Privacy and Security Policy
Last updated: 26 June 20251. Introduction
Welcome to gosuper.tools! We are committed to safeguarding your privacy and ensuring the protection of your personal data in accordance with the General Data Protection Regulation (GDPR) and other applicable data protection laws. This policy outlines what data we collect, how it is used, our reasons for processing it, and your rights as a user of our website.
2. Information We Collect
2.1 Personal Information
When you create a user account, we collect personal data, including but not limited to:
- goSupermodel Username
- goSupermodel User ID (as a reference to your goSupermodel account)
- IP address at registration (considered personal data under GDPR)
- Session identifiers (stored in session tokens)
If you choose to complete your profile, we may additionally collect:
- Biography/profile text that you choose to share
- Pronouns
- Birth date (if you provide it, with adjustable visibility settings)
We collect this information because it's necessary to create and manage your account and provide our services to you. Some information is collected with your consent when you voluntarily provide it.
2.2 Usage Data and Logs
We automatically collect information through server logs, which includes:
- User agent information (browser type and version)
- IP address of site visits
- Pages viewed and features used
- API requests and endpoints accessed
- Login attempts (successful and unsuccessful)
- Date and time of activities
This data is collected to provide site functionality, optimize our services, and ensure security. We have a legitimate interest in collecting this data to protect our platform from misuse and to improve user experience.
2.3 Cookies and Session Data
We use cookies to provide our services and display relevant advertisements. Our cookie usage includes both essential cookies for website functionality and advertising cookies for personalized content delivery.
Essential Cookies:
- Cookie Name: gosuper_session
- Purpose: Session management and authentication
- Storage Period: Temporary - deleted when logging out or after a week of inactivity
- Legal Basis: Necessary for the core functionality of our website
Advertising Cookies:
We use Google AdSense to display advertisements on our website. Google AdSense uses cookies and similar technologies to:
- Show personalized advertisements based on your interests and previous visits to our website and other websites
- Measure the effectiveness of advertisements
- Provide aggregate reporting to advertisers
- Limit the number of times you see the same advertisement
Google AdSense and Consent Management Cookies:
When Google AdSense and the Consent Management Platform are active, the following cookies may be set by Google:
- FCNEC, FCCDCF, __gpi, __gads, __eoi: These cookies are set by Google AdSense and the Google Consent Management Platform for advertising and consent management purposes.
These cookies are set and managed by Google according to your consent preferences and are subject to Google's Privacy Policy.
Consent Management:
We use Google's Consent Management Platform (CMP) to obtain and manage your consent for advertising cookies. You can:
- Grant or withdraw consent for personalized advertisements at any time
- Choose to see non-personalized advertisements instead
- Access the consent settings through the privacy banner or footer link
- Manage your Google Ads settings directly through Google Ads Settings
Cookie Categories:
- Strictly Necessary: Essential for website functionality (cannot be disabled)
- Advertising: Used to display relevant advertisements (requires consent)
- Analytics: Used to understand how visitors interact with our website (requires consent)
2.4 User-Generated Content
We store content that you voluntarily create or submit on our platform, including:
- Item categorizations, tags, and comments
- Trade submissions and related information
- Saved looks and wardrobe data
- Profile information, including favorite items and customizations
- Shop and wishlist data you create
- Guestbook entries you make on other profiles
- Feedback and reports you submit
We process this information because it's necessary to provide our core services and features. Without storing this data, we would not be able to offer the features you expect from our platform.
2.5 Advertising and Third-Party Services
We use Google AdSense to display advertisements on our website. Google AdSense is a third-party advertising service that may collect and process data about you. This includes:
- Information about your visits to our website and other websites
- Your IP address and browser information
- Cookie identifiers and advertising identifiers
- Information about your interaction with advertisements
- Data used to build interest profiles for personalized advertising
Google processes this data based on your consent (for personalized ads) or legitimate interests (for non-personalized ads). You can learn more about Google's data practices in their Privacy Policy and How Google uses information from sites or apps that use our services.
2.6 Custom Advertisement Tracking
In addition to Google AdSense, we operate our own advertisement system for custom banner advertisements. For these advertisements, we collect minimal data for performance tracking purposes:
- Advertisement impressions (when an ad is displayed to you)
- Advertisement clicks (when you click on an ad)
- Browser information (user agent) for technical compatibility
- The page where the advertisement was displayed
- Target URL of clicked advertisements
Important: We do NOT collect or store IP addresses, personal identifiers, or tracking cookies for our custom advertisement system. This data is collected based on our legitimate interest in providing advertisement services and measuring their effectiveness.
2.7 External Content from gosupermodel.com
Our website displays images and other content (such as item images) that are hosted on gosupermodel.com. When you access pages containing such content, your browser connects directly to gosupermodel.com servers to download these images. Please note that:
- gosupermodel.com may receive your IP address and browser information when you access this content
- We do not control what data gosupermodel.com collects when you access their content through our site
- This data transfer occurs directly between your browser and gosupermodel.com servers
We include links and references to gosupermodel.com throughout our website as our service is designed as a companion tool for gosupermodel users. For information about how gosupermodel.com processes your data, please refer to their privacy policy.
3. How We Use Your Information
We use the information collected for the following purposes:
3.1 Core Website Services
- To provide and maintain user account services and features
- To authenticate and secure your account
- To allow you to interact with community features (profiles, trade data, item cataloging, etc.)
- To improve website functionality and user experience
- To manage item databases, categorizations, and relationships
- To provide customer support and respond to inquiries
- To prevent fraud, abuse, and security breaches
3.2 Advertising and Marketing
With your consent, we and our advertising partners (including Google) use your information to:
- Display personalized advertisements based on your interests and browsing behavior
- Measure advertisement performance and effectiveness
- Improve the relevance of advertisements shown to you
- Provide analytics and reporting to advertisers (in aggregated, non-identifying form)
You can withdraw your consent for personalized advertising at any time through our consent management platform or by adjusting your Google Ads Settings. Without consent, you may still see non-personalized advertisements.
3.3 Custom Advertisement Analytics
For our custom advertisement system, we use collected data to:
- Track advertisement performance (impressions and clicks)
- Provide performance reports to advertisers
- Optimize advertisement placement and effectiveness
- Ensure technical compatibility across different browsers and devices
- Detect and prevent fraudulent or automated traffic
This processing is based on our legitimate interest in providing advertisement services. All data is processed in aggregated form and cannot be used to identify individual users.
4. Security Measures and Platform Protection
We take your security seriously and implement various measures to protect your personal data and ensure the integrity of our platform:
- Encryption: All data transmitted between your browser and our servers is encrypted using SSL/TLS protocols to prevent unauthorized access.
- Access Controls: Access to personal data is restricted to authorized personnel only, with administrative roles clearly defined.
- Secure Authentication: We implement secure token-based sessions with expiration controls and monitor login attempts to prevent unauthorized access.
- IP Protection: We maintain a system to block malicious IP addresses in cases of security threats, spam, or misuse of our services.
- Rate Limiting: We log API access and implement rate limits to prevent abuse and protect system resources.
- Activity Monitoring: User activities are monitored for security and debugging purposes to detect and prevent suspicious behavior.
- Regular Security Audits: We regularly audit our systems to ensure the highest level of data security.
- Data Minimization: We only collect the minimum amount of personal data necessary for our purposes.
These security measures help protect all users from malicious activity and ensure the overall integrity of our platform.
5. Sharing and Disclosure of Information
We do not sell your personal information to third parties. Information may be shared under the following circumstances:
- Public Content: Content you mark as "public" (such as public profiles, shops, or looks) will be visible to other users.
- Related Projects: As noted in our Terms, information you provide about items (tags, categories, relations) may be utilized in related projects like the Naddis Better goSupermodel extension.
- Service Providers: We work with hosting and infrastructure providers who help us deliver our services. These providers are bound by data processing agreements ensuring GDPR compliance.
- Advertising Partners: We share certain information with Google AdSense and other advertising partners to display relevant advertisements. This sharing is based on your consent for personalized ads or legitimate interests for non-personalized ads. Data shared includes your IP address, browser information, and website interaction data.
- Legal Requirements: We may disclose information if required by law or to protect our rights or the rights of others.
If data is transferred outside the European Economic Area (EEA), we ensure that adequate safeguards are in place to protect your data. Google processes data in accordance with their international data transfer mechanisms.
6. Your Rights Under GDPR
As a resident of the EU, you have the following rights concerning your personal data:
- The right to access the personal data we hold about you
- The right to correct inaccurate or incomplete data
- The right to request deletion of your personal data ("right to be forgotten")
- The right to restrict or object to the processing of your data
- The right to data portability
- The right to withdraw consent at any time, where consent is the legal basis for processing
- The right not to be subject to automated decision-making, including profiling, that produces legal effects
- The right to lodge a complaint with a supervisory authority in your country of residence
6.1 Advertising-Specific Rights
Regarding personalized advertising, you have additional rights:
- Consent Management: You can withdraw consent for personalized advertising at any time through our consent banner or privacy settings
- Google Ads Settings: You can manage your Google advertising preferences directly through Google Ads Settings
- Opt-out of Interest-Based Ads: You can opt out of interest-based advertising from Google and other participating companies through the Your Online Choices platform
- Non-Personalized Ads: Even if you withdraw consent, you may continue to see non-personalized advertisements
To exercise any of these rights, please contact us at [email protected].
7. Data Retention
We retain personal data only for as long as necessary to provide user account services and fulfill the purposes outlined in this policy. Specifically:
7.1 Core Website Data
- Account information is retained while your account is active
- If you delete your account, personal identification information will be removed or anonymized
- Security logs, access records, API logs, and other technical logs are kept for a maximum of 3 months
- Login attempts and IP information is stored for a maximum of 3 months
- User activity logs for security purposes are retained for a maximum of 3 months
- Contributions to the community database (item tags, categorizations, etc.) may be retained even after account deletion, as they benefit the entire community
7.2 Advertising Data
- Advertising cookies are retained according to their individual expiration periods (typically up to 2 years)
- Google AdSense data is retained according to Google's data retention policies
- Consent records for advertising are kept for 3 years to demonstrate compliance with GDPR requirements
- You can delete advertising cookies at any time through your browser settings or our consent management platform
7.3 Custom Advertisement Data
- Advertisement impression and click data is retained for 12 months for analytics purposes
- Browser information (user agent) is retained only as long as necessary for technical compatibility analysis
- No personal identifiers or IP addresses are stored in our custom advertisement system
- Data older than 12 months is automatically purged from our systems
You can request account deactivation through your profile settings or by contacting us directly. Additionally, we provide a data export feature on your account settings page that allows you to download a copy of your personal data.
8. Children's Privacy
Our services are intended for users who are at least 18 years old. We do not allow users under 18 years of age to use our services. We do not knowingly collect personal information from children. If we learn that we have collected personal information from a person under 18 years of age, we will delete that information as quickly as possible.
9. Changes to this Policy
We may update this Privacy and Security Policy from time to time. Any material changes will be communicated to you through a notification sent to registered users. The updated policy will also be available on this page, and the effective date will be reflected accordingly. Please review this policy periodically to stay informed about how we protect your information.
10. Responsibility for Data Processing
The operator of this website is responsible for the processing of personal data according to GDPR.
11. Contact Us
If you have any questions or concerns about this policy or our data practices, please reach out to us at [email protected].