Privacy Policy
Last updated: June 25, 2026
This Privacy Policy explains what data myvue.click ("we," "us," or "our") collects, how we use it, and what choices you have.
1. Information we collect
- Account data: email address, account identifiers, and authentication metadata handled by Keycloak, our authentication provider.
- Profile content: display name, bio, avatar, username, themes, and links you choose to publish. Uploaded avatars are re-encoded to WebP and have embedded metadata (including any location or camera data) stripped before storage. Public profile content is public by design.
- Billing data: subscription status, customer IDs, billing-period dates, and related billing metadata from Stripe. Stripe processes payment card details; we do not store full card numbers.
- Product analytics: public profile views and link clicks, including timestamp, referrer, user agent, bot flag, and a salted hash of the visitor IP address. We do not store raw IP addresses in product analytics tables.
- Marketing analytics: we may use Umami on our own marketing pages to understand aggregate traffic. Umami is not used as the source of truth for creator profile analytics.
- Operational data: server logs, error reports, rate-limit data, and security events needed to run and protect the Service.
- Security and anti-abuse telemetry: we use a client-side security pixel on public profile pages, injected after page load, to detect automated crawlers, bots, and abuse. The pixel records a rotating-salt hash of the visitor's IP address (the salt changes periodically so older hashes cannot be reverse-engineered), a hash-derived fingerprint of browser headers (user-agent, accept headers, language, and client hints), the referring page, and a timestamp. This data is pseudonymous — it can correlate a browser across requests within a limited window, but it does not include your raw IP address, name, or contact information. We use it solely to detect and prevent abuse and to keep creator analytics honest. We retain these events for 90 days.
2. How we use information
We use information to:
- Provide, secure, and maintain the Service
- Authenticate users and protect accounts
- Display public profiles and redirect profile links
- Show profile-view and link-click analytics in the dashboard
- Process billing and subscription status through Stripe
- Detect abuse, investigate security issues, and enforce our Terms
- Improve our marketing pages and product experience
3. Cookies and tracking
We use essential cookies to keep you signed in and secure your session. Analytics cookies from Umami and Google Analytics 4 are only placed if you consent through our cookie banner. You can manage or withdraw consent at any time. See our Cookie Policy for details.
4. Service providers
We share data with service providers needed to operate the Service:
- Keycloak for authentication
- Stripe for payments and billing management
- S3-compatible object storage for avatar uploads
- VirusTotal for hash-based malware screening of uploaded avatars (when enabled) — only the file's cryptographic hash is transmitted, never the file itself
- Umami for optional marketing-page analytics
- Hosting and database providers used to run the application
We do not sell personal information.
5. Public profile pages and external links
Public profile pages and destination links are visible to visitors and may be collected, indexed, or cached by third parties. External destinations are controlled by their own operators and are subject to their own terms and privacy policies.
6. Data retention
We retain account and profile data while your account is active. Product analytics and operational logs are retained as needed for dashboard reporting, security, abuse prevention, and business operations. Security pixel events are retained for 90 days. If your account is deleted, some data may remain in backups or logs for a limited period before deletion through normal retention cycles.
7. Your choices
You can update profile content from your dashboard and manage billing through the billing portal. To request access, correction, deletion, or other privacy help, email privacy@myvue.click.
8. Children
The Service is not directed to anyone under 18. We do not knowingly collect personal information from minors.
9. Changes to this Policy
We may update this Policy from time to time. The updated version will be posted here with a new "Last updated" date.
10. Contact
Questions about this Policy? Email privacy@myvue.click.