advisers
Lawyers, accountants, auditors and insurers, bound by professional duties of confidentiality, where necessary for advice or the conduct of our business.
Corporate transactions
A prospective or actual buyer, investor, merger partner or successor in a reorganisation, insolvency or sale of assets, under confidentiality obligations. Where personal data transfers to a new controller, we will notify you and the new controller will remain bound by commitments at least as protective as this policy, or you will be given a choice where the law requires one.
Aggregated or de-identified information
Statistics that do not identify any individual and cannot reasonably be used to re-identify anyone, for example total platform usage figures. We do not attempt to re-identify de-identified data and we contractually prohibit recipients from doing so.

13Our service providers and sub-processors

The Service is built on the following providers. Each acts as our processor, except Discord and Stripe, which also act as controllers in their own right for the parts of the interaction they own.

ProviderWhat it does for usData involved
DiscordIdentity provider for sign-in; source of your profile basics and platform connectionsDiscord identity, email, avatar, connections
Amazon Web Services — S3 and CloudFrontStores and delivers uploaded media and public assetsUploaded images, video, audio, fonts, favicons and their metadata
Amazon Web Services — RekognitionAutomated image and video moderation scanning before publicationUploaded media, scan results
Amazon Web Services — Simple Email ServiceDelivers transactional emailEmail address, message content
CloudflareDNS, subdomain routing and TLS certificates for custom domainsDomain and request metadata, IP address in transit
StripePayment processing and checkout for paid tiers and giftsPayment details you enter with Stripe, payment reference, email
Google — YouTube Data APIRetrieves public video metadata for YouTube cardsThe video reference you supply; no account data about you
SpotifyRetrieves public track and playlist metadata for Spotify cardsThe media reference you supply; no account data about you
Google FirebaseAuthentication and email for internal staff accounts onlyStaff email and authentication data; not ordinary user data
SentryError and performance monitoringDiagnostic data, which may include account identifier, request context and IP address
Managed PostgreSQL and Redis hostingPrimary database, sessions, rate limits, analytics buffers and background job queuesAll stored platform data, as described above

We keep this list current. If we add or replace a processor that handles personal data, we will update this page, and we will notify you in advance where the change is material. You can request the current list, and confirmation of the safeguards in place, at [email protected].

14We do not sell your data or run behavioural advertising

An unambiguous commitment

We do not sell personal data, and we have not sold personal data. We do not "share" personal data for cross-context behavioural advertising as that term is used in the California Consumer Privacy Act as amended by the California Privacy Rights Act, or under any comparable United States state law.

  • There is no advertising inventory on the Service.
  • There is no third-party advertising, marketing-analytics or data-broker software development kit in the product.
  • We do not build advertising profiles, audience segments or lookalike audiences, and we do not perform cross-context tracking of visitors.
  • We do not use your content, your profile or your analytics to train generative or machine-learning models, and our Terms prohibit others from scraping the Service to do so.
  • We do not disclose personal data of any person we know to be under 16 for money or for advertising purposes.

15International data transfers

We and our providers operate internationally, so your personal data may be processed in countries other than your own, including the United States and other countries where our cloud providers run infrastructure. Data-protection law in those countries may differ from the law where you live.

Where we transfer personal data out of the European Economic Area, the United Kingdom or Switzerland, we rely on one or more of the following safeguards:

  • An adequacy decision by the European Commission, the UK government or the Swiss authorities in respect of the destination country.
  • The European Commission's Standard Contractual Clauses, together with the UK International Data Transfer Addendum or the UK International Data Transfer Agreement, and the Swiss equivalent where relevant.
  • Certification of the importer under the EU-US Data Privacy Framework and its UK and Swiss extensions, where the importer participates.
  • A transfer-impact assessment, and supplementary technical and organisational measures such as encryption in transit and at rest, access controls and data minimisation, where the assessment shows they are needed.
  • A derogation permitted by law, such as your explicit consent or the necessity of the transfer for the performance of a contract with you.

You may request a copy of the relevant transfer mechanism, with commercially confidential terms redacted, by writing to [email protected].

16How long we keep data

We keep personal data only as long as we need it for the purpose we collected it for, plus any period required by law or necessary to defend a legal claim. The following are our standard periods.

DataRetention
Account recordFor the life of the account. On closure, the record is soft-deleted immediately so the account cannot be used, and is purged from primary systems within 30 days of a verified deletion request, except for the exceptions in this table.
Profile, cards, links and customisationUntil you delete them, or within 30 days of account deletion.
Uploaded mediaUntil you delete the upload or the account, then removed from storage and purged from the delivery network cache. Rejected uploads are deleted after the scan decision, except where a hash must be retained for the block list.
Content hashes on the block listRetained indefinitely. These are irreversible fingerprints, not content, and they exist to stop prohibited material being re-uploaded.
Discord OAuth refresh tokenWhile the connection is active. Deleted on account closure or when the connection is revoked.
Session records and session cookiesAbout 24 hours, or until you sign out.
Username history and reclaim recordsA previous username is held for up to 180 days before release. History is retained while needed to investigate impersonation and evasion.
Analytics aggregatesHourly aggregates are retained for up to 26 months, then deleted or reduced to coarser totals. The visitor de-duplication fingerprint is short-lived and expires automatically.
AMA questionsUntil deleted by the profile owner or the account is closed. Submitter hashes are retained only as long as needed for rate limiting and abuse investigation.
Payment and entitlement recordsRetained for the period required by tax, accounting and anti-fraud law, typically 6 to 10 years depending on jurisdiction, even after account closure.
Moderation reports, decisions and appealsRetained for up to 3 years after the case closes, or longer where needed to enforce a permanent ban, to prevent evasion, or to defend a legal claim.
Permanent-ban recordsRetained indefinitely, in minimised form, because a permanent ban cannot be enforced without a record of it.
Security and administrative audit recordsTypically 12 to 24 months, longer where an investigation or legal claim is open.
Server logs and diagnostic dataTypically 30 to 90 days.
Support and legal correspondenceUp to 3 years from the last message, or longer where a dispute is live.
BackupsRolling backups are retained for up to 35 days. Deleted data may persist in a backup until that cycle completes, after which it is overwritten.

Why some data survives deletion

When we say we retain something after account closure, it is for a specific and narrow reason: a tax record we must keep, a ban we must be able to enforce, a hash that prevents illegal material returning, or an audit trail that protects both of us if a decision is challenged. We minimise what is retained and we do not use it for any other purpose.

17How we protect data, and what happens if something goes wrong

We apply technical and organisational measures appropriate to the risk, including:

  • Encryption of traffic in transit using TLS, and encryption of stored data at rest by our infrastructure providers.
  • AES-256 encryption of the Discord OAuth refresh token in the database, so a database copy alone does not yield usable tokens.
  • No user passwords for ordinary accounts, because authentication is delegated to Discord. Internal staff credentials, where they exist, are stored as bcrypt hashes.
  • Server-side sessions with HTTP-only cookies, so session identifiers are not readable by page scripts.
  • Role-based access control and a permission matrix that limits staff to the minimum data their role requires, with moderation access restricted to trained reviewers.
  • Audit logging of consequential staff and account actions.
  • Rate limiting, abuse trip-wires and automated content scanning.
  • Segregation of the public application, the internal administration panel and the API, with separate session cookies.
  • Dependency and error monitoring, and prompt patching of known vulnerabilities.

No system is perfectly secure. We cannot guarantee absolute security, and you play a part: keep your Discord account secure, enable two-factor authentication there, and sign out on shared devices.

17.1Breach notification

If a personal-data breach occurs that is likely to result in a risk to your rights and freedoms, we will notify the competent supervisory authority without undue delay and, where feasible, within 72 hours of becoming aware of it, as Article 33 of the GDPR requires. Where the breach is likely to result in a high risk to you, we will notify you directly and without undue delay, describing what happened, the likely consequences, and the steps we and you should take. We will also comply with applicable United States state breach-notification laws.

If you believe you have found a security vulnerability, please report it to [email protected] rather than testing it against other users' data or disclosing it publicly. We will not pursue action against good-faith researchers who report promptly, avoid privacy violations and data destruction, and give us reasonable time to fix the issue.

18Your data-protection rights

If you are in the European Economic Area, the United Kingdom or Switzerland, you have the rights below. We extend the substance of these rights to all users wherever they live, because it is simpler and fairer to run one standard.

Access
To be told whether we process your personal data and, if so, to receive a copy of it together with information about the purposes, recipients, retention and safeguards.
Rectification
To have inaccurate personal data corrected and incomplete data completed. Most profile data you can correct yourself in the editor.
Erasure
To have personal data deleted where it is no longer needed for the purpose, where you withdraw the consent it relied on, where you successfully object, or where it has been processed unlawfully. This right does not extend to data we must retain for a legal obligation, for the establishment or defence of legal claims, or to enforce a ban.
Restriction
To have processing limited while a dispute about accuracy or a pending objection is resolved.
Portability
To receive the personal data you provided to us, in a structured, commonly used and machine-readable format, and to have it transmitted to another controller where technically feasible.
Objection
To object to processing based on legitimate interests, including our first-party analytics. We will stop unless we can demonstrate compelling legitimate grounds that override your interests. Where processing is for direct marketing, the right to object is absolute.
Withdrawal of consent
To withdraw any consent you have given, at any time, without affecting the lawfulness of prior processing.
Human review of automated decisions
Not to be subject to a decision based solely on automated processing that produces legal effects or similarly significantly affects you. See the Automated processing section for how this applies to content moderation.
Complaint to a supervisory authority
To lodge a complaint with the data-protection authority in your country of residence, place of work or the place of the alleged infringement. Our lead supervisory authority is [LEAD SUPERVISORY AUTHORITY]. We would appreciate the chance to address your concern first, but you are not required to come to us before going to a regulator.

18.1How to exercise your rights

Some rights you can exercise directly in the product: edit or delete profile content in the editor, delete uploads, disable analytics, likes and AMA, and control directory visibility in profile settings.

Deletion and export are handled by request today

The Service does not yet provide a self-service button for full account deletion or a downloadable data export. Until it does, email [email protected] from the address on your account, or from the account itself, stating what you want. We will treat that request with exactly the same standing as an in-product control, and we will not charge you for it.

  • Tell us which right you are exercising, and which account it concerns. Send it to [email protected].
  • We will verify that the request comes from you or from someone authorised to act for you. Because sign-in is via Discord, verification is normally a matter of confirming control of the account or its email address. We ask for the minimum needed, and we do not require identity documents.
  • We will respond without undue delay and in any event within 30 days of a verified request. Where a request is complex or we have received several from you, we may extend by up to two further months and will tell you why within the first month.
  • Requests are free. We may charge a reasonable fee, or refuse, only where a request is manifestly unfounded or excessive, and we will explain our reasoning and your right to complain if we do.
  • If we cannot act on part of a request, we will tell you which part, why, and what your options are.
  • An authorised agent may act for you if you provide written authority, and we may still verify the request with you directly.

We will not treat you worse for exercising a right: no denial of service, no different pricing, no reduction in quality, and no retaliation.

19United States state privacy rights

This section supplements the rest of the policy for residents of United States states with comprehensive privacy laws, including California, Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, Delaware, Iowa, Nebraska, New Hampshire, New Jersey, Tennessee, Minnesota, Maryland, Indiana, Kentucky and Rhode Island, as those laws come into force.

19.1Categories under the California Consumer Privacy Act

Statutory categoryCollectedExamples in our case
IdentifiersYesDiscord identifier, username, email address, IP address, account identifier, cookie identifiers
Customer records informationYesName or display name, email address, payment reference
Protected classification characteristicsOnly if you publish themWe do not ask for them; anything of this nature is content you chose to publish
Commercial informationYesPurchases of paid tiers, gifts sent and received, entitlement history
Biometric informationNoNot collected
Internet or network activityYesProfile views, link clicks, referrer category, request and error logs
Geolocation dataApproximate only, and not stored for analyticsCoarse location may be inferred from an IP address in transit; we do not collect precise geolocation
Audio, visual and similar informationYesImages, video and audio you upload
Professional or employment informationOnly if you publish itContent you choose to put on your profile
Education informationNoNot collected
InferencesMinimalAbuse and fraud signals used for safety; we do not build advertising or personality profiles
Sensitive personal informationLimitedAccount credentials in the form of an encrypted OAuth token, and the contents of communications you send us. Used only to provide the Service and keep it secure, which is a permitted purpose
We collect the categories marked below. We disclose them for business purposes only, to the processors listed in this policy. We do not sell them and we do not share them for cross-context behavioural advertising.

19.2Your rights, and how to use them

  • Right to know and access, including the categories collected, the sources, the purposes, the categories of recipients, and a copy of the specific pieces of personal information we hold.
  • Right to delete personal information, subject to statutory exceptions such as completing a transaction, security, legal compliance and exercising legal claims.
  • Right to correct inaccurate personal information.
  • Right to opt out of sale or sharing. There is nothing to opt out of, because we do not sell or share personal information for cross-context behavioural advertising.
  • Right to limit the use of sensitive personal information. We already limit our use of it to purposes the statute permits.
  • Right to non-discrimination for exercising any of these rights.
  • Right to appeal, where your state provides one, if we decline a request. Reply to our decision and we will reconsider it, and tell you how to escalate to your state attorney general if you remain dissatisfied.
  • Shine the Light. California residents may request information about disclosures of personal information to third parties for their direct-marketing purposes. We make no such disclosures.

Submit any of these requests to [email protected] with the subject line "Privacy rights request". We will acknowledge within 10 business days and respond within 45 days, extendable once by a further 45 days where reasonably necessary, and we will tell you if we need the extension. An authorised agent may submit a request with written permission and proof of identity.

19.3Notice at collection

This policy, together with the tables above, is our notice at collection. It identifies the categories collected, the purposes, whether each category is sold or shared, which it is not, and how long we keep each category.

20Children's privacy

The Service is not directed at children. You must be at least 13 years old to hold an account, or at least the local age of digital consent, which is 16 in a number of European countries. The Terms of Service contain the country-by-country table.

  • We do not knowingly collect personal data from anyone below the applicable minimum age, and we do not knowingly permit them to hold an account.
  • If we learn that an account holder is below the applicable age, we will disable the account, unpublish the profile and delete the associated personal data, except any minimal record needed to prevent the account being recreated.
  • A parent or legal guardian may ask us to review, delete or stop the collection of their child's personal data by writing to [email protected]. We will verify the relationship proportionately and act promptly. There is no charge.
  • We do not sell or share the personal data of any user we know to be under 16, and we do not use it for advertising, because we do not run advertising at all.
  • Where a minor uses the Service with parental consent, the parent or guardian is responsible for supervising that use, including what the minor publishes on a public page.

Minor safety

Content that sexualises a minor, and any attempt to contact or groom a minor, results in immediate permanent removal and referral to the appropriate authorities. See the Community Guidelines for our full position. Report anything of this nature to [email protected] immediately.

21Automated processing and content scanning

We use automation in three places, and we want to be precise about what it does and does not decide.

Upload scanning
Images and video are scanned automatically before publication. A scan can block publication of a specific file. This is a content decision about a file, not a profiling decision about you, and it is necessary to stop illegal and prohibited material appearing on a public page. If a file is rejected in error, you can re-upload a compliant version or contact support.
Hash matching
Uploads are compared against fingerprints of material we have previously removed. A match blocks the upload. Matching is deterministic and does not profile you.
Abuse and rate-limit trip-wires
Automated signals can rate-limit a request, queue an item for review, or temporarily restrict an action where the pattern strongly indicates abuse. These are protective and reversible.

Consequential enforcement decisions about your account — a warning, a suspension, disabling a profile, a shadowban or a permanent ban — are made or confirmed by a human reviewer, not by an algorithm acting alone. You are notified, given the reason, and given the right to appeal to a human within the appeal window. We do not carry out automated decision-making that produces legal effects concerning you within the meaning of Article 22 of the GDPR, and we do not engage in profiling for advertising, credit, employment or insurance purposes.

22Do Not Track and Global Privacy Control

Browsers can send a "Do Not Track" header, but there is still no common industry standard for how a site should respond, so we do not act on it differently: we already do not track you across sites or for advertising.

We recognise the Global Privacy Control signal as a valid opt-out of sale and sharing where applicable law requires it. Since we do not sell or share personal information for cross-context behavioural advertising, there is nothing for the signal to switch off, and honouring it changes nothing about how we treat you.

23Third-party links and embedded content

Profiles are built to point outwards. When you click a link on a profile, you leave the Service and the destination's own privacy policy applies. We do not control those sites and are not responsible for their practices.

Where a profile embeds a third-party player or widget, that third party may receive your IP address, set its own cookies and collect usage data directly when the embed loads, under its own policy. If you would rather avoid this, use a browser that blocks third-party content, or avoid interacting with the embed.

24Changes to this policy

We will update this policy when our practices, the Service or the law change. The current version is always published at https://social.page/privacy with a version number and a last-updated date.

  • Where a change is material — a new purpose, a new category of data, a new class of recipient, a materially longer retention period, or a reduction in your rights — we will give prominent advance notice by in-app notification, email or a notice on the Service, and where the law requires consent we will ask for it before the change takes effect.
  • Clarifications, corrections and updates to contact details take effect on publication.
  • You can request the version of this policy that applied on a given date from [email protected].

25Contact us and how to complain

If you have a question about this policy, want to exercise a right, or are unhappy with how we have handled your data, contact us first — we would like the chance to put it right.

Controller
[LEGAL ENTITY NAME]
Registered office
[REGISTERED ADDRESS, CITY, POSTAL CODE, COUNTRY]
Privacy and data rights
[email protected]
Trust and safety
[email protected]
Legal notices
[email protected]
General support
[email protected]
Responsible person
[DATA PROTECTION OFFICER OR RESPONSIBLE PERSON]
EU representative
[EU ARTICLE 27 REPRESENTATIVE, NAME AND ADDRESS]
UK representative
[UK ARTICLE 27 REPRESENTATIVE, NAME AND ADDRESS]

If you are not satisfied with our response, you may complain to your data-protection authority. In the European Economic Area, that is the authority in your country of residence, place of work or the place of the alleged infringement, and our lead authority is [LEAD SUPERVISORY AUTHORITY]. In the United Kingdom, it is the Information Commissioner's Office. In Switzerland, it is the Federal Data Protection and Information Commissioner. Residents of United States states with a comprehensive privacy law may contact their state attorney general. You do not need our permission, and we will not retaliate.

Related policies

Terms of ServiceThe contract between you and Social Page: accounts, paid tiers, your content, liability and how disputes are resolved.Community GuidelinesWhat is and is not allowed on a profile, how we detect and review violations, the actions we take and how to appeal them.

Privacy — version 1.0, last updated 12 August 2026.

Back to top

SOCIAL PAGE

Terms of ServicePrivacy PolicyCommunity GuidelinesAccount StandingSupport

© 2026 Social Page. All rights reserved.