Back to home

Privacy Policy

Last updated: 14 November 2025

1. Data Controller

Media Toaster ("we", "us", "our") is the data controller responsible for your personal information. For any privacy-related questions, you can contact us at [email protected].

2. Information We Collect

We collect information that you provide directly to us and certain data automatically when you use our Service.

Information you provide

  • Account and contact details (name, email, password)
  • Profile information, preferences, and uploaded content
  • Payment information (processed securely via third-party providers)
  • Communications and support requests

Automatically collected

  • Usage data and analytics (pages visited, features used)
  • Device and browser information (OS, IP address)
  • Cookies and similar tracking technologies
  • Log data (access time, referral URLs, session identifiers)

3. Legal Bases for Processing (GDPR / UK GDPR)

  • Contract: to provide, maintain, and support your account and services you request.
  • Legitimate interests: to secure our platform, prevent fraud, understand usage, and improve user experience (balanced with your rights).
  • Consent: for analytics, marketing cookies, and optional communications - you may withdraw consent anytime.
  • Legal obligation: to comply with accounting, tax, and regulatory requirements.

4. How We Use Your Information

  • Provide, maintain, and improve our Service
  • Process transactions and send related information
  • Respond to comments and support requests
  • Analyze usage trends and optimize performance
  • Send updates and notifications (with your consent)
  • Detect, prevent, and address security issues or fraud
  • Comply with legal obligations

5. Information Sharing

We do not sell, rent, or trade personal data to third parties. We only share data with trusted partners who process it on our behalf under data processing agreements:

  • Infrastructure & hosting: to operate and maintain our platform.
  • Authentication & security providers: to manage user login and secure sessions.
  • Analytics services: to understand how users interact with the platform.
  • Payment processors: to handle secure transactions and billing.
  • Customer support tools: to manage communication and user requests.
  • Legal and compliance: when required to comply with law or protect our rights.

All such providers are bound by confidentiality and data-protection obligations and cannot use your information for their own purposes.

6. International Data Transfers

We may transfer your data outside the European Economic Area or the UK (e.g., to the United States) when using cloud or analytics services. In such cases, we rely on adequate safeguards such as the European Commission's Standard Contractual Clauses (SCCs) and the UK International Data Transfer Addendum (IDTA).

7. Data Retention

We retain personal data only as long as necessary for the purposes below or as required by law.

Data CategoryPurposeRetention
Account dataProvide and secure the ServiceWhile account is active + 30 days after deletion
Billing recordsLegal and tax obligations6 – 10 years
Analytics logsUsage insights14 – 26 months

8. Your Rights (GDPR / UK GDPR)

You have the following rights regarding your personal data:

  • Right to access your data
  • Right to rectification or deletion ("right to be forgotten")
  • Right to restrict or object to processing
  • Right to data portability
  • Right to withdraw consent at any time

To exercise these rights, contact us at [email protected]. We may verify your identity and respond within 30 days.

You also have the right to lodge a complaint with your local Data Protection Authority if you believe your rights have been infringed.

9. Cookies

We use cookies and similar technologies to operate and improve our Service. You can manage cookies through your browser or the Cookie Settings panel (available soon). See our Cookie Policy for details.

10. Children's Privacy

Our Service is not directed to children under 18. We do not knowingly collect personal information from minors. If you believe a child has provided us data, please contact us for deletion.

11. Automated Decision-Making

We do not use personal data for automated decision-making or profiling that produces legal or significant effects about you.

12. U.S. State Privacy Notice

For residents of California and other U.S. states with privacy laws, you have rights to access, correct, delete, and opt out of targeted advertising or "sharing" of data. We do not sell or share personal information as defined by applicable U.S. privacy laws and honor Global Privacy Control (GPC) signals where applicable.

13. Data Security

We apply appropriate technical and organizational measures to protect your data. However, no method of Internet transmission or storage is entirely secure, and we cannot guarantee absolute security.

14. Changes to This Policy

We may update this Privacy Policy from time to time. The revised version will be posted on this page with an updated "Last updated" date.

15. Contact Us

For any privacy or data-protection questions, contact us at [email protected].