Privacy Policy
Last Updated: January 6, 2025
This Privacy Policy describes how Spatula Labs LLC ("we," "our," or "us") collects, uses, and protects your personal information when you use Reveal The Winner (the "Service"). By using our Service, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
1.1 Account Information
When you create an account, we collect:
- Email address (used for login and communication)
- First name and last name
- Password (stored securely using industry-standard encryption)
- Email marketing preferences
1.2 Contest Information
When you create or participate in contests, we collect:
- Contest names, descriptions, and settings
- Entry information (names, descriptions, owner names)
- Judge information (names, email addresses, judge codes)
- Scoring data and results
1.3 Payment Information
For paid services, we process payments through Stripe. We collect:
- Payment amounts and transaction IDs
- Subscription information
- Billing history
Note: We do not store credit card numbers or full payment card details. All payment processing is handled securely by Stripe.
1.4 Usage Information
We automatically collect certain information when you use our Service:
- IP address
- Browser type and version
- Device information
- Usage patterns and feature interactions
- Error logs and performance data
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our Service
- Process and manage contest creation and participation
- Send contest invitations and notifications
- Process payments and manage subscriptions
- Send important service updates and announcements
- Respond to your inquiries and provide customer support
- Detect, prevent, and address technical issues
- Comply with legal obligations
3. Data Sharing and Disclosure
We do not sell your personal information. We may share your information only in the following circumstances:
3.1 Service Providers
We use trusted third-party service providers to help us operate our Service:
- Stripe: Payment processing (see Stripe's privacy policy)
- Mailgun: Email delivery services
- DigitalOcean: Cloud hosting and infrastructure
3.2 Legal Requirements
We may disclose your information if required by law or in response to valid legal requests, such as subpoenas or court orders.
3.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
4. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit (SSL/TLS)
- Secure password storage using industry-standard hashing algorithms
- Regular security assessments and updates
- Access controls and authentication mechanisms
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
5. Your Rights and Choices
5.1 Access and Portability
You have the right to access your personal information and receive a copy of your data in a portable format. You can access and update your account information through your account settings.
5.2 Correction and Updates
You can update your personal information at any time through your account settings or by contacting us.
5.3 Deletion
You have the right to request deletion of your personal information. To request data deletion, please contact us at [email protected]. We will process your request within 30 days, subject to legal and contractual obligations.
Note: Some information may be retained for legal, accounting, or security purposes even after account deletion.
5.4 Opt-Out of Marketing
You can opt-out of marketing emails at any time by:
- Updating your email preferences in your account settings
- Clicking the unsubscribe link in any marketing email
- Contacting us at [email protected]
5.5 California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to Know: You can request information about the categories and specific pieces of personal information we collect, use, and disclose.
- Right to Delete: You can request deletion of your personal information (subject to certain exceptions).
- Right to Opt-Out: You can opt-out of the sale of personal information (we do not sell personal information).
- Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
To exercise your California privacy rights, please contact us at [email protected].
5.6 European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):
- Right of Access: You can request access to your personal data.
- Right to Rectification: You can request correction of inaccurate or incomplete data.
- Right to Erasure: You can request deletion of your personal data ("right to be forgotten").
- Right to Restrict Processing: You can request restriction of processing in certain circumstances.
- Right to Data Portability: You can receive your data in a structured, commonly used format.
- Right to Object: You can object to processing of your personal data for certain purposes.
- Right to Withdraw Consent: Where processing is based on consent, you can withdraw consent at any time.
To exercise your GDPR rights, please contact us at [email protected]. We will respond to your request within one month.
6. Data Retention
We retain your personal information for as long as necessary to provide our Service and fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. When you delete your account, we will delete or anonymize your personal information, except where we are required to retain it for legal, accounting, or security purposes.
7. Children's Privacy
Our Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately at [email protected], and we will take steps to delete such information.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country. We take appropriate safeguards to ensure that your personal information receives an adequate level of protection.
9. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to track activity on our Service and hold certain information. Cookies are files with a small amount of data that may include an anonymous unique identifier. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.
10. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. You are advised to review this Privacy Policy periodically for any changes.
11. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your privacy rights, please contact us: