NotScare Logo
NotScare

Privacy Policy

Last updated: June 2025

1. Data Controller

Data controller for data processing:
[Your Company Name]
[Complete Address]
Germany
Email: [Your Email]
Phone: [Your Phone Number]
Data Protection Officer: [Name and Contact]

2. Types of Data Processed

2.1 Registration Data

  • Name (username)
  • Email address
  • Password (stored encrypted)
  • Registration date

2.2 Profile Information

  • Profile pictures/avatars
  • User preferences and settings
  • Language settings

2.3 Content Data

  • Jumpscare entries (timestamps, descriptions, ratings)
  • Reviews and comments
  • Reports and feedback
  • Support requests

2.4 Usage Data

  • Access logs (browser type, operating system)
  • Usage statistics and interaction data
  • Session data and cookies
  • Activity timestamps

3. Legal Basis for Processing

Processing is based on the following legal grounds:

  • Art. 6(1)(b) GDPR - Contract performance for providing our services
  • Art. 6(1)(a) GDPR - Consent (e.g., for marketing emails)
  • Art. 6(1)(f) GDPR - Legitimate interests (e.g., IT security, analytics)
  • Art. 6(1)(c) GDPR - Legal obligation (e.g., retention requirements)

4. Purposes of Data Processing

  • Provision and operation of the platform
  • User account management and authentication
  • Creation and management of jumpscare databases
  • Community features (ratings, comments)
  • Customer support and communication
  • Improvement of our services and user experience
  • Abuse and fraud prevention
  • Compliance with legal obligations

5. Data Transmission and Third Parties

5.1 MongoDB (Backend Services)

We use MongoDB Atlas for backend services and data storage. MongoDB processes data in EU data centers and is GDPR compliant.
Website: https://www.mongodb.com
Privacy Policy: https://www.mongodb.com/legal/privacy-policy

5.2 TMDB (Movie Data)

For movie information, we use The Movie Database (TMDB) API. No personal data is transmitted to TMDB.
Website: https://www.themoviedb.org

5.3 Umami Analytics

We use Umami Analytics for anonymous website statistics. Umami does not collect personal data and does not use cookies. All data is processed anonymously.
Website: https://umami.is

5.4 Email Delivery

For email delivery, we use Resend. Transmission is encrypted.
Website: https://resend.com/

6. Cookies and Tracking

We only use technically necessary cookies for:

  • Session management and authentication
  • Language settings
  • Security features

Additionally, we use Umami Analytics for anonymous usage statistics. Umami is a privacy-friendly analytics tool that does not collect personal data and does not use cookies. Data is processed anonymously and cannot be traced back to individual users.

You can manage cookies in your browser settings.

7. Your Rights

You have the following rights regarding your personal data:

  • Right of access (Art. 15 GDPR): Information about stored data
  • Right to rectification (Art. 16 GDPR): Correction of incorrect data
  • Right to erasure (Art. 17 GDPR): Deletion of your data
  • Right to restriction (Art. 18 GDPR): Restriction of processing
  • Right to data portability (Art. 20 GDPR): Transfer of your data
  • Right to object (Art. 21 GDPR): Objection to processing
  • Withdrawal of consent: Possible at any time

To exercise your rights, contact us at: [Your Email]

8. Data Security

We implement appropriate technical and organizational measures:

  • SSL/TLS encryption for all data transmissions
  • Encrypted storage of sensitive data
  • Regular security updates
  • Access control and permission management
  • Regular backups
  • Monitoring and incident response

9. International Data Transfer

Transfer of your data to third countries outside the EU/EEA only occurs with adequate data protection level or appropriate safeguards (e.g., standard contractual clauses).

10. Right to Complain

You have the right to lodge a complaint with a data protection supervisory authority:
For Germany: Federal Commissioner for Data Protection and Freedom of Information (BfDI)
Website: https://www.bfdi.bund.de

11. Changes to this Privacy Policy

We reserve the right to update this Privacy Policy. We will notify you of significant changes via email or through our platform.

Status: June 2025