Legal

Privacy Policy

Last updated: June 29, 2026

1. Who We Are

wosaiguide.com ("wosguide") is the data controller for personal data processed through this platform. This policy explains what we collect, why, and your rights under the EU General Data Protection Regulation (GDPR).

2. Data We Collect

  • Account data — email address, encrypted password (or OAuth identifier from Google).
  • Profile data — in-game name, alliance, optional stats you choose to share.
  • Usage data — AI Assistant chat history, calculator inputs, favorited events, daily check-in streaks.
  • Technical data — IP address, browser/device info, session tokens (for security & abuse prevention).
  • Contact form — name, email, and message you submit voluntarily.

3. Legal Basis & Purposes

  • Contract — to operate your account and provide the features you request.
  • Legitimate interest — security, abuse prevention, platform improvement.
  • Consent — browser notifications, optional analytics, marketing emails (if enabled).
  • Legal obligation — tax/payment records when you purchase Premium.

4. Subprocessors

We use the following providers to operate the platform:

  • Lovable Cloud (Supabase) — authentication, database, edge functions (EU hosting).
  • Lovable AI Gateway — AI Assistant responses (Google Gemini under the hood).
  • Lovable Emails — transactional email delivery for contact confirmations.
  • Cloudflare — CDN, DDoS protection, DNS.
  • Paddle (future) — payment processing & Merchant of Record for Premium subscriptions.

Each subprocessor processes data only as instructed and under appropriate safeguards.

5. Data Retention

  • Account data — kept while your account is active; deleted within 30 days of deletion request.
  • AI chat history — kept until you delete it manually or close your account.
  • Contact form submissions — kept for up to 24 months for support history.
  • Payment records — retained as required by tax law (typically 7 years).

6. Your Rights (GDPR)

You have the right to:

  • Access your personal data and receive a copy.
  • Correct inaccurate data (editable in your profile).
  • Delete your account and associated data.
  • Restrict or object to processing.
  • Data portability — export your data in a machine-readable format.
  • Withdraw consent at any time.
  • Lodge a complaint with your local Data Protection Authority.

To exercise any right, contact us at /contact.

7. Cookies & Local Storage

We use essential cookies/local storage for authentication and remembering your preferences (theme, last search, favorited events). We do not use third-party advertising cookies or cross-site tracking.

8. Children's Privacy

wosguide is not directed to children under 13. If you believe a child has provided us with personal data, contact us and we will delete it.

9. Security

Passwords are hashed (bcrypt). Database access is restricted by Row-Level Security. Connections use TLS 1.2+. We block known leaked passwords on signup. No system is perfectly secure — report vulnerabilities at /contact.

10. Changes

We will notify you of material changes by email or in-app banner. Continued use after changes means you accept the updated policy.