Privacy Policy

How we handle your data

Last updated: January 19, 2026

1. Data Controller

The data controller for this website is:

Flying Phoenix BLOG
[Your full name]
[Street and number]
[Postal code, City]

Email: info@flying-phoenix.dev

Note: Full contact details can be found in our Legal Notice.

2. Overview of Data Processing

2.1 Categories of Data Subjects

  • Visitors and users of the website
  • Registered users with user accounts
  • Supporters (donors)

2.2 Categories of Processed Data

  • Personal data (e.g., username, email address)
  • Usage data (e.g., pages visited, access time)
  • Meta/communication data (e.g., IP address, device information)
  • Contract data (e.g., donation transactions)

2.3 Purposes of Processing

  • Provision of the website and its functions
  • Management of user accounts
  • Processing donations and supporter status
  • Security and fraud prevention
  • Communication with users

3. Data Collection During Registration

3.1 What Data We Collect

When creating a user account, we collect:

  • Username: To identify your account
  • Email address: For account verification and communication
  • Password: Stored encrypted (bcrypt hash)
  • IP address: For security and fraud prevention
  • Registration timestamp: For documentation

3.2 Retention Period

Your account data is stored as long as your account is active. After account deletion, your data will be deleted within 30 days, unless legal retention requirements apply.

4. Discord Integration

When you link your Discord account, we receive from Discord:

  • Discord User ID
  • Discord Username
  • Profile picture (Avatar)

Purpose: Synchronization of supporter roles on our Discord server.
Withdrawal: You can unlink your Discord account at any time in your profile.

5. Donations and Payments

We use external payment service providers for donations:

We do not store payment data (credit cards, bank details). We only receive transaction confirmations with email address and donation amount for assigning supporter status.

6. Cookies and Tracking

Detailed information about the cookies we use can be found in our Cookie Policy.

Overview of Cookie Categories:

Category Purpose Consent Required
Essential Session, CSRF protection, cookie settings No (technically necessary)
Functional Store user preferences Yes
Third-party Discord, payment providers Yes

7. Retention Periods

Data Category Retention Period
Account data Until account deletion + 30 days
Server logs (IP addresses) 7 days
Donation transactions 10 years (legal retention requirement)
Cookie consent 12 months

8. Your Privacy Rights

You have the following rights regarding your personal data:

Right of Access

You can request information about your stored data.

Right to Rectification

You can request correction of inaccurate data.

Right to Erasure

You can request deletion of your data ("Right to be forgotten").

Right to Data Portability

You can receive your data in a machine-readable format.

Right to Object

You can object to processing at any time.

Right to Withdraw Consent

You can withdraw given consent at any time.

To exercise your rights, please contact us at: info@flying-phoenix.dev

9. Data Security

We implement the following technical and organizational measures:

  • SSL/TLS encryption for all connections (HTTPS)
  • Password hashing with bcrypt
  • CSRF protection for all forms
  • Prepared statements to protect against SQL injection
  • Regular security updates
  • Access restrictions for sensitive data

10. Minors

Our services are intended for persons aged 16 and older. We do not knowingly collect data from persons under 16. If you become aware that a child has provided us with personal data, please contact us.

11. Changes to This Privacy Policy

We reserve the right to update this privacy policy to adapt it to changed legal requirements or changes to our services. The date of the last update can be found at the top of this page.

12. Contact

For questions about data protection, you can reach us at:
Email: info@flying-phoenix.dev