Privacy Policy
π Quick Navigation
1. Overview 2. Information We Collect 3. How We Use Your Information 4. Information Sharing 5. Cookies and Tracking 6. Data Security 7. Data Retention 8. Your Rights 9. Children's Privacy 10. International Data Transfers 11. Changes to This Policy 12. Contact Us1. Overview
FlagRiser ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services.
2. Information We Collect
2.1 Information You Provide Directly
Type of Data | Examples | Purpose |
---|---|---|
Payment Information | Card details, billing address | Process transactions via Stripe |
Contact Information | Email address (if provided) | Send receipts, respond to inquiries |
Competition Data | Flag selections, contribution amounts | Run the competition, update leaderboard |
2.2 Information Collected Automatically
- Device Information: Browser type, operating system, device type, screen resolution
- Usage Data: Pages viewed, time spent on site, click patterns, referring sites
- Location Data: Country and region (derived from IP address, not precise location)
- Log Data: IP address, access times, browser information
2.3 Information from Third Parties
- Stripe: Payment processing status and transaction confirmations
- Google Analytics: Aggregated usage statistics
- Social Media: Public profile information if you interact with our social accounts
3. How We Use Your Information
We use the collected information for the following purposes:
3.1 Service Provision
- Process your contributions and update flag positions
- Display real-time leaderboard updates
- Send payment confirmations and receipts
- Maintain competition integrity and prevent fraud
3.2 Communication
- Respond to your inquiries and support requests
- Send important updates about the service
- Notify winners and publish competition results
3.3 Improvement and Analytics
- Analyze usage patterns to improve user experience
- Test new features and functionality
- Generate aggregated statistics about the competition
- Create transparency reports about donations
3.4 Legal and Security
- Comply with legal obligations and regulations
- Detect and prevent fraudulent activities
- Enforce our Terms of Service
- Protect the rights and safety of users and the charity
6. Data Security
We implement industry-standard security measures to protect your information:
6.1 Technical Safeguards
- Encryption: All data transmitted is encrypted using SSL/TLS
- Secure Storage: Databases are encrypted at rest
- Access Controls: Limited access on a need-to-know basis
- Regular Updates: Security patches applied promptly
- PCI Compliance: Payment processing meets PCI-DSS standards via Stripe
6.2 Incident Response
In the event of a data breach:
- We will notify affected users within 72 hours
- We will cooperate with relevant authorities
- We will take immediate steps to secure the breach
- We will document and learn from the incident
7. Data Retention
We retain your information only as long as necessary for the purposes outlined in this policy:
Data Type | Retention Period | Reason |
---|---|---|
Transaction Records | 7 years | Legal and tax requirements |
Competition Data | Indefinitely (anonymized) | Historical records, transparency |
Support Communications | 2 years | Service improvement, dispute resolution |
Analytics Data | 26 months | Usage analysis, trends |
You may request deletion of your personal data at any time, subject to legal retention requirements.
8. Your Rights
8.1 GDPR Rights (European Union)
If you are in the European Union, you have the following rights:
π Right to Access
Request a copy of your personal data
βοΈ Right to Rectification
Correct inaccurate personal data
ποΈ Right to Erasure
Request deletion of your data
π¦ Right to Portability
Receive your data in a portable format
π« Right to Object
Object to certain processing activities
βΈοΈ Right to Restriction
Limit how we use your data
8.2 CCPA Rights (California)
If you are a California resident, you have the right to:
- Know what personal information we collect, use, and share
- Delete your personal information (with some exceptions)
- Opt-out of the sale of personal information (we don't sell data)
- Non-discrimination for exercising your privacy rights
8.3 How to Exercise Your Rights
To exercise any of these rights, please contact us using the information provided below. We will respond to your request within 30 days.
9. Children's Privacy
FlagRiser is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws than your country.
10.1 Safeguards
When we transfer data internationally, we ensure appropriate safeguards:
- Standard Contractual Clauses approved by the European Commission
- Ensuring recipients are in countries with adequate data protection laws
- Implementing appropriate technical and organizational measures
10.2 Your Consent
By using our service, you consent to the transfer of your information as described in this policy.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal reasons.
11.1 Notification of Changes
- Minor Changes: Posted on this page with updated "Last Modified" date
- Material Changes: Prominent notice on our website and/or email notification
11.2 Your Continued Use
Continued use of our service after changes constitutes acceptance of the updated policy. If you disagree with changes, please discontinue use of our service.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Data Protection Officer
Email us here
Website: flagriser.com
Response Time: Within 30 days for privacy-related requests
Supervisory Authority
EU residents have the right to lodge a complaint with their local supervisory authority if they believe their rights under GDPR have been violated.
π Your Privacy Matters
We're committed to protecting your data while supporting clean water access worldwide.