Privacy Policy
Last updated: December 2024
GetAmbassadors ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.
1. Information We Collect
1.1 Information You Provide
- Account Information: Name, email address, password, and profile details
- Creator Profile: Social media handles, niche, location, and portfolio content
- Brand Profile: Company name, industry, website, and campaign preferences
- Payment Information: Bank details, PayPal address, or Stripe account (processed by our payment partners)
- Communications: Messages sent through our platform, support requests
1.2 Information Collected Automatically
- Usage Data: Pages visited, features used, time spent on platform
- Device Information: Browser type, operating system, IP address
- Cookies: See our Cookie Policy for details
1.3 Information from Third Parties
- Social Media Platforms: When you connect your accounts, we receive follower counts, engagement metrics, and public profile information
- Payment Processors: Transaction confirmations and account status
2. How We Use Your Information
- To provide and maintain our platform
- To match creators with relevant brand campaigns
- To process payments and manage escrow transactions
- To send notifications about campaigns, messages, and platform updates
- To improve our services and develop new features
- To detect and prevent fraud or abuse
- To comply with legal obligations
3. Legal Basis for Processing (GDPR)
Under the EU General Data Protection Regulation, we process your data based on:
- Contract: To fulfill our service agreement with you
- Legitimate Interests: To improve our platform and prevent fraud
- Consent: For analytics and marketing communications (where applicable)
- Legal Obligation: To comply with applicable laws
4. Data Sharing
We may share your information with:
- Other Users: Creators see brand profiles; brands see creator profiles
- Service Providers: Payment processors, email services, cloud hosting
- Legal Authorities: When required by law or to protect our rights
We do not sell your personal data to third parties.
5. Data Retention
- Active Accounts: Data retained while account is active
- Deleted Accounts: Personal data deleted within 30 days, except where legally required
- Transaction Records: Retained for 7 years for tax and legal compliance
- Audit Logs: Retained for 90 days for security purposes
6. Your Rights (GDPR)
As an EU resident, you have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Portability: Receive your data in a machine-readable format
- Restriction: Limit how we process your data
- Objection: Object to processing based on legitimate interests
- Withdraw Consent: Where processing is based on consent
To exercise these rights, go to Settings → Privacy or contact us at [email protected].
7. Data Security
We implement appropriate security measures including:
- Encryption of data in transit (TLS) and at rest
- Secure password hashing (bcrypt)
- Regular security audits
- Access controls and authentication
- EU-based data centers
8. International Transfers
Your data is primarily stored in the European Union. If we transfer data outside the EU, we ensure appropriate safeguards are in place (Standard Contractual Clauses or adequacy decisions).
9. Children's Privacy
Our platform is not intended for users under 18 years of age. We do not knowingly collect data from minors.
10. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or platform notification.
11. Contact Us
For privacy-related inquiries:
- Email: [email protected]
- Data Protection Officer: [email protected]
12. Supervisory Authority
You have the right to lodge a complaint with your local data protection authority if you believe your rights have been violated.