supasecret

Privacy Policy

Last updated: November 30, 2025

1. Introduction

At supasecret.com, we are committed to protecting your privacy and handling your data with transparency and care. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website and the Space Hunter application.

Legal Basis for Processing: We process your personal data based on: (a) contractual necessity to deliver our services, (b) our legitimate interests in operating and improving our products, preventing fraud, and ensuring security, and (c) your consent where required by law (such as for marketing communications).

2. Information We Collect

2.1 Information You Provide

  • Purchase Information: When you buy a license, we collect your email address and billing information through our payment processor, LemonSqueezy
  • Contact Information: Email address when you contact us at [email protected]
  • License Information: License keys and associated account details for validation purposes

2.2 Automatically Collected Information

  • Usage Analytics: We collect analytics data including IP addresses, country information, and usage patterns to understand how our services are used. For detailed technical information about what analytics data is collected, see our Analytics Documentation
  • Technical Information: Browser type, operating system version, device information, and app version
  • License Validation Data: When Space Hunter validates your license, we log the validation request including timestamp and device information

2.3 Information We Do NOT Collect

Space Hunter does not scan, collect, or transmit any of your personal files or file system data. The application operates locally on your device, and file analysis happens entirely on your machine.

3. How We Use Your Information

We use the collected information for the following purposes:

  • Service Delivery: To provide, maintain, and improve Space Hunter and our website
  • License Management: To validate software licenses and prevent unauthorized use
  • Customer Support: To respond to your inquiries and provide technical assistance
  • Analytics: To understand usage patterns, improve user experience, and make data-driven decisions
  • Payment Processing: To process transactions and send purchase confirmations
  • Security: To detect, prevent, and address fraud, abuse, and security issues
  • Legal Compliance: To comply with legal obligations and enforce our Terms of Service

4. Data Storage and Security

We implement industry-standard security measures to protect your data:

  • Database Security: Our database is secured with encryption and access controls
  • Secure Transmission: All data transmitted between your device and our servers uses TLS/SSL encryption (HTTPS)
  • License Encryption: License keys are cryptographically signed using RSA encryption
  • Access Controls: Only authorized personnel have access to user data, and access is logged
  • Infrastructure: Our servers are hosted on secure, monitored infrastructure with technical, physical, and logical safeguards
  • Breach Notification: In the event of a data breach, we will notify affected users and relevant authorities as required by applicable law

While we implement strong security measures, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security but strive to use commercially acceptable means to protect your data. You are responsible for securing data stored locally on your device.

5. Third-Party Services

We use the following third-party services that may collect or process your data:

5.1 LemonSqueezy (Payment Processing)

All payment transactions are processed by LemonSqueezy. We do not store credit card information on our servers. LemonSqueezy's privacy policy governs the handling of your payment data. Visit LemonSqueezy Privacy Policy for more information.

6. Data Retention

We retain your data for as long as necessary to provide our services and comply with legal obligations:

  • License Data: Retained for the duration of your license period
  • Analytics Data: Aggregated analytics data is retained indefinitely; individual event data is retained for 2 years
  • Account Deletion: Upon request or account termination, we will delete your personal data within 30 days, except where retention is required for legitimate business interests (such as fraud prevention) or legal obligations

7. Your Rights

You have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your personal data (subject to legal retention requirements)
  • Portability: Request your data be transferred to another service in a machine-readable format
  • Opt-Out: Opt out of analytics collection (see Analytics Documentation for instructions) and marketing communications by contacting us or using unsubscribe links
  • Objection: Object to processing of your data for specific purposes based on legitimate interests
  • Withdraw Consent: Where processing is based on consent, you may withdraw it at any time
  • Lodge Complaints: If you are in the EEA/UK, you have the right to lodge a complaint with your local data protection supervisory authority

To exercise any of these rights, contact us at [email protected]. We will respond to your request within 30 days (or as required by applicable law).

8. Data Sharing and Disclosure

We do not sell, rent, or trade your personal information to third parties. We do not share your personal data with third parties for their own advertising purposes. We may share your data only in the following circumstances:

  • Service Providers: With trusted service providers (like LemonSqueezy for payment processing, hosting providers, and analytics services) who help us operate our business under data processing agreements
  • Legal Requirements: When required by law, court order, or government request, or to comply with legal process
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, with notice to affected users
  • Protection: To protect our rights, property, safety, or that of our users, including fraud detection and prevention

Third-party service providers are contractually obligated to protect your data and may only use it for the purposes we specify.

9. Cookies and Tracking

Our website does not currently use cookies for tracking purposes. We use server-side analytics to collect usage data. If we implement cookies in the future, we will update this policy and provide appropriate notice.

10. Children's Privacy

Space Hunter and our services are not directed at children under 13 years of age (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect personal information from children. If we become aware that we have collected data from a child under the applicable age, we will delete it promptly. Parents and guardians should monitor their children's internet usage and help enforce this policy.

11. International Data Transfers

Your data may be transferred to and processed in countries other than your own, including but not limited to the United States. By using our services, you consent to the transfer of your data to these jurisdictions. We ensure that appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable data protection laws.

For transfers from the EEA/UK, we rely on appropriate transfer mechanisms such as Standard Contractual Clauses or adequacy decisions by the European Commission where applicable.

12. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of significant changes by:

  • Updating the "Last updated" date at the top of this page
  • Sending an email notification for material changes (if we have your email)
  • Displaying a notice on our website

Continued use of our services after changes are posted constitutes acceptance of the updated policy.

13. Marketing Communications

We may send you marketing communications about our products and services if you have consented to receive them or where permitted by law. You can opt out of marketing emails at any time by:

  • Clicking the "unsubscribe" link in any marketing email
  • Contacting us at [email protected]

Note that you may still receive transactional emails (such as license confirmations and support responses) even if you opt out of marketing communications.

14. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:

General Privacy Inquiries: [email protected]

Data Rights Requests: [email protected]

We take privacy concerns seriously and will respond to all legitimate requests within 30 days (or as required by applicable law).