Privacy Policy |
1. Who we are We are Mini's Forum, responsible for collecting, processing, and protecting your personal data under GDPR. 2. What data we collect Registration & profile: username, email, password (hashed), IP address, registration date/time, birthday, gender, profile picture, bio, location, website. Forum activity: posts, replies, private messages, attachments (images, videos), sent emails. Usage logs: all IP addresses, last visit, users online status (except when hidden), cookies, error logs, moderation logs (warnings, bans), spam detection logs. Cookies: login session, activity timestamps, preferences, moderation selections, session ID, etc., as per MyBB defaults. 3. Purposes & legal bases Service provision & security: to manage accounts, authenticate users, monitor security, logs for error debugging and spam control (legitimate interest). Communication: to send forum notifications, private messages, and admin emails (consent, or contract necessity). Analytics & preferences: store cookies to remember preferences, analyze site activity, improve UX and functionality (legitimate interest or consent, where required). 4. How long we keep data Personal data is retained as long as your account exists or as required for legitimate interests (e.g., fraud prevention, legal compliance). Upon request, data will be deleted in compliance with Article 17 GDPR unless retention is required for legal obligations. 5. Your rights under GDPR You have rights to: Access your personal data Correct inaccurate or incomplete data Erase data (with exceptions) Restrict processing Port your data Object to processing Withdraw consent 6. Third-party sharing & subprocessors We share data with: BisectHosting (server host), who processes your IP, account email, and cookies. 7. International transfers BisectHosting may transfer data across countries for server hosting. Cookies and analytics data may be processed by third-party services globally. 8. Cookies We use cookies to: Authenticate sessions, store preferences, and support moderation features. Support analytics for BisectHosting services. 9. Security We implement technical and organizational measures to protect your data, including encryption, access control, intrusion logging, and routine backups via server host. 10. Data breach notification We will notify you and relevant supervisory authorities of any personal data breach within 72 hours if there’s a high risk to your rights and freedoms. 11. Changes to this policy We may update the policy—changes will be versioned with "last updated" dates. 12. Contact For GDPR data requests or questions, reach us at: minisforums@outlook.com. Out-of-the-box data: cookies (login session, last visit, active timestamp, session ID, moderation tracking). Error handling & debugging: logs include IPs, system tokens, session IDs, debug backtraces, SQL errors. User data: account email, hashed password + salt, IP address, profile metadata (birthday, gender, picture, bio, location, website). Message logs: forum posts, private messages, attachments, sent emails. Moderation metrics: warnings, bans, spam logs, admin logs for troubleshooting. Cookies: tracking preferences, ads, traffic stats. Server logs: potentially IP address, server usage information. Backups: stored on separate drives for 7-day retention. Third-party sharing: limited to hosting partners, payment processors, legal compliance—no data sales. |
Last updated 28.08.2025, 18:01