Draft — structure only. This page is a placeholder awaiting review by counsel; bracketed text marks what still needs to be supplied.

Privacy policy

How we handle personal data at Be Seen — written for people, and built to be RGPD-compliant by design.

Last updated: [date to be set on publication].

01. Data controller

The data controller for Be Seen is [legal entity name], [registered address], reachable at [contact email].

For any question about this policy or your data, contact [privacy/DPO email].

02. What we collect

Account data: name, email, and the profile information you choose to publish (bio, links, portfolio, location).

Press & brand contacts: professional (non-personal) email addresses and role information, gathered for B2B outreach under legitimate interest.

Usage data: authentication events and minimal operational logs. We do not use third-party product analytics.

03. Legal bases

We rely on contract performance for your account, legitimate interest for the B2B contacts database and product security, and consent where required (e.g. newsletter subscription).

The professional-contacts database is strictly B2B: we never store personal (non-professional) email addresses in it.

04. Newsletter & communications

Newsletter subscription is double opt-in and every email carries a one-click unsubscribe. Unsubscribing is immediate and permanent.

05. Your rights

You may request access, rectification, erasure, restriction, portability, or object to processing. Contacts in our database may opt out at any time; opt-out is immediate and permanent.

To exercise a right, use [privacy request route/email]. We respond within [statutory delay].

06. Retention

We keep account data for the life of the account and [retention period] thereafter. Contact records are reviewed on a [review cadence]; bounced or opted-out records are excluded from all use.

07. Cookies

We use strictly necessary cookies for authentication and security only. [Confirm final cookie inventory with counsel.]

08. Sub-processors

We rely on [hosting provider], [email provider], [payment provider] and [error-monitoring provider]. A current list is available on request.