1. Introduction
SaaSCity.io ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website saascity.io (the "Site") and use our services.
2. Information We Collect
We collect information that identifies, relates to, describes, references, is capable of being associated with, or could reasonably be linked, directly or indirectly, with a particular consumer or device ("personal information").
2.1 Information You Provide
- Account Data: Name, email address, password hash, and username when you register.
- Transaction Data (Direct Purchases): When you purchase "Partner Products" or services (like "Boosts") directly from us, we process payment details via our third-party processor (Stripe). We do not store full credit card details. We do not process payment data for private transactions between users ("User Listings").
- Promotion Content: Sponsor text, ticker ads, billboard images, links, and other promotional assets you submit are stored and displayed publicly.
- Profile Data: Your interests, preferences, and feedback.
- Listing Content: Information you voluntarily disclose in "User Listings" (e.g., project descriptions, images, contact links) is public and accessible to other users.
2.2 Information Automatically Collected
- Technical Data: Internet Protocol (IP) address, your login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform.
- Analytics Data: We use Google Analytics 4 (GA4) to collect aggregated usage metrics such as page views, session engagement, referrers, and high-level interaction events (for example, successful project submission events).
- Gamification & Activity Data: We collect data regarding your interactions with the interactive map, including plot locations, building upgrades, and performance metrics (e.g., visits, upvotes) which determine your standing in the gamified leaderboards. This data is publicly displayed as part of the Service's core functionality.
- Usage Data: Information about how you use our website, products, and services.
- Referral & Click Data: We log referral clicks and engagement events (including unique IP tracking) to measure activity and prevent abuse.
2.3 Public Information
Information you publish is public by default. This includes listings, launch pages, map placements, comments, sponsor placements, ticker ads, billboards, and associated media.
3. Cookies and Tracking Technologies
We use cookies and similar tracking technologies (like web beacons and pixels) to access or store information. Specific information about how we use such technologies and how you can refuse certain cookies is set out in our Cookie Notice (if available) or as follows:
- Essential Cookies: Necessary for the website to function (e.g., login sessions, cart data). You cannot opt-out of these.
- Analytics Cookies: We use Google Analytics 4 to understand product usage and improve the Service. You can limit analytics cookies through your browser settings and available Google controls.
- Advertising & Performance: We may use cookies or similar technologies to measure promotion performance and prevent fraud.
4. How We Use Your Information
We use your personal data to:
- Provide, operate, and maintain our website and services.
- Process your transactions and manage your orders.
- Improve, personalize, and expand our website.
- Understand and analyze how you use our website.
- Develop new products, services, features, and functionality.
- Deliver and measure promotions, sponsorships, ticker ads, billboards, and featured boosts.
- Communicate with you, either directly or through one of our partners, including for customer service, to provide you with updates and other information relating to the website, and for marketing and promotional purposes (where you have consented).
- Find and prevent fraud.
5. Legal Basis for Processing (EEA/GDPR)
If you are from the European Economic Area (EEA), our legal basis for collecting and using the personal information described above will depend on the personal information concerned and the specific context in which we collect it.
- Contractual Necessity: To perform a contract with you (e.g., to process a purchase).
- Legitimate Interests: For our legitimate business interests, provided these do not override your fundamental rights and freedoms.
- Consent: Where you have given us valid consent to do so.
- Legal Obligation: Where we have a legal obligation to collect personal information from you.
6. Sharing Your Information
We do not sell, trade, or otherwise transfer your personal information to outside parties except as described below:
- Service Providers: We may share data with trusted third-party service providers (e.g., Stripe for payments, Vercel for hosting, Supabase for database) to help us operate our service.
- Analytics Providers: We use Google Analytics as a processor/service provider for analytics and measurement.
- Fraud & Abuse Prevention: We may share relevant data with vendors that help detect fraud, abuse, or policy violations.
- Compliance with Laws: We may disclose your information where we are legally required to do so in order to comply with applicable law, governmental requests, a judicial proceeding, court order, or legal process.
- Business Transfers: In connection with, or during negotiations of, any merger, sale of company assets, financing, or acquisition of all or a portion of our business to another company.
7. International Data Transfers
Your information, including Personal Data, may be transferred to — and maintained on — computers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ than those from your jurisdiction.
If you are located outside Poland and provide information to us, please note that we transfer the data, including Personal Data, to Poland and process it there. We also use service providers (like Stripe or Vercel) that may process data in the United States. In such cases, we ensure appropriate safeguards are in place, such as the European Commission's Standard Contractual Clauses (SCCs).
8. Data Controller & Operations
Service is operated from Poland. We comply with the General Data Protection Regulation (GDPR). By using the Site, you consent to these practices.
Data Controller Details:
Piotr Boroń, al. Solidarności 68/121, 00-240 Warsaw, Poland.
Contact: [email protected]
9. Your Privacy Rights
Under the GDPR and other applicable privacy laws, you have rights to access, rectify, or erase your data.
Right to Access
You have the right to request copies of your personal data.
Right to Rectification
You have the right to request that we correct any information you believe is inaccurate.
Right to Erasure
You have the right to request that we erase your personal data, under certain conditions.
Right to Object
You have the right to object to our processing of your personal data.
To exercise any of these rights, please contact us at [email protected].
10. Data Retention
We retain personal data for as long as necessary to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements. Promotion content and public listings may remain visible until you delete them or your account is removed, subject to moderation and record-keeping requirements.
11. Security
We use reasonable administrative, technical, and physical safeguards to protect your data. No method of transmission or storage is 100% secure, so we cannot guarantee absolute security.
12. Children's Privacy
The Service is not intended for individuals under 18. We do not knowingly collect personal data from children.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will post the updated version on this page and update the "Last Updated" date.