Privacy Policy
Last updated: January 2025
1. Introduction
Welcome to Dzoby ("we", "our", or "us"). We are committed to protecting your personal data and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our music booking platform.
If you have any questions or concerns about this policy or our practices with regard to your personal information, please contact us at privacy@dzoby.com.
2. Information We Collect
2.1 Personal Information You Provide
We collect information that you voluntarily provide when using our platform:
- Account Information: Name, email address, password, user type (artist or organizer)
- Profile Information: Stage name, bio, location, phone number, genres, social media links
- Business Information: Company name, NIP/PESEL, contact details for organizers
- Payment Information: Processed securely through Stripe (we do not store full payment card details)
- Communications: Messages sent through our platform, support requests
2.2 Information Automatically Collected
- Log Data: IP address, browser type, operating system, pages visited, time spent on pages
- Device Information: Device type, unique device identifiers
- Cookies and Tracking: See our Cookie Policy for details
2.3 Information from Third Parties
- OAuth Providers: When you sign in with Google or Facebook, we receive basic profile information
- Payment Providers: Transaction data from Stripe for payment processing
3. How We Use Your Information
We use your personal information for the following purposes:
- To provide, operate, and maintain our booking platform
- To process bookings and payments between artists and organizers
- To create and manage your account
- To communicate with you about your bookings, applications, and account
- To send you important updates, security alerts, and administrative messages
- To improve our services and develop new features
- To prevent fraud and ensure platform security
- To comply with legal obligations and resolve disputes
- With your consent, to send you marketing communications (you can opt out anytime)
4. Legal Basis for Processing (GDPR)
Under the General Data Protection Regulation (GDPR), we process your personal data based on:
- Contract Performance: To fulfill our agreement with you and provide our services
- Legitimate Interests: To improve our platform, prevent fraud, and ensure security
- Legal Obligations: To comply with Polish and EU laws, including tax and financial regulations
- Consent: For marketing communications and optional features (you can withdraw consent anytime)
5. How We Share Your Information
We may share your information in the following circumstances:
5.1 With Other Users
- Artists: Your profile information is visible to organizers when you apply for gigs
- Organizers: Your contact information is shared with artists when bookings are confirmed
5.2 With Service Providers
- Stripe: For payment processing and artist payouts
- Hosting Providers: For platform infrastructure (Vercel, database providers)
- Email Services: For transactional and notification emails
- Analytics: To understand platform usage (only if you consent to analytics cookies)
5.3 For Legal Reasons
We may disclose your information if required by law or to:
- Comply with legal processes or government requests
- Enforce our Terms of Service
- Protect our rights, privacy, safety, or property
- Investigate fraud or security issues
6. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law.
- Active Accounts: Data retained while your account is active
- Deleted Accounts: Most data deleted within 30 days; some data retained for legal/financial compliance (e.g., payment records for 7 years)
- Messages: Retained for dispute resolution purposes
7. Your Privacy Rights (GDPR)
Under the GDPR, you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your data (subject to legal obligations)
- Right to Restriction: Limit how we use your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interests or for marketing
- Right to Withdraw Consent: Withdraw consent for specific processing activities
To exercise these rights, contact us at privacy@dzoby.com. We will respond within 30 days.
8. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction:
- Encryption of data in transit (HTTPS/TLS)
- Encrypted storage of sensitive data
- Secure password hashing (bcrypt)
- Regular security audits and monitoring
- Restricted access to personal data by employees and contractors
- Payment processing handled by PCI-DSS compliant Stripe
However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
9. International Data Transfers
Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data internationally, we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions for countries with equivalent data protection laws
- Processors certified under privacy frameworks (e.g., EU-U.S. Data Privacy Framework)
10. Children's Privacy
Our platform is not intended for users under the age of 16. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through a prominent notice on our platform. The "Last updated" date at the top indicates when the policy was last revised.
12. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us:
You also have the right to lodge a complaint with the Polish supervisory authority:
Related policies: Terms of Service | Cookie Policy