PRIVACY POLICY

LAST UPDATED: FEBRUARY 6, 2026

1. DATA CONTROLLER

Michael Stief, operating as KAIDRON TV
Peter-Dinkel-Strasse 1
82285 Hattenhofen
Germany
Email: privacy@kaidron-tv.com

2. LEGAL BASIS FOR PROCESSING (GDPR)

We process personal data in accordance with the General Data Protection Regulation (GDPR) on the following legal bases:

  • Art. 6(1)(b) GDPR – Contract Performance
    • Account creation and management
    • Credit purchases and billing
    • Upload processing and content hosting
    • AI license verification and compliance checks
  • Art. 6(1)(f) GDPR – Legitimate Interests
    • Fraud prevention and anti-botting measures
    • Platform security and abuse detection
    • Chart integrity analytics and manipulation prevention
  • Art. 6(1)(a) GDPR – Consent
    • Marketing communications (e.g. newsletters)
    • Optional profile features and public visibility settings
  • Art. 6(1)(c) GDPR – Legal Obligation
    • Tax and accounting compliance
    • DMCA and copyright enforcement
    • Platform transparency and legal reporting obligations

3. CATEGORIES OF DATA COLLECTED

3.1 Identity & Account Data (Artists 18+)

  • Name and email address
  • Encrypted password credentials
  • Profile images and optional public profile data
  • Age verification status (18+ flag for upload privileges)
  • Business identification data (company name and address, if voluntarily provided)

3.2 AI License Verification Data

To ensure compliance with AI service provider terms, we may process:

  • Subscription screenshots
  • Subscription tier and status information
  • Provider account identifiers (where required)

This data is accessed exclusively for verification purposes and handled with restricted internal access.

3.3 Content Data

  • Audio files (MP3)
  • Video files (MP4)
  • Thumbnails and metadata
  • Prompt descriptions (if voluntarily provided)
  • YouTube embed links
  • AI generation metadata (tool used, generation date, license tier)

4. ENGAGEMENT, PROFILING & AUTOMATED PROCESSING

We use automated processing and profiling techniques to support internal platform functions, including:

  • KAIDRON TV Score (chart rankings based on engagement metrics)
  • Experience & Loyalty Points (EP/LP)
  • Fraud detection and risk scoring
  • License verification status monitoring

These processes do not produce legal effects or similarly significant effects within the meaning of Art. 22 GDPR. They affect only internal platform rankings, visibility, and feature eligibility.

5. TECHNICAL & ANTI-FRAUD DATA

To protect platform integrity, we process:

  • IP addresses (stored in truncated or hashed form and anonymized within 30 days)
  • Device and browser fingerprints (for bot detection and vote integrity)
  • Session timestamps and access logs
  • License verification attempt logs

6. DATA RETENTION

Active Accounts:

Personal data is retained for as long as the account remains active.

Deleted Accounts:

Personal data is deleted within 30 days, except where retention is required for:

  • Financial and tax records (up to 10 years under German law)
  • DMCA notices and counter-notices (5 years for legal compliance)
  • Ongoing disputes or legal claims
  • Anonymized analytics and historical chart data

Anti-Fraud Logs:

Retained for 90 days, then anonymized.

AI License Verification Data:

Retained for 90 days after account deletion, then securely erased.

7. YOUR RIGHTS UNDER GDPR

You have the right to:

  • Access your personal data (Art. 15 GDPR)
  • Rectify inaccurate data (Art. 16 GDPR)
  • Request erasure (“right to be forgotten”) (Art. 17 GDPR)
  • Restrict processing (Art. 18 GDPR)
  • Data portability (Art. 20 GDPR)
  • Object to processing, including profiling (Art. 21 GDPR)
  • Lodge a complaint with a supervisory authority

Competent Supervisory Authority:
Bayerisches Landesamt für Datenschutzaufsicht (BayLDA)

8. NOTES ON PLATFORM RECORDS

Chart & Ranking Data:

Historical chart positions and aggregated engagement metrics may be retained in anonymized form for chart integrity and documentation purposes.

DMCA Records:

Copyright notices and counter-notices may be retained beyond account deletion for legal compliance and repeat infringer tracking.

9. THIRD-PARTY PROCESSORS

We use carefully selected service providers acting as data processors:

  • Google Firebase / Google Cloud Platform – Hosting & backend services
  • Stripe & PayPal – Payment processing
  • Cloudflare – Content delivery and DDoS protection
  • VIES (EU Commission) – VAT validation (if applicable)
  • AI License Verification Services – Secure verification with Suno, Udio, and other providers (where available)

All processors are bound by data processing agreements pursuant to Art. 28 GDPR.

10. INTERNATIONAL DATA TRANSFERS

Some of our service providers process data in the United States or other third countries.

Where data is transferred outside the EU/EEA, such transfers are safeguarded by:

  • Adequacy decisions of the European Commission (e.g. EU–U.S. Data Privacy Framework), or
  • Standard Contractual Clauses (SCCs) pursuant to Art. 46 GDPR, where applicable

You may request further information on these safeguards by contacting us.

11. COOKIES & TRACKING

We use cookies and similar technologies.

Essential cookies are required for authentication, security, fraud prevention, and license verification and cannot be disabled.

Non-essential cookies (if used) require explicit user consent.

Further details are provided in our separate Cookie Policy.

12. CONTACT

For privacy-related inquiries or to exercise your rights, contact:

📧 privacy@kaidron-tv.com