Privacy Policy

Effective Date: 20.12.24

Last Updated: 20.12.24

At Fiducia.gg, we are deeply committed to protecting the privacy and security of our users, especially as we provide services involving the processing, management, and deletion of sensitive data, as well as automated direct messaging (Auto-DM) capabilities. This Privacy Policy describes how we collect, use, share, and protect your personal data when you use our AI-powered tool designed to identify and delete content that may violate applicable guidelines and user-defined parameters, and communicate with followers through automated messaging functionalities. The policy also details your rights under relevant German and European data protection laws, including the General Data Protection Regulation (GDPR), and applicable U.S. state privacy laws.


1. Data Controller Information

The data controller responsible for the processing of your personal data is:

Fiducia.gg

Address: Gstaller Weg 36

Phone Number: +491716286146

Email Address: support@mg.fiducia.gg

Data Protection Officer (DPO) Contact: ferdi@mg.fiducia.gg

Our appointed Data Protection Officer ensures compliance with data protection laws and can address any concerns or queries you may have.


2. Definitions

  • Personal Data: Any information that relates to an identified or identifiable individual.
  • Processing: Any operation or set of operations performed on personal data, such as collection, use, storage, and deletion.
  • Sensitive Data: Personal data that reveals racial or ethnic origin, political opinions, religious beliefs, trade union membership, genetic data, biometric data, data concerning health, or data concerning a person's sex life or sexual orientation.

3. Types of Data We Collect

a. User-Provided Data

When you interact with our AI tool, you may provide the following personal data:

  • Registration Data: Name, email address, telephone number, and other information needed to create and maintain your account.
  • Content Data: Data that you input into our AI tool, including text, documents, images, and any content requiring processing or deletion.
  • Communication Data: Information shared during interactions with our support team or in feedback submissions.

b. Automatically Collected Data

When you use our services, we may automatically collect:

  • Usage Data: Information about how you use our tool, including logs, timestamps, and session data.
  • Device Data: Information about your device, including IP address, device type, operating system, and browser type.

c. Sensitive Data

Our AI tool may process sensitive data on your behalf, including but not limited to confidential business documents, sensitive communications, or private information. Processing of such data is limited to the purposes outlined herein and adheres to the highest standards of confidentiality and security.


4. Purposes of Data Processing

We process personal data for the following purposes:

  • Service Provision and Functionality: To operate, manage, and improve our AI tool and associated services. This includes processing data to identify and delete specific user content per your instructions.
  • Compliance with Legal and Regulatory Obligations: To retain and process data as required by applicable laws, regulations, or government requests.
  • Performance Analytics and Service Improvements: To analyze user interactions and improve service performance and user experience.
  • Security and Fraud Prevention: To detect, prevent, and mitigate security threats, fraud, or any misuse of our tool.
  • Communication and Support: To communicate with you about our services, provide support, and respond to inquiries.

5. Legal Basis for Data Processing

The processing of your personal data is justified by one or more of the following legal bases:

  • Contractual Obligation: Processing is necessary for the performance of a contract to which you are a party.
  • Legitimate Interests: We have legitimate interests in providing and improving our services, ensuring security, and preventing misuse.
  • Legal Obligations: Processing is necessary for compliance with our legal obligations.
  • Consent: Where applicable, we rely on your explicit consent for specific processing activities, which can be withdrawn at any time.

6. Automated Decision-Making and Profiling

Our services include automated decision-making processes, such as identifying and deleting content that violates predefined parameters or sending automated messages to your followers.

  • Logic of Decision-Making: Automated decisions are based on AI algorithms that analyze content against user-defined criteria and guidelines. For example, the AI may scan content for prohibited keywords or patterns that match violation criteria.
  • Impact on Users: Automated deletions or Auto-DMs streamline content moderation and communication processes. Users have full control over the parameters and can review and modify these settings at any time.
  • Your Rights: You have the right to request human intervention, express your views, or contest the outcome of automated decisions. To do so, please contact us at support@mg.fiducia.gg

7. Data Retention Policy

We retain personal data only as long as necessary to fulfill the purposes outlined in this policy or as required by law.

  • Content Data: Deleted content is removed permanently from our systems within 30 days after deletion.
  • Registration Data: Retained for the duration of your account and for an additional period of 3 years following account termination for legal compliance and record-keeping.
  • Communication Data: Retained for 2 years unless otherwise required by law.
  • Backup Data: Backups are retained for 90 days and are deleted in accordance with secure deletion protocols.

8. Sharing of Personal Data

We do not disclose personal data to third parties, except under the following conditions:

a. Service Providers

We engage trusted service providers to perform functions and provide services to us, such as hosting, data analytics, and customer support. These providers process data strictly on our behalf and under data processing agreements (DPAs).

b. Legal Obligations and Protection of Rights

We may disclose personal data when required by law, court orders, or to protect the rights, property, or safety of our users or the public.

c. Corporate Transactions

In the event of a merger, acquisition, or sale of assets, your personal data may be transferred to the involved parties. You will be notified of any such change in ownership or control of your personal data.


9. Data Security Measures

We employ robust measures to protect your data against unauthorized access, alteration, disclosure, or destruction.

  • Encryption: All data in transit is protected using Transport Layer Security (TLS), and sensitive data at rest is encrypted using industry-standard encryption algorithms.
  • Access Controls: We implement strict role-based access controls, ensuring that only authorized personnel with a legitimate need can access personal data.
  • Security Audits: Regular security assessments and audits are conducted to identify and address potential vulnerabilities.
  • Incident Response: We have a detailed incident response plan to address any data breaches or security incidents promptly and effectively.

10. Rights of Data Subjects

Under the GDPR, you have the following rights regarding your personal data:

  • Access: Request confirmation of whether we are processing your personal data and access to that data.
  • Rectification: Request correction of inaccurate or incomplete personal data.
  • Erasure ("Right to be Forgotten"): Request deletion of your personal data under certain conditions.
  • Restriction: Request restriction of processing your personal data under certain circumstances.
  • Data Portability: Receive your personal data in a structured, commonly used, and machine-readable format, and have it transmitted to another controller where technically feasible.
  • Objection: Object to the processing of your personal data based on our legitimate interests.
  • Withdraw Consent: Where processing is based on consent, you have the right to withdraw your consent at any time.
  • Complaint: Lodge a complaint with a supervisory authority if you believe we are not complying with data protection laws.

To exercise your rights, please contact us at support@mg.fiducia.gg. We may need to verify your identity before fulfilling your request.

Supervisory Authority Contact:

Bavarian Data Protection Authority (BayLDA)

Promenade 18 (Schloss), 91522 Ansbach, Germany

Phone: +49 (0) 981 180093-0

Email: poststelle@lda.bayern.de


12. Protection of Minors

Our services are not intended for individuals under the age of 16. We do not knowingly collect personal data from children under 16 without verifiable parental consent, in compliance with GDPR and applicable U.S. laws such as the Children's Online Privacy Protection Act (COPPA). If we become aware that we have collected personal data from a child under the age of 16 without parental consent, we will take steps to delete such information promptly. If you believe that we might have any information from or about a child under 16, please contact us at ferdi@mg.fiducia.gg.


13. Changes to This Privacy Policy

We may update this policy to reflect changes in our practices or legal requirements. We will post any updates on this page, and significant changes may be communicated directly to you via email or through our services.

Last Updated: 20.12.24


14. International Data Transfers

We may transfer your personal data to countries outside the European Economic Area (EEA), including to the United States, where our servers or service providers are located.

When transferring data outside the EEA, we ensure appropriate safeguards are in place to protect your personal data, such as:

  • Standard Contractual Clauses (SCCs): We use approved contractual clauses which ensure data protection.
  • Adequacy Decisions: We rely on adequacy decisions from the European Commission where applicable.

You may request a copy of the appropriate safeguards by contacting us at support@mg.fiducia.gg.


15. U.S. State Privacy Rights

If you are a resident of certain U.S. states with privacy laws (e.g., California, Colorado, Virginia), you may have additional rights regarding your personal data:

  • Access and Portability: Request details of the personal data we collect about you and how we use, share, or disclose it.
  • Correction and Deletion: Request correction of inaccuracies or deletion of personal data, subject to exceptions.
  • Opt-Out Rights: Opt out of certain uses of your personal data, including targeted advertising or the "sale" of your personal information, as defined under applicable laws.
  • Non-Discrimination: We will not discriminate against you for exercising these rights.

To exercise these rights, please contact us at support@mg.fiducia.gg.


16. Data Breach Notification

In the event of a data breach compromising your personal data, we will notify you and the relevant supervisory authority without undue delay, in accordance with GDPR Articles 33 and 34.


17. Third-Party Processors

We may utilize third-party processors to assist in providing our services. We ensure all processors comply with GDPR requirements and enter into Data Processing Agreements (DPAs) with them. Categories of processors may include:

  • Hosting Providers
  • Analytics Services
  • Customer Support Platforms

A full list of our processors can be provided upon request.


18. Withdrawal of Consent

Where we rely on your consent to process personal data, you have the right to withdraw that consent at any time.

To withdraw your consent, you can:

Please note that withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.


19. Language Version

This Privacy Policy is available in German and English. In the event of any inconsistency between the two versions, the German version shall prevail.


20. How to contact us

If you require any more information or have any questions about our privacy policy, please feel free to contact us by email at support@mg.fiducia.gg.