PRIVACY POLICY
Last updated on: July 19 2024.The present privacy policy (the "Policy") aims to formalize our commitment to respecting the privacy of users of The Dice Guild Site:https://www.thediceguild.com(the "Site") operated by Yasmine GHERBI BAHIA.
The Policy and the General Terms of the Site together form a contractual set. All capitalized terms not defined in this Policy are defined in the General Terms available here:https://www.thediceguild.com/tou.
In the context of providing our Site, we process your personal data in accordance with the General Data Protection Regulation 2016/679 of April 27, 2016 ("GDPR") and under the conditions set out below.
Personal data refers to any information relating to an identified or identifiable natural person. We collect and process personal data in the context of providing our Services or communicating about these Services exclusively, in strict compliance with the GDPR.
We only collect personal data that is adequate, relevant, and limited to what is necessary for the purposes for which it is processed. Therefore, you will never be asked to provide sensitive personal data, such as your racial or ethnic origins, political opinions, philosophical or religious beliefs.
By registering on the Site, you authorize us to process your personal data in accordance with the Policy.If you do not agree with the terms of this Policy, please refrain from using the Site and its Services.
1. Under what circumstances do we collect your personal data and what data is collected?
We may collect and retain your personal data, particularly when you:
- navigate on the Site,
- register,
- log in,
- create an in-person game session,
- fill out your profile,
- link your account to your Discord account,
- contact us via the contact form or the "Want to Try" form on the homepage.
We use your personal data to facilitate the implementation and management of the Site's Services and to respond to your specific requests. We also use your personal data to operate and enhance our Services, our Site, and our approach.
1.1 Navigate on the Site
Connection Data: Every time you log into our Site, we collect personal data such as your IP address and device's MAC address, the date and time of login, as well as information about the browser you are using: its default language to display the Site correctly and your email address for authentication purposes.
Browsing Data:We also collect browsing data for statistical analysis purposes. The information collected may include the visitor's IP address, operating system, browser identifier, browsing activity, and other information. See the scope of data collected by Piwik PRO. For more information on the collection of this data on our site, refer to section 3.2.5 Piwik PRO Analytics Suite.
1.2 Register and log in
Access to certain of our Services requires prior creation of an Account. In accordance with the General Terms, you will be asked to provide a certain amount of personal data when creating your Account, including your email address.
1.3 Create an in-person game session
When you create an in-person game session, we collect your postal address. This data allows participants (players) to go to the agreed-upon location for the game.
1.4 Profile
When you fill out your profile, we collect all profile information, including your description and profile photo. These data allow us to tailor your experience on our platform, facilitate interactions with other users, and provide an optimal service in connection with the features offered by our Site.
1.5 Link to you Discord account
When you link your The Dice Guild account to your Discord account, we automatically collect the following Discord profile information: your nickname, your identifier, the URL of your Discord profile picture, and the language of the Discord application. These data are retrieved via the Discord API during the account linking process. They are used exclusively to enable the integration of our service with Discord, specifically to facilitate the sending of game reminders and other relevant notifications directly on Discord, thereby enhancing your experience using The Dice Guild. Your Discord nickname will appear on your The Dice Guild profile, but only you will be able to see it.
1.6 Subscribing to our Newsletter
You may consent directly to receiving our newsletters about news, new products, Services, and promotions related to our Services by providing your email address in the designated areas on the Site.
In any case, you have the right to withdraw your consent to receive such newsletters at any time and at no cost, as provided in Section 7 of the privacy policy.
1.7 Contact
To respond to requests you may make to our Customer Service and to confirm information about you, we may use your first name, last name, and email address.
2. How do we protect your personal data?
We store your personal data on secure servers located in the European Union. We have implemented technical and organizational security measures to ensure the security, integrity, and confidentiality of all your personal data, aiming to prevent it from being altered, damaged, or accessed by unauthorized third parties. We maintain an appropriate level of security, taking into account the state of knowledge, implementation costs, and the nature, scope, context, and purposes of processing, as well as the risks and their likelihood.
However, it is noted that no security measure is infallible, and therefore, we cannot guarantee absolute security for your personal data.
Furthermore, it is your responsibility to maintain the confidentiality of the password that allows you to access your Account. Do not disclose this information to anyone. If you share your device, remember to log out before leaving a Service.
3. Under what circumstances do we share your personal data?
3.1 Sharing your personal data with other users of the Site
As the main function of the Site is to facilitate playing with other users, certain personal information is shared with other users of the Site. This includes:
- your profile photo and description, which are shared with all users of the Site. Before uploading them, please review our Code of Conduct.
- your postal address: If you have provided your postal address in a public game session, this information will be visible to all users of the Site. If you have entered your postal address in a private game session, only the members you have added to that session will be able to see it.Please review our Code of Conduct.
3.2 Sharing your personal data with third-party companies
During your navigation on the Site, your personal data may be transmitted to external service providers. These third parties provide services on our behalf to ensure the proper functioning of the Services.
The data is shared with the following companies:
3.2.1 Firebase
We use and therefore share data with Firebase (based in the United States):
Firebase Authentication : Firebase Authentication : Password, Email addresses, User agents, IP addresses. Firebase Authentication uses the data to enable end-user authentication, and facilitate end-user account management. It also uses user-agent strings and IP addresses to provide added security and prevent abuse during sign-up and authentication. Firebase Authentication keeps logged IP addresses for a few weeks. It retains other authentication information until the Firebase customer initiates deletion of the associated user, after which data is removed from live and backup systems within 180 days.
Cloud Functions for Firebase: IP addresses. Cloud Functions uses IP addresses to execute event-handling functions and HTTP functions based on end-user actions. Cloud functions only saves IP addresses temporarily, to provide the service.
You can review theirprivacy policy.
3.2.2 Vercel
We use hosting services provided by Vercel, a US-based company, to host and deploy our Site. Vercel may process personal data such as visitors' IP addresses, server logs, and other technical data necessary for the operation and maintenance of our Site. Vercel's certification ensures adequate data protection for the transfer of personal data outside the EU, UK, and Switzerland, in accordance with the EU General Data Protection Regulation (GDPR), UK Data Protection Act 2018, and Swiss Federal Data Protection Act (FADP). For more information on Vercel's privacy practices, you can review their privacy policy.
3.2.3 Discord
We offer the option to link your user account to your Discord account via our Site. Discord is a US-based company headquartered in the United States. When you choose to use this feature, we collect and process the information necessary to establish and manage this connection, such as your Discord identifier and any publicly available information on your Discord profile.
This data is used solely to facilitate authentication and management of linked accounts, as well as to enhance your user experience on our Site.
3.2.4 hCaptcha
We use the hCaptcha security service (hereinafter "hCaptcha") on our Site. This service is provided by Intuition Machines, Inc., a Delaware US Corporation ("IMI"). hCaptcha is used to check whether user actions on our online service (such as submitting a login or contact form) meet our security requirements. To do this, hCaptcha analyzes the behavior of the Site or mobile app visitor based on various characteristics. This analysis starts automatically as soon as the Site or mobile app visitor enters a part of the Site or app with hCaptcha enabled. For the analysis, hCaptcha evaluates various information (e.g. IP address, how long the visitor has been on the Site or app, or mouse movements made by the user). The data collected during the analysis will be forwarded to IMI. hCaptcha analysis in the "invisible mode" may take place completely in the background. Site or app visitors are not advised that such an analysis is taking place if the user is not shown a challenge. Data processing is based on Art. 6(1)(b) of the GDPR: the processing of personal data is necessary for the performance of a contract to which the Site visitor is party (for example, the Site terms) or in order to take steps at the request of the Site visitor prior to entering into a contract. Our online service (including our Site, mobile apps, and any other apps or other forms of access offered by us) needs to ensure that it is interacting with a human, not a bot, and that activities performed by the user are not related to fraud or abuse. In addition, processing may also be based on Art. 6(1)(f) of the GDPR: our online service has a legitimate interest in protecting the service from abusive automated crawling, spam, and other forms of abuse that can harm our service or other users of our service. IMI acts as a "data processor" acting on behalf of its customers as defined under the GDPR, and a "service provider" for the purposes of the California Consumer Privacy Act (CCPA). For more information about hCaptcha’s privacy policy and terms of use, please visit the following links: https://www.hcaptcha.com/privacyandhttps://www.hcaptcha.com/terms
3.2.5 Piwik PRO Analytics Suite
We use Piwik PRO Analytics Suite as our Site/app analytics software and consent management tool.
We calculate metrics like bounce rate, page views, sessions and the like to understand how our Site/app is used. We may also create visitors’ profiles based on browsing history to analyze visitor behavior, show personalized content and run online campaigns.
We host our solution on Microsoft Azure in Germany, Netherlands, United States and Hong Kong, Orange in France and ElastX in Sweden, and the data is stored for a maximum of25 months.
The purpose of data processing: analytics and conversion tracking based on consent. Legal basis: Art. 6 (1)(a) GDPR.
Piwik PRO does not send the data about you to any other sub-processors or third parties and does not use it for its own purposes. For more, readPiwik PRO’s privacy policy.
Piwik PRO Analytics Suite is also used to create aggregated datasets regarding the use of our Site, as part of the processing necessary for the proper functioning of the Site. For visitors who do not consent to this collect, we create and analyze anonymous datasets related to the Site. In the footer, you can disable all data collection.
Except in cases where a third party requires you to accept their own privacy policy and terms of use, third-party companies that have received your personal data are committed to processing your personal data solely for the implementation of our Services.
We will never share your personal data with third-party companies for marketing and/or commercial purposes without obtaining your prior consent.
3.3 Sharing with authorities
We may disclose your personal data to administrative or judicial authorities when such disclosure is necessary for the identification, apprehension, or prosecution of any individual who may harm our rights, another user, or a third party. We may also be legally obliged to disclose your personal data in such cases and cannot oppose such disclosure.
4. How long do we store your personal data?
We will only retain your personal data for the duration of your registration on the Site to ensure your identification when logging into your Account and to facilitate the provision of Services.
Therefore, if you unsubscribe from the Site, your personal data will be deleted and only kept as archived records for the purpose of establishing proof of a right or contract.
In any case, we will retain your personal data for a period not exceeding that necessary for the purposes for which they are processed, in accordance with the uses outlined in this Policy and in compliance with laws and regulations.
5. Personal data of children
The use of the Site is reserved exclusively for adults. In case of doubt, we reserve the right to verify by any means that the User is over 18 years old.
6. Cookies : how do we use them?
6.1 What is a cookie?
A cookie is a text file that can be placed on a device when browsing an online service using a web browser. A cookie file allows its issuer, during its validity period, to recognize the specific device each time it accesses digital content containing cookies from the same issuer.
In any case, cookies placed on your browsing terminal with your consent are destroyed 13 months after they are deposited on your terminal.
6.2 What are the cookies used for on our Site?
The cookies we issue are strictly necessary for the use of the Service and enable us to:
- to tailor the presentation of our Site to the display preferences of your device (language used) during your visits to our Site, based on the hardware and software for viewing or reading that your device has (NEXT_LOCALE);
- to remember information related to a form you filled out on our Site (such as registration or accessing your account) (session);
- to allow you to access reserved and personal areas of our Site, such as your Account, using identifiers or data you may have previously entrusted to us, and to implement security measures, for example when you are asked to log in again to access content or a service after a certain period of time;
- To collect statistical data for statistical reporting purposes, we also use Piwik PRO Analytics Suite, which gathers data about Site visitors based on online identifiers. You can findhere the cookies used. If you do not give your consent, these cookies will not be used: only a cookie storing your choice will be saved (ppms_privacy_<LinkppID>).
6.3 How can you control the cookies used?
In accordance with applicable regulations, you can refuse the use of non-essential cookies.
Furthermore, you can configure your web browser at any time to allow cookies to be stored on your device or, conversely, to reject them (either systematically or depending on the issuer). You can also configure your web browser to prompt you to accept or reject cookies on a case-by-case basis, before a cookie is stored on your device.
Note: Please be aware that any settings you choose may affect your internet browsing experience and your access to certain Services that require the use of cookies. We disclaim any responsibility for any consequences related to the degraded operation of our Services resulting from the inability to store or access cookies necessary for their operation, which you may have refused or deleted. This would apply if you attempt to access our content or Services that require you to authenticate. It would also apply when we (or our service providers) cannot recognize, for technical compatibility purposes, the type of browser used by your device, its language and display settings, or the country from which your device appears to be connected to the internet.
6.4 How to configure your web browser?
For managing cookies and your preferences, the configuration of each browser is different. This information is typically found in the help menu of your browser, which will guide you on how to modify your cookie preferences. Below are instructions for the main browsers:
Internet Explorer / Edge
- In Internet Explorer, click on the Tools button, then select Internet Options,
- Under the General tab, under the Browsing history section, click on Settings,
- Click on the Show files button.
Firefox
- Go to the Tools tab of the browser, then select the Options menu,
- In the window that appears, choose Privacy and click on Show Cookies.
Safari
- Access Settings via the browser menu (Safari > Preferences),
- Click on Privacy.
Google Chrome
- Access Settings via the button to the right of the URL bar or through the browser menu (Chrome in Preferences),
- Select Advanced Settings,
- Click on Content Settings, then on Cookies.
For more information on cookies, you can visit the CNIL website.
7. What are your rights?
You alone have provided us with the data in our possession through the Site. You have rights regarding your personal data. In accordance with data protection regulations, notably Articles 15 to 22 of the GDPR, and after proving your identity, you have the right to request access to your personal data, the rectification or deletion of such data.
Additionally, within the limits set by law, you also have the right to object to processing, to restrict it, to decide the post-mortem fate of your data, to withdraw your consent at any time, and the right to data portability for the personal data you have provided.
You can contact our Services to exercise your rights at the following email address:thediceguild1@gmail.com, attaching proof of your identity to your request.
Furthermore, you can unsubscribe from our newsletter at any time by clicking on the unsubscribe link at the bottom of each email. You can also unsubscribe by sending a message to the following address:thediceguild1@gmail.com.
8. Can we modify the Policy?
We reserve the right to modify the Policy at any time. Therefore, it is recommended that you review it regularly. In case of modification, we will publish these changes on this page and in places we deem appropriate based on the nature and significance of the changes.
Your use of the Site after any modifications signifies your acceptance of these changes. If you do not accept certain substantial changes to this Policy, you must stop using the Site.
9. Contact
The data controller for personal data is Yasmine GHERBI BAHIA, operator of The Dice Guild Site at https://www.thediceguild.com.
For any questions regarding your personal data or if you wish to delete your Account, please contact us at the following email address:thediceguild1@gmail.com (indicating "Privacy - Data Protection").
10. The Commission Nationale de l'Informatique et des Libertés ("CNIL")
We remind you that you can contact the CNIL directlyon the CNIL website or by mail at the following address: Commission Nationale de l'Informatique et des Libertés (CNIL), 3 Place de Fontenoy - TSA 80715, 75334 PARIS CEDEX 07, France.
11. Language
In case of any discrepancies between the English and French versions of this privacy policy, the French version shall prevail.