Privacy Policy
Last updated: May 20, 2026
This Privacy Policy explains how infeeo.com ("Infeeo", "we", "us" or "our") collects, uses, stores, shares and protects personal data when you access or use our website, accounts, profiles, posts, comments, uploads, categories, votes, reactions, notifications and other platform features (together, the "Service").
This Privacy Policy applies to all visitors, registered users and other persons who interact with the Service.
1. Data Controller
The data controller responsible for the processing of personal data through this Service is:
[OPERATOR LEGAL NAME]
[OPERATOR ADDRESS]
Email: [PRIVACY EMAIL]
General contact: [CONTACT EMAIL]
If a data protection officer has been appointed, the contact details are:
Data Protection Officer: [DATA PROTECTION OFFICER EMAIL, IF APPLICABLE]
2. Summary
We process personal data only where there is a valid legal basis under applicable data protection law, especially the General Data Protection Regulation ("GDPR").
We use personal data to operate the Service, provide user accounts, display user content, enable posts and comments, process uploads, prevent abuse, secure the platform, communicate with users, comply with legal obligations and improve the Service.
We do not sell personal data.
3. Personal Data We Process
Depending on how you use the Service, we may process the following categories of personal data.
3.1 Account Data
When you create or use an account, we may process:
- username;
- display name;
- email address;
- password hash;
- profile image or avatar;
- profile text, bio or description;
- account settings;
- language or display preferences;
- registration date;
- last login date;
- account status, such as active, restricted, suspended or deleted.
3.2 User Content
When you use interactive features, we may process content that you submit, publish, upload or interact with, including:
- posts;
- post titles and text;
- comments and replies;
- uploaded images, videos or other media;
- external links;
- link previews;
- categories and tags;
- votes, reactions, boosts and bookmarks;
- reports and moderation requests;
- public profile information;
- timestamps and edit history where applicable.
3.3 Technical Data
When you access the Service, we may automatically process technical data, including:
- IP address;
- browser type and version;
- operating system;
- device type;
- screen size and display information;
- referrer URL;
- requested pages and files;
- date and time of access;
- HTTP status codes;
- error logs;
- security logs;
- session identifiers;
- cookie identifiers where applicable.
3.4 Usage Data
We may process information about how you use the Service, including:
- pages viewed;
- posts opened;
- comments created;
- media uploaded;
- votes, reactions and bookmarks;
- searches or filters used;
- categories viewed;
- login activity;
- security actions;
- feature usage;
- interaction with notifications or emails.
3.5 Communication Data
If you contact us, report content, submit an appeal or send a support request, we may process:
- your name or username;
- email address;
- message content;
- attachments;
- related account information;
- support history;
- metadata related to the communication.
3.6 Moderation and Safety Data
To keep the Service safe and enforce our Terms, we may process:
- reported content;
- report reasons;
- moderation decisions;
- appeals;
- account restrictions;
- spam or abuse signals;
- security logs;
- evidence of policy violations;
- technical indicators used to detect abuse.
3.7 Anonymous Posting Data
The Service may allow anonymous or reduced-identity posting. Anonymous posting means that your public identity may be hidden from other users.
However, we may still process account, technical, security and log information connected to anonymous activity where necessary to operate the Service, prevent abuse, enforce rules, protect users, comply with legal obligations or respond to lawful requests.
4. Purposes and Legal Bases
We process personal data only when we have a legal basis under the GDPR.
4.1 Providing the Service
We process account data, user content, technical data and usage data to create accounts, authenticate users, display profiles, publish posts, enable comments, process uploads, show feeds, manage categories and provide platform features.
Legal basis: performance of a contract or steps prior to entering into a contract under Article 6(1)(b) GDPR.
4.2 Account Management and Authentication
We process login data, session data, password hashes and account settings to identify users, maintain sessions, protect accounts and manage user access.
Legal basis: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR. Our legitimate interest is to provide secure account access and prevent misuse.
4.3 Public Display of User Content
If you publish posts, comments, profile information, images, links, tags or other content, we process this data to display it to other users or visitors according to the selected feature.
Legal basis: Article 6(1)(b) GDPR. In some cases, Article 6(1)(f) GDPR may also apply where processing is necessary for operating a public community platform.
4.4 Upload Processing
We process uploaded media to store, display, resize, compress, convert, moderate and secure uploaded files.
Legal basis: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR. Our legitimate interest is to provide upload features and protect the Service against unsafe files.
4.5 Security and Abuse Prevention
We process technical data, IP addresses, logs, reports, moderation data and account activity to detect, prevent and investigate spam, fraud, malware, attacks, unauthorized access, manipulation, harassment and violations of our Terms.
Legal basis: Article 6(1)(f) GDPR. Our legitimate interest is to protect users, accounts, infrastructure, content and the Service.
4.6 Legal Compliance
We may process personal data to comply with legal obligations, court orders, authority requests, data protection obligations, consumer protection obligations, accounting duties and other legal requirements.
Legal basis: Article 6(1)(c) GDPR.
4.7 Communication and Support
We process communication data to respond to questions, support requests, reports, complaints, appeals, legal notices and privacy requests.
Legal basis: Article 6(1)(b) GDPR where communication relates to the Service, Article 6(1)(c) GDPR where legally required, and Article 6(1)(f) GDPR for general communication and documentation.
4.8 Email Notifications
If the Service sends account-related or security-related emails, we process your email address and related account data to deliver those messages.
Legal basis: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR.
If we send optional marketing emails or newsletters, we will do so only where permitted by law, usually based on consent.
Legal basis for optional marketing: Article 6(1)(a) GDPR.
4.9 Consent-Based Processing
Some processing may be based on your consent, for example optional analytics, marketing cookies, newsletter subscriptions or certain third-party integrations.
Legal basis: Article 6(1)(a) GDPR.
You may withdraw consent at any time with effect for the future. Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.
4.10 Improving the Service
We may process limited usage and technical data to understand errors, performance, feature usage and platform quality.
Legal basis: Article 6(1)(f) GDPR. Our legitimate interest is to maintain and improve the Service.
5. Cookies, Local Storage and Similar Technologies
The Service may use cookies, local storage, session storage and similar technologies.
5.1 Necessary Technologies
Necessary cookies and storage technologies are used to provide essential functions, such as:
- login sessions;
- security protection;
- CSRF protection;
- remembering privacy choices;
- basic platform functionality;
- load balancing or technical stability.
Legal basis: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR.
5.2 Optional Analytics Cookies
We may use analytics cookies or similar technologies only if they are enabled and, where required, only after your consent.
Analytics may help us understand page views, technical errors, device types, performance and general usage patterns.
Legal basis: Article 6(1)(a) GDPR where consent is required.
5.3 Optional Marketing Cookies
We may use marketing or tracking cookies only if they are enabled and, where required, only after your consent.
Legal basis: Article 6(1)(a) GDPR.
5.4 Managing Cookie Choices
You can manage your cookie choices through the available cookie or privacy settings on the Service. You may also delete or block cookies through your browser settings.
Blocking necessary cookies may affect the functionality of the Service.
6. Server Logs
When you access the Service, our server or hosting provider may automatically create log files. These logs may include IP address, date and time of access, requested URL, referrer, browser information, device information, status codes and error data.
We use server logs for security, debugging, abuse prevention, system stability and legal compliance.
Legal basis: Article 6(1)(f) GDPR. Our legitimate interest is to ensure secure and reliable operation of the Service.
7. Hosting and Infrastructure
The Service is hosted by:
[HOSTING PROVIDER NAME]
[HOSTING PROVIDER ADDRESS OR COUNTRY]
The hosting provider may process technical data, server logs, files, databases, backups and other data necessary to operate the Service.
Legal basis: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR.
Where required, we have concluded a data processing agreement with the hosting provider.
8. Email Service Providers
If the Service sends emails, such as registration emails, login messages, password reset emails, notifications or support responses, we may use an email service provider.
Email provider:
[EMAIL PROVIDER NAME]
[EMAIL PROVIDER ADDRESS OR COUNTRY]
The email provider may process recipient email addresses, message content, technical delivery data and email logs.
Legal basis: Article 6(1)(b) GDPR, Article 6(1)(c) GDPR and Article 6(1)(f) GDPR, depending on the email type.
9. Analytics
The Service may use analytics tools only if configured and, where required, only with your consent.
Analytics provider:
[ANALYTICS PROVIDER NAME, IF USED]
[ANALYTICS PROVIDER ADDRESS OR COUNTRY]
Analytics tools may process usage data, device data, browser data, approximate location based on IP address, pages viewed, events and timestamps.
Legal basis: Article 6(1)(a) GDPR where consent is required.
If analytics are not used, this section does not apply.
10. External Links and Link Previews
Users may post external links. The Service may generate link previews by retrieving publicly available metadata from the linked website, such as title, description, image and domain.
If you click an external link, the third-party website may process your personal data under its own privacy policy. We are not responsible for the privacy practices of third-party websites.
Legal basis for link preview processing: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR. Our legitimate interest is to provide useful previews and improve platform usability.
11. Embedded Content
The Service may display embedded content from third-party websites only where such features are implemented.
Embedded content may behave as if you visited the third-party website directly. The third party may collect data, use cookies, track interactions or combine information with your account on that third-party service.
Where required, embedded third-party content will be loaded only after consent or user interaction.
Legal basis: Article 6(1)(a) GDPR where consent is required, or Article 6(1)(f) GDPR where legally permitted and technically necessary.
12. Public Content
Content you publish publicly may be visible to other users, visitors, search engines and third-party services.
Public content may include:
- username;
- display name;
- profile image;
- posts;
- comments;
- uploaded media;
- links;
- categories and tags;
- votes or reactions where publicly displayed;
- timestamps.
Do not publish personal, confidential or sensitive information that you do not want to be public.
13. Categories, Tags, Votes and Interactions
We process categories, tags, votes, reactions, boosts, bookmarks and similar interaction data to operate community features, organize content, show feeds, rank posts, prevent manipulation and improve user experience.
Legal basis: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR.
14. Moderation, Reports and Safety Enforcement
We process reports, reported content, account data, technical data, moderation decisions and related communication to review violations, remove illegal or harmful content, restrict abusive accounts, handle appeals and protect the Service.
Legal basis: Article 6(1)(c) GDPR where legally required and Article 6(1)(f) GDPR for safety, moderation and abuse prevention.
Moderation may be performed manually, automatically or through a combination of both.
15. Automated Processing and Recommendations
The Service may use automated technical processes to organize feeds, detect spam, suggest categories, sort comments, display trending content, recommend content or identify suspicious activity.
Such processing may use signals such as:
- post age;
- categories;
- tags;
- votes;
- comments;
- views;
- reports;
- account activity;
- technical security signals.
Unless expressly stated otherwise, these processes do not produce legal effects concerning you or similarly significant effects within the meaning of Article 22 GDPR.
Legal basis: Article 6(1)(b) GDPR and Article 6(1)(f) GDPR.
16. Recipients of Personal Data
We may share personal data with the following categories of recipients where necessary:
- hosting providers;
- database and storage providers;
- email service providers;
- security and anti-abuse providers;
- analytics providers, if used and permitted;
- cookie consent providers, if used;
- payment providers, if paid features are introduced;
- legal advisors, tax advisors or auditors;
- public authorities, courts or law enforcement where legally required;
- other users and visitors where you publish public content.
We only share personal data where there is a valid legal basis and where sharing is necessary for the relevant purpose.
17. Processors
Where service providers process personal data on our behalf, they act as processors under Article 28 GDPR.
Where required, we enter into data processing agreements with such providers to ensure that personal data is processed only according to our instructions and protected by appropriate technical and organizational measures.
18. International Data Transfers
We try to process personal data within the European Union or European Economic Area where possible.
If personal data is transferred to countries outside the EU or EEA, we ensure that appropriate safeguards are in place, such as:
- an adequacy decision by the European Commission;
- EU Standard Contractual Clauses;
- additional technical and organizational safeguards where required;
- another valid transfer mechanism under the GDPR.
International transfers may occur if we use providers located outside the EU or EEA or if data is accessed from outside the EU or EEA.
19. Data Retention
We store personal data only for as long as necessary for the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.
Retention periods may vary depending on the type of data and purpose.
- Account data: stored while your account exists and for a limited period after deletion where necessary for legal, security or fraud-prevention purposes.
- Public content: stored until deleted by you or removed by us, unless retention is required for legal, moderation, backup or security purposes.
- Comments and posts: stored while published and for a limited period after deletion where necessary for backups, moderation, disputes or legal compliance.
- Uploaded media: stored while attached to published or stored content and for a limited backup period after deletion.
- Server logs: usually stored for [SERVER LOG RETENTION PERIOD], unless longer retention is necessary for security incidents, abuse prevention or legal obligations.
- Security logs: stored for [SECURITY LOG RETENTION PERIOD], depending on risk, abuse patterns and legal requirements.
- Support messages: stored for [SUPPORT RETENTION PERIOD] to handle requests and document communication.
- Legal records: stored for the period required by applicable law.
- Backups: deleted or overwritten according to our backup cycle, usually within [BACKUP RETENTION PERIOD].
If exact deletion is not immediately possible because data is stored in backups, the data will be isolated from active systems and deleted or overwritten according to the backup cycle.
20. Account Deletion
You may request deletion of your account through available account tools or by contacting us at: [PRIVACY EMAIL]
After account deletion, we may delete, anonymize or restrict personal data unless retention is necessary for:
- legal obligations;
- security and abuse prevention;
- fraud prevention;
- defending legal claims;
- moderation records;
- backup restoration control;
- protecting rights of other users or third parties.
Public content may be removed, anonymized or retained depending on the feature, legal requirements and technical limitations.
21. Your Rights Under the GDPR
If the GDPR applies, you have the following rights, subject to legal requirements and limitations.
21.1 Right of Access
You have the right to request confirmation whether we process personal data about you and to receive access to that data and related information.
21.2 Right to Rectification
You have the right to request correction of inaccurate personal data and completion of incomplete personal data.
21.3 Right to Erasure
You have the right to request deletion of your personal data where the legal requirements are met.
21.4 Right to Restriction of Processing
You have the right to request restriction of processing where the legal requirements are met.
21.5 Right to Data Portability
Where processing is based on consent or contract and carried out by automated means, you may have the right to receive your personal data in a structured, commonly used and machine-readable format.
21.6 Right to Object
You have the right to object to processing based on Article 6(1)(e) or Article 6(1)(f) GDPR on grounds relating to your particular situation.
If you object, we will no longer process the personal data unless we demonstrate compelling legitimate grounds for the processing that override your interests, rights and freedoms, or unless processing is necessary for legal claims.
21.7 Right to Withdraw Consent
Where processing is based on consent, you may withdraw your consent at any time with effect for the future.
21.8 Right to Lodge a Complaint
You have the right to lodge a complaint with a data protection supervisory authority, especially in the EU member state of your habitual residence, place of work or place of the alleged infringement.
Competent supervisory authority:
[COMPETENT DATA PROTECTION AUTHORITY]
[AUTHORITY ADDRESS OR WEBSITE]
22. How to Exercise Your Rights
To exercise your privacy rights, contact us at:
Please provide enough information for us to identify your account or request. We may ask for additional information if necessary to verify your identity.
We will respond to your request within the time required by applicable law.
23. Right to Object to Direct Marketing
If we process personal data for direct marketing purposes, you have the right to object at any time.
If you object to direct marketing, we will stop processing your personal data for that purpose.
24. Children and Minors
The Service is not intended for children below the minimum age required by applicable law.
You must be at least 16 years old to create an account or use interactive features of the Service, unless a higher age applies in your country.
We do not knowingly collect personal data from children below the applicable minimum age. If we become aware that such data has been collected, we will take appropriate steps to delete or restrict it.
25. Special Categories of Personal Data
We do not intentionally request special categories of personal data, such as health data, religious beliefs, political opinions, biometric data, genetic data or information about sexual orientation.
Users should not publish special categories of personal data unless they have a lawful reason and understand that public posts may be visible to others.
If you voluntarily publish sensitive information, it may be processed as part of your user content according to this Privacy Policy and the platform features you use.
26. Security Measures
We use appropriate technical and organizational measures to protect personal data against unauthorized access, loss, misuse, alteration or destruction.
These measures may include:
- password hashing;
- HTTPS encryption where available;
- access controls;
- CSRF protection;
- input validation;
- upload restrictions;
- server-side validation;
- security logging;
- regular updates;
- backup procedures;
- limiting access to personal data.
No system is completely secure. You are responsible for keeping your login credentials confidential and using a secure device and email account.
27. Data Breaches
If a personal data breach occurs, we will assess the risk and take appropriate measures.
Where required by law, we will notify the competent supervisory authority and, where required, affected individuals.
28. Payments
If paid features are introduced, payment data may be processed by external payment providers.
We do not store full credit card details unless expressly stated and legally permitted.
Payment provider:
[PAYMENT PROVIDER NAME, IF USED]
[PAYMENT PROVIDER ADDRESS OR COUNTRY]
Legal basis: Article 6(1)(b) GDPR for payment processing and Article 6(1)(c) GDPR for legal accounting obligations.
If paid features are not used, this section does not apply.
29. Legal Claims and Enforcement
We may process and retain personal data where necessary to establish, exercise or defend legal claims, enforce our Terms, respond to legal notices, cooperate with authorities or protect our rights and the rights of users or third parties.
Legal basis: Article 6(1)(c) GDPR and Article 6(1)(f) GDPR.
30. Changes to This Privacy Policy
We may update this Privacy Policy from time to time.
If changes are material, we may notify users through the Service, by email or by another appropriate method.
The updated Privacy Policy applies from the date shown at the top of this page.
31. Contact
For privacy questions, GDPR requests, account deletion requests or data protection concerns, contact:
[OPERATOR LEGAL NAME]
[OPERATOR ADDRESS]
Email: [PRIVACY EMAIL]
General contact: [CONTACT EMAIL]