Privacy policy
Last updated: 2026-07-06
Thanks for your interest in DADORI. Protecting your personal data matters to us. This policy explains how we process it under the GDPR.
1. Controller
[[Company name, address, email]] β see the legal notice.
2. Data we process
Account data: name, email, password (encrypted via Firebase Authentication).
Profile data: username (@handle), skills, interests, bio, region, languages, avatar, projects β as provided by you.
Usage & log data: IP address (security and coarse location for currency), timestamps, actions.
Payment data: paid plans are handled by Stripe. Card data is processed only by Stripe, never by us.
3. Purposes & legal bases
Contract performance (Art. 6(1)(b) GDPR): providing the account, profiles, matching and subscriptions.
Legitimate interest (Art. 6(1)(f) GDPR): security, abuse prevention, service improvement.
Consent (Art. 6(1)(a) GDPR): where you publish optional fields or accept optional cookies.
4. Public profiles
Your name and @handle, plus the fields you choose to share (skills, interests, bio, projects), are visible to other signed-in users and via your shared link. Visibility toggles let you control which fields are public.
5. Processors / third parties
Google Firebase (auth, Firestore, storage, hosting) β EU region (europe-west4).
Stripe (payments) β separate controller for payment data.
Anthropic (AI features) β only when you actively use AI features.
ipapi.co (coarse location/currency from IP).
6. Retention
We keep your data while your account exists. After deletion, personal data is deleted or anonymised unless statutory retention obligations apply.
7. Your rights
Access, rectification, erasure, restriction, portability and objection (Art. 15β21 GDPR), and the right to lodge a complaint with a supervisory authority.
Privacy requests: [[privacy@dadori.com]]
8. Cookies
We use essential cookies for login/session and a currency preference. Optional/analytics cookies are only set with your consent.