This Privacy Policy explains how we collect, use, store, and protect your personal information when you use the Astropal.co.uk website (the "Site") and its online forum (the "Service"). We are committed to protecting your privacy and handling your data in compliance with the **UK General Data Protection Regulation (UK GDPR)** and the **Data Protection Act 2018**.
We operate as the data controller for the personal data we process.
By using the Service, you agree to the practices described in this Privacy Policy. If you do not agree, please do not use the Service.
1. Information We Collect
We collect the following types of personal data:
- **Information you provide directly**:
- When registering an account: email address, username, and any optional profile information (e.g., location in London, interests).
- When posting or interacting on the forum: any content you submit, including text, images, or links.
- If you contact us: any details you provide in messages.
- **Automatically collected information**:
- IP address, browser type, device information, and approximate location (derived from IP).
- Usage data: pages viewed, time spent on the Site, and referral sources.
- Cookies and similar technologies: We may use essential cookies for site functionality (e.g., login sessions) and analytics cookies (if enabled) to understand how the Service is used.
We do not collect special category data (e.g., health, ethnicity) unless you voluntarily post it in the forum, in which case you are responsible for that content.
2. How We Use Your Information
We process your personal data for the following purposes, based on these lawful bases:
- **To provide and maintain the Service** (contractual necessity): Creating and managing your account, enabling posts and interactions, moderating content.
- **To improve the Service** (legitimate interests): Analysing usage to enhance features, fix issues, and ensure security.
- **To communicate with you** (contractual necessity or consent): Sending service updates, responses to queries, or notifications (you can opt out).
- **To comply with legal obligations**: Preventing illegal activity, responding to lawful requests.
- **For security and moderation** (legitimate interests): Detecting spam, abuse, or violations of our Terms.
We do not use your data for automated decision-making or profiling.
3. Sharing Your Information
We do not sell your personal data. We may share it with:
- **Service providers**: Hosting providers, analytics tools (e.g., Google Analytics, if used), or moderation tools – all under contracts requiring UK GDPR compliance.
- **Law enforcement**: If required by law or to protect our rights/safety.
- **In a business transfer**: If we are involved in a merger or sale.
User content (posts) is visible to other registered users or publicly (depending on forum settings).
4. Data Retention
We keep your personal data only as long as necessary:
- Account data: While your account is active, or longer if needed for legal reasons.
- Posts and content: Indefinitely, unless you request deletion or we remove it for policy violations.
- Logs and analytics: Up to 26 months.
You can request deletion at any time (see your rights below).
5. International Transfers
Our servers are located in the UK or EU. If we use providers outside the UK/EEA, we ensure appropriate safeguards (e.g., UK International Data Transfer Agreement or adequacy decisions).
6. Cookies and Tracking
We use essential cookies for core functionality. For non-essential cookies (e.g., analytics), we obtain your consent via a cookie banner. You can manage preferences in your browser settings.
7. Your Rights
Under UK GDPR, you have the right to:
- Access your personal data.
- Rectify inaccurate data.
- Erase your data (right to be forgotten, subject to exceptions).
- Restrict or object to processing.
- Data portability.
- Withdraw consent (where applicable).
- Complain to the Information Commissioner's Office (ICO) at ico.org.uk.
To exercise these rights, contact us using the details below. We respond within one month.
8. Security
We implement appropriate technical and organisational measures to protect your data, such as encryption and access controls. However, no online service is 100% secure.
9. Children's Privacy
The Service is not intended for anyone under 18. We do not knowingly collect data from children.
10. Changes to This Policy
We may update this Privacy Policy. Significant changes will be notified via the Site or email. Continued use constitutes acceptance.
11. Contact Us
If you have questions or wish to exercise your rights, contact us at: hello@astropal.co.uk
Data Controller: Astropal.co.uk