Privacy Policy

1. Introduction

Protecting your personal data is important to us. This privacy policy explains how we collect, process, and use your data when you use our social networking platform powered by WoWonder, including third-party services such as Google and Facebook.


2. Data Controller

The responsible entity under GDPR is:

[Company Name]
[Address]
[Email Address]
[Phone - optional]


3. Types of Data Processed

We collect and process the following personal data:

  • Registration data (name, email, encrypted password)

  • Profile data (profile picture, gender, birthdate, location)

  • Activity data (posts, likes, comments, group memberships)

  • Communication data (messages, chats)

  • Media uploads (photos, videos, files)

  • Relationship data (friend requests, followers)

  • Technical data (IP address, browser, device info, referrer)

  • Payment data (for premium features)

  • Third-party login data (Google, Facebook)

  • Usage data (analytics via Google Analytics or Matomo)


4. Purpose and Legal Basis

Purposes:

  • Operating and managing user accounts

  • Displaying content and facilitating social interactions

  • Internal communication (messenger, comments)

  • Security and abuse prevention

  • Advertising (Google AdSense)

  • Usage analysis (e.g., Matomo or Google Analytics)

Legal bases:

  • Art. 6(1)(b) GDPR (contract)

  • Art. 6(1)(f) GDPR (legitimate interests)

  • Art. 6(1)(a) GDPR (consent, e.g., cookies)


5. Third-Party Login (Google / Facebook)

You can log in via Google or Facebook accounts. We receive the following data from these providers:

  • First and last name

  • Email address

  • Profile picture (optional)

  • Provider-specific user ID

Authentication is handled by the provider; their privacy policies apply:


6. Advertising with Google AdSense

We use Google AdSense to display ads. Google uses cookies to deliver personalized ads and may collect data such as:

  • IP address

  • Device and browser information

  • Approximate location

  • User behavior (visited pages, interests)

Your consent under Art. 6(1)(a) GDPR is required and obtained via our cookie banner.

More info: https://policies.google.com/technologies/ads


7. Web Fonts (Google Fonts)

To ensure consistent font display, we use Google Fonts. Fonts are embedded locally for GDPR compliance, so no data is sent to Google servers. If externally loaded, Google’s privacy policies apply.


8. Analytics Tools

a) Google Analytics (if used):
Uses cookies to analyze platform usage, collecting anonymized IPs and behavior data, which are sent to Google servers in the USA.

b) Matomo (alternative):
If self-hosted, no data is transferred abroad, and IPs are anonymized.

Consent (Art. 6(1)(a) GDPR) is required for cookie usage. Some processing may rely on legitimate interests (Art. 6(1)(f) GDPR).


9. Internal Communication (Messenger, Comments, Posts)

Your posts, comments, likes, and private messages are stored on our servers and visible depending on your privacy settings. Private messages are accessible only to sender and receiver.


10. Cookies

Upon first visiting, you can accept or reject cookies via a banner. Categories include:

  • Essential cookies (login, session)

  • Functional cookies (language, settings)

  • Statistics cookies (e.g., Google Analytics)

  • Marketing cookies (e.g., Google AdSense)

You can modify your choices anytime via cookie settings.


11. Hosting & Server Location

Our servers are located in [e.g., Germany or EU country]. The hosting provider processes data only on our instructions (GDPR Art. 28).


12. Data Retention

  • Account data stored while active

  • Content retained until deletion

  • Payment data kept up to 10 years for legal obligations

  • Data deleted or anonymized after account closure


13. Your Rights

You may exercise the following rights at any time:

  • Access your data (Art. 15 GDPR)

  • Correct inaccuracies (Art. 16 GDPR)

  • Request deletion (Art. 17 GDPR)

  • Restrict processing (Art. 18 GDPR)

  • Data portability (Art. 20 GDPR)

  • Object to processing (Art. 21 GDPR)

  • Withdraw consent (Art. 7(3) GDPR)

Contact us at: [Email address]


14. Complaints

You have the right to lodge a complaint with a data protection authority, e.g.:

Federal Commissioner for Data Protection and Freedom of Information (BfDI)
https://www.bfdi.bund.de


15. Changes to This Privacy Policy

We reserve the right to update this policy as needed. The current version is always available on our platform.