1. Who We Are
Ramblify (https://ramlify.com) is a travel social network that connects explorers worldwide. We prioritize your privacy and transparency in how we handle your data.
2. Data We Collect & Why
A. Account & Profile Information
When you register, we collect your name, email, username, and profile details (e.g., bio, travel preferences) to personalize your experience.
Optional data: Profile photos, location, or linked social media accounts (used only with your consent).
B. User-Generated Content
Comments/Posts: We store your text, images, or videos (plus metadata like timestamps) to display on the platform.
Note: Avoid uploading images with embedded GPS data; others may extract location details.
Cookies: We use cookies to save login sessions, preferences, and combat spam (e.g., retaining comment drafts for convenience).
C. Automated Data
Analytics: We collect anonymized data (e.g., device type, browser) to improve Ramblify.
Spam Protection: Comments may be screened via third-party tools (like Akismet), which check for spam using IP addresses and user-agent strings.
D. Embedded Content
Videos, maps, or links from sites like YouTube may track your interaction as if you visited their site directly.
3. Data Sharing & Retention
We never sell your data. Limited sharing occurs only for:
Service providers (e.g., hosting, analytics).
Legal compliance (if required by law).
Retention:
Comments/posts remain until deleted by you or for legal reasons.
Account data is stored until you delete it (via [Settings] or by request).
4. Your Rights Under GDPR (For EU Users)
Under the General Data Protection Regulation (GDPR), EU residents have additional rights:
Right to Access & Portability: Request a copy of your data in a machine-readable format.
Right to Rectification: Update inaccurate or incomplete personal data.
Right to Erasure (“Right to Be Forgotten”): Ask us to delete your data, with some exceptions (e.g., legal obligations).
Right to Restrict Processing: Limit how we use your data (e.g., while disputing accuracy).
Right to Object: Opt out of data processing for direct marketing or legitimate interests.
Right to Withdraw Consent: Revoke permissions (e.g., email newsletters) at any time.
To exercise these rights, contact us at [GDPR@ramlify.com]. We respond within 30 days.
5. International Data Transfers
Ramblify operates globally. If your data is transferred outside the EU, we ensure safeguards like:
Standard Contractual Clauses (SCCs) with third-party vendors.
Adequacy Decisions (for countries with EU-approved privacy laws).
6. Your Rights (All Users)
You can also: Access, edit, or delete your profile data.
Opt out of cookies via browser settings.
Contact us at: [Privacy@ramlify.com] or visit our [Help Center].
7. Security & Transparency
Protection: Encryption, secure servers, and regular audits.
Breach Response: Immediate notification if your data is at risk (within 72 hours for EU users under GDPR).
Updates: We’ll notify users of significant policy changes.
Key GDPR Additions:
Dedicated GDPR section with explicit rights (Article 15–21).
International data transfer clarity (Article 44–49).
DPO contact for EU users (Article 37).
72-hour breach notification (Article 33).
Let me know if you’d like to add:
A “Legal Basis for Processing” table (Article 6 compliance).
Cookie consent banner details (ePrivacy Directive).
Age restrictions (e.g., 16+ for EU users under Article 8).
