1. Who We Are
Sip 'N Sin ("we", "our", or "us") provides social party-game experiences through sipnsin.party. This Privacy Policy explains what information we collect, how we use it, and the choices available to you.
2. Information We Collect
- Account information: email, username, display name, avatar URL, and authentication provider details.
- Profile and gameplay data: profile preferences, deck/prompt content you create, subscriptions, and gameplay statistics.
- Billing metadata: subscription status and billing identifiers (for example Stripe customer/subscription IDs). We do not store full card numbers.
- Support and communications data: messages you send to support and email campaign interaction signals (open/click/bounce) where available.
- Telemetry and device data: IP address, browser/device details, event/session identifiers, and product analytics events used for reliability, abuse prevention, and product improvement.
3. How We Use Information
- Provide and secure the Service (authentication, account management, fraud/abuse controls).
- Deliver features such as custom decks, trials, subscriptions, and account settings.
- Process payments and subscription lifecycle actions.
- Send transactional and optional marketing communications.
- Analyze usage and performance to improve product quality and reliability.
- Comply with legal obligations and enforce our Terms.
4. Lawful Bases (UK GDPR / EU GDPR)
- Contract performance: running accounts, subscriptions, gameplay, and support functionality you request.
- Legitimate interests: fraud prevention, platform security, abuse detection, and product reliability improvements.
- Consent: optional analytics and marketing communications where consent is required.
- Legal obligation: accounting, tax, and compliance record-keeping.
5. Services We Use
We use service providers to operate the platform, including:
- Supabase (authentication and database infrastructure)
- Vercel (hosting and platform infrastructure)
- Stripe (payment processing and billing)
- Resend (transactional and product emails)
- Cloudflare Turnstile (bot and abuse protection)
- PostHog, Vercel Analytics, and Vercel Speed Insights (analytics and performance observability)
These providers process data under their own privacy terms and only as needed to deliver their services.
6. Cookies and Local Storage
We use cookies and similar storage for login sessions, attribution context, experiment assignment, and analytics/session continuity. You can manage cookie settings in your browser, and you can change analytics consent from your account settings at any time.
7. Marketing and Unsubscribe
You can opt out of marketing emails using unsubscribe links in those emails. We still may send service-critical messages (for example account, billing, or security notifications).
8. Data Retention
We retain information for as long as needed to operate the Service, meet legal obligations, resolve disputes, and enforce agreements. Typical retention windows include:
- Account/profile data: while account is active and for a limited period after deletion requests to complete operational cleanup.
- Billing and transaction records: up to 7 years where required for accounting/tax compliance.
- Support messages: typically up to 24 months after resolution.
- Security, consent, and audit logs: typically 12 to 72 months depending on legal/compliance purpose.
We may retain data longer where required by law, to defend legal claims, or to investigate abuse/security incidents.
9. Your Privacy Rights
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or port your personal data. To make a request, contact us at help@sipnsin.party. We may need to verify your identity before fulfilling a request.
10. International Transfers
Your information may be processed in countries other than your own, including where our vendors operate. Where required, we use contractual and organizational safeguards for cross-border transfers.
11. Children and Age Restrictions
Sip 'N Sin is intended for adults and is not directed to children. If you believe a minor has provided us personal information, contact us so we can investigate and take appropriate action.
12. Security
We use technical and organizational controls designed to protect personal information. No transmission or storage method is completely secure, and we cannot guarantee absolute security.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Material updates will be reflected by changing the "Last updated" date on this page.