Privacy Policy

Effective Date: September 7, 2026

Last Updated: September 7, 2026


1. INTRODUCTION

Welcome to Distinct Social ("we," "our," "us," or the "Platform"). We are committed to protecting your privacy and being transparent about how we handle your information. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your personal data.

By accessing, browsing, or using Distinct Social, you acknowledge that you have read, understood, and agree to the practices described in this Privacy Policy. If you do not agree with this Privacy Policy, please do not use the Platform.

2. INFORMATION WE COLLECT

2.1 Information You Provide to Us

We collect information that you voluntarily provide when using the Platform:

  • Account Information: When you create an account, we collect your username, email address, password (stored in encrypted form), and optional profile information (display name, bio, profile picture, header image, date of birth, location, website URL);
  • User Content: Posts, comments, replies, messages, images, videos, audio, and other content you create, upload, or share on the Platform;
  • Communications: Information you provide when you contact our support team, submit feedback, or communicate with us through any channel;
  • Verification Information: If you participate in any verification programs, information required for verification purposes.

2.2 Information Collected Automatically

When you access or use the Platform, we automatically collect certain technical information necessary for the operation and security of the Service:

  • Log Data: IP address, browser type and version, operating system, referring/exit URLs, date and time of access, and pages viewed (collected for security, fraud prevention, and service functionality purposes only);
  • Device Information: Basic device identifiers, device type, and screen resolution necessary for delivering and optimizing the Service;
  • Usage Information: Features used, actions taken, and interactions with the Platform necessary to provide the Service.

2.3 Information We Do NOT Collect

We respect your privacy. Unlike many social media platforms, we do NOT:

  • Track your browsing activity outside of Distinct Social;
  • Build advertising or behavioral profiles based on your activity;
  • Sell or share your personal data with third-party advertisers;
  • Use tracking pixels, web beacons, or similar surveillance technologies;
  • Collect data from third-party sources to enrich your profile;
  • Monitor your activity across other websites or applications.

3. HOW WE USE YOUR INFORMATION

3.1 Purposes of Processing

We use your information strictly for the following purposes:

  • To create, maintain, and secure your account;
  • To provide, operate, and deliver the Platform and its features;
  • To display your content to other users as intended by your privacy settings;
  • To enable communication and interaction between users;
  • To respond to your inquiries, comments, and support requests;
  • To ensure security and prevent fraud, abuse, and unauthorized access;
  • To enforce our Terms of Service and other policies;
  • To comply with legal obligations and respond to lawful requests;
  • To send essential service-related notifications (account security, policy changes, service updates);
  • To improve and optimize the Platform based on aggregated, non-identifying usage patterns.

3.2 What We Do NOT Use Your Information For

We do NOT use your information for:

  • Targeted or behavioral advertising;
  • Profiling for marketing purposes;
  • Selling to data brokers or third parties;
  • Any purpose unrelated to providing and improving our services.

4. INFORMATION SHARING AND DISCLOSURE

4.1 No Sale of Personal Data

We do not sell, rent, lease, or trade your personal information to any third party for monetary or other valuable consideration.

4.2 Public Content

Content you post publicly on the Platform (including public posts, your public profile information, username, display name, and profile picture) is visible to other users and may be accessible on the open internet. Please be mindful of what you share publicly.

4.3 Service Providers

We may share information with trusted third-party service providers who assist us in operating the Platform, including:

  • Cloud hosting and infrastructure providers;
  • Email delivery services (for transactional emails only);
  • Content delivery networks;
  • Security and fraud prevention services.

These service providers are contractually bound to use your information only for the purposes of providing services to us, maintain confidentiality, and implement appropriate security measures. They are prohibited from using your data for their own purposes.

4.4 Legal Requirements

We may disclose your information if required to do so by law or in response to valid legal process, including:

  • In response to a court order, subpoena, or other lawful request by public authorities;
  • To comply with applicable laws, regulations, or legal proceedings;
  • To protect the rights, property, or safety of Distinct Social, our users, or the public;
  • To enforce our Terms of Service and other agreements;
  • To detect, prevent, or address fraud, security, or technical issues.

Where legally permitted, we will make reasonable efforts to notify affected users of such requests.

4.5 Business Transfers

In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of our assets, your information may be transferred as part of that transaction. We will notify you via email and/or prominent notice on the Platform of any change in ownership or uses of your personal information, as well as any choices you may have regarding your information.

4.6 With Your Consent

We may share your information with third parties when you have given us explicit consent to do so.

5. COOKIES POLICY

5.1 Our Approach to Cookies

We respect your privacy and minimize cookie usage. Unlike many social media platforms, we do not use cookies for tracking, advertising, analytics, or building user profiles.

5.2 Functional Cookies Only

We place only strictly necessary functional cookies that are essential for the operation of the Platform. These cookies are required for the Platform to function properly and cannot be disabled without affecting core functionality.

Cookie Name Purpose Duration
session_id Maintains your session and keeps you logged in while using the Platform Session (expires when browser closes) or up to 30 days if "Remember Me" is selected
auth_token Authenticates your identity and secures your account access 30 days
csrf_token Protects against cross-site request forgery attacks for your security Session
preferences Stores your user preferences (language, theme, display settings) 1 year

5.3 Cookies We Do NOT Use

  • No tracking cookies
  • No advertising cookies
  • No third-party analytics cookies
  • No social media tracking pixels
  • No cross-site tracking cookies
  • No retargeting or remarketing cookies

5.4 Cookie Consent

Because we only use strictly necessary functional cookies that are essential for the Platform to operate, explicit cookie consent is not required under GDPR and most privacy regulations. These cookies are exempt from consent requirements as they are necessary for providing the service you explicitly requested.

However, you retain full control over cookies through your browser settings. Please note that disabling essential cookies may prevent you from using the Platform or significantly impair functionality.

5.5 Managing Cookies

You can manage cookies through your browser settings. Most browsers allow you to:

  • View what cookies are stored on your device;
  • Delete individual cookies or all cookies;
  • Block cookies from specific websites;
  • Block all cookies (though this will prevent you from using many features of the Platform).

6. DATA SECURITY

6.1 Security Measures

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction, including:

  • Encryption in Transit: All data transmitted between your device and our servers is encrypted using TLS/SSL;
  • Encryption at Rest: Sensitive data is encrypted when stored on our servers;
  • Secure Password Storage: Passwords are hashed using industry-standard algorithms and are never stored in plain text;
  • Access Controls: Strict access controls and authentication measures limit access to personal data;
  • Security Monitoring: Continuous monitoring for security threats and vulnerabilities;
  • Regular Security Assessments: Periodic security reviews and updates to our security practices.

6.2 Limitations

While we strive to protect your personal information using commercially reasonable measures, no method of transmission over the Internet or method of electronic storage is 100% secure. We cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials and for any activity that occurs under your account.

6.3 Data Breach Notification

In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority in accordance with applicable law.

7. DATA RETENTION

7.1 Retention Periods

We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, including:

  • Account Information: Retained for as long as your account is active, plus a reasonable period thereafter for legal and operational purposes;
  • User Content: Retained for as long as your account is active or until you delete the content;
  • Log Data: Generally retained for up to 90 days for security purposes;
  • Communications: Retained for as long as necessary to resolve your inquiry and for quality assurance purposes.

7.2 Account Deletion

When you delete your account:

  • Your profile information will be removed from public view immediately;
  • Your personal data will be deleted or anonymized within 30 days;
  • Certain information may be retained for longer periods where required by law (e.g., for tax, legal, or regulatory compliance) or for legitimate business purposes (e.g., fraud prevention, dispute resolution);
  • Backup copies may persist for a limited additional period before being overwritten.

7.3 Content Shared by Others

Please note that content you shared that was copied, re-shared, or otherwise redistributed by other users may remain visible even after you delete your account or the original content.

8. YOUR RIGHTS AND CHOICES

8.1 General Rights

Depending on your jurisdiction, you may have certain rights regarding your personal information:

Right Description
Access Request a copy of the personal data we hold about you
Portability Receive your data in a structured, machine-readable format
Rectification Request correction of inaccurate or incomplete personal data
Erasure Request deletion of your personal data ("right to be forgotten")
Restriction Request limitation of processing of your personal data
Objection Object to processing based on legitimate interests
Withdraw Consent Withdraw consent at any time where processing is based on consent

8.2 How to Exercise Your Rights

You can exercise many of these rights directly through your account settings. For requests that cannot be fulfilled through your account settings, or if you do not have an account, please contact us through our contact page.

We will respond to your request within the timeframes required by applicable law (generally within one month for GDPR requests).

8.3 Account Settings

Through your account settings, you can:

  • Update your profile information;
  • Change your privacy settings;
  • Download a copy of your data;
  • Delete your account;
  • Manage notification preferences.

8.4 Communication Preferences

You may opt out of non-essential communications by:

  • Adjusting your notification settings in your account;
  • Clicking the "unsubscribe" link in any promotional email;
  • Contacting us through our contact page.

Please note that you cannot opt out of essential service-related communications (such as security alerts or changes to our terms).

9. INTERNATIONAL DATA TRANSFERS

9.1 Data Location

Distinct Social is operated from Italy within the European Union. Your information may be processed and stored on servers located in the European Economic Area (EEA).

9.2 Transfers Outside the EEA

If we transfer your personal data outside the EEA to countries not deemed to provide an adequate level of data protection by the European Commission, we will ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses (SCCs) approved by the European Commission;
  • Binding Corporate Rules (where applicable);
  • Other legally recognized transfer mechanisms.

You may request a copy of the safeguards we use for international transfers by contacting us through our contact page.

10. CHILDREN'S PRIVACY

Distinct Social is not intended for use by children under the age of 16 (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect personal information from children under this age.

If you are a parent or guardian and believe that your child has provided us with personal information without your consent, please contact us through our contact page. If we learn that we have collected personal information from a child under the applicable age without parental consent, we will take steps to delete that information as soon as possible.

11. THIRD-PARTY LINKS AND SERVICES

The Platform may contain links to third-party websites, services, or content that are not owned or controlled by Distinct Social. This Privacy Policy applies only to our Platform.

We are not responsible for the privacy practices of any third-party websites or services. We encourage you to review the privacy policies of any third-party websites you visit. The inclusion of a link to a third-party website does not imply endorsement of that website by Distinct Social.

12. CHANGES TO THIS PRIVACY POLICY

12.1 Updates

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will:

  • Update the "Last Updated" date at the top of this Privacy Policy;
  • Post the revised Privacy Policy on the Platform;
  • For material changes, provide additional notice (such as a prominent notice on the Platform or email notification).

12.2 Your Continued Use

Your continued use of the Platform after any changes to this Privacy Policy constitutes your acceptance of the revised policy. If you do not agree to the revised policy, you should discontinue use of the Platform and delete your account.

12.3 Review

We encourage you to periodically review this Privacy Policy to stay informed about how we are protecting your information.

13. EUROPEAN UNION / EUROPEAN ECONOMIC AREA – GDPR COMPLIANCE

If you are located in the European Union, European Economic Area, or the United Kingdom, the following additional terms apply to you under the General Data Protection Regulation (GDPR) and the UK GDPR:

13.1 Data Controller

Distinct Social is the data controller responsible for your personal data. For contact details, including our Data Protection Officer, please refer to our contact page.

13.2 Legal Bases for Processing

We process your personal data based on the following legal grounds under Article 6 of the GDPR:

Purpose Legal Basis
Account creation and service delivery Performance of a contract (Art. 6(1)(b))
Providing and improving the Platform Performance of a contract (Art. 6(1)(b))
Security and fraud prevention Legitimate interests (Art. 6(1)(f))
Enforcing our Terms of Service Legitimate interests (Art. 6(1)(f))
Legal compliance Legal obligation (Art. 6(1)(c))
Essential service communications Legitimate interests (Art. 6(1)(f))
Optional features (where applicable) Consent (Art. 6(1)(a))

13.3 Your Rights Under GDPR

As an EU/EEA/UK resident, you have the following rights under the GDPR:

  • Right of Access (Art. 15): Request confirmation of whether we process your personal data and a copy of that data;
  • Right to Rectification (Art. 16): Request correction of inaccurate personal data or completion of incomplete data;
  • Right to Erasure (Art. 17): Request deletion of your personal data ("right to be forgotten") under certain circumstances;
  • Right to Restriction (Art. 18): Request limitation of processing of your personal data under certain circumstances;
  • Right to Data Portability (Art. 20): Receive your personal data in a structured, commonly used, machine-readable format and transmit it to another controller;
  • Right to Object (Art. 21): Object to processing based on legitimate interests or for direct marketing purposes;
  • Right to Withdraw Consent (Art. 7): Withdraw consent at any time where processing is based on consent, without affecting the lawfulness of processing based on consent before its withdrawal;
  • Right to Lodge a Complaint (Art. 77): Lodge a complaint with a supervisory authority in your Member State.

13.4 Exercising Your GDPR Rights

To exercise any of your GDPR rights, please contact us through our contact page.

We will respond to your request within one (1) month as required by GDPR. This period may be extended by two additional months for complex or numerous requests, in which case we will notify you within the first month and explain the reasons for the delay.

We may request additional information to verify your identity before processing your request.

13.5 Data Protection Officer

For all inquiries related to GDPR, data protection, or to contact our Data Protection Officer (DPO), please refer to our contact page.

13.6 Supervisory Authority

You have the right to lodge a complaint with a supervisory authority, in particular in the EU Member State of your habitual residence, place of work, or place of the alleged infringement.

The lead supervisory authority for Distinct Social is:

Garante per la protezione dei dati personali

Piazza Venezia, 11

00187 Roma, Italia

Website: www.garanteprivacy.it

A list of all EU Data Protection Authorities can be found at: https://edpb.europa.eu/about-edpb/about-edpb/members_en

13.7 Automated Decision-Making

We do not engage in automated decision-making or profiling that produces legal effects or similarly significantly affects you as defined in Article 22 of the GDPR.

13.8 Data Minimization

In accordance with GDPR principles, we collect only the minimum amount of personal data necessary for the purposes stated in this Privacy Policy. We do not process personal data in a manner incompatible with those purposes.

14. ADDITIONAL DISCLOSURES FOR CALIFORNIA RESIDENTS (CCPA/CPRA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA):

14.1 Your California Privacy Rights

  • Right to Know: You have the right to request information about the categories and specific pieces of personal information we have collected about you, as well as the categories of sources, purposes, and third parties with whom we share it;
  • Right to Delete: You have the right to request deletion of your personal information, subject to certain exceptions;
  • Right to Correct: You have the right to request correction of inaccurate personal information;
  • Right to Opt-Out: You have the right to opt out of the sale or sharing of your personal information;
  • Right to Limit: You have the right to limit the use of sensitive personal information;
  • Right to Non-Discrimination: You have the right not to be discriminated against for exercising your privacy rights.

14.2 No Sale or Sharing of Personal Information

We do not sell or share your personal information as those terms are defined under CCPA/CPRA. We have not sold or shared personal information in the preceding 12 months.

14.3 Exercising Your California Rights

To exercise your California privacy rights, please contact us through our contact page. We will verify your identity before processing your request.

15. CONTACT US

If you have any questions, concerns, or requests regarding this Privacy Policy, your personal data, or our privacy practices, please contact us through our:

Contact Page

For all privacy inquiries, data protection requests, and GDPR matters:

Visit Contact Page

Our contact page includes information for:

  • General privacy inquiries;
  • Data protection requests (access, deletion, rectification, etc.);
  • GDPR-related matters;
  • Data Protection Officer contact;
  • Legal inquiries.

16. PRIVACY COMMITMENT SUMMARY

Practice Distinct Social
Sell user data ✗ Never
Track users across the web ✗ Never
Use advertising cookies ✗ Never
Use tracking cookies ✗ Never
Build advertising profiles ✗ Never
Automated profiling ✗ Never
Share data with advertisers ✗ Never
Functional cookies only ✓ Yes
User data control ✓ Yes
Data portability ✓ Yes
Right to deletion ✓ Yes
GDPR compliant ✓ Yes
CCPA/CPRA compliant ✓ Yes
Transparent practices ✓ Yes

This Privacy Policy was last updated on September 7, 2026.