Back to category
Privacy & Security

Data Protection

Data Protection

How we protect your information

Encryption

  • In transit - All communications use HTTPS with TLS 1.3
  • At rest - Sensitive data is stored encrypted on our servers
  • Passwords - Stored with bcrypt hash, never in plain text

Server security

  • Servers in certified data centers
  • Daily encrypted backups
  • 24/7 security monitoring
  • Automatic security updates

Access control

  • Only authorized personnel have access to user data
  • All data access is logged
  • Two-factor authentication for employees

What data we collect

Data you provide

  • Profile information (name, email, photo)
  • Content you publish (collectibles, posts)
  • Private collectible information
  • Messages you send

Automatically generated data

  • Access date and time
  • IP address (for security)
  • Device type and browser
  • Pages visited

How we use your data

  • Service operation - To make Museum App work correctly
  • Personalization - To show you relevant content
  • Communication - To send you notifications you've requested
  • Security - To protect your account and detect fraud
  • Service improvement - To understand how to improve Museum App

What we DON'T do

  • We DON'T sell your data to third parties
  • We DON'T share private information from your collectibles
  • We DON'T use your data for advertising from third parties
  • We DON'T analyze the content of your private messages

Cookies

We use cookies to:

  • Keep your session active
  • Remember your preferences
  • Analyze platform usage (anonymously)

You can configure cookies in your browser. Some cookies are necessary for basic functionality.

Third parties

We use some third-party services:

  • Stripe - Payment processing (we don't store card data)
  • Amazon Web Services - Server hosting
  • Cloudflare - Security and performance

These providers comply with the same data protection regulations.

Was this article helpful?