Summary
Payout Manager collects only the data needed to provide its financial tracking features. We do not sell your data, share it with advertisers, or use it for any purpose other than operating the service. You can request full deletion of your data at any time.
No Data Selling
Never sold or shared with advertisers
GDPR Compliant
Full EU data protection rights
Delete Anytime
Full erasure within 30 days
Stored in EU
Supabase EU region only
01
Who We Are
Payout Manager is operated by Vladyslav Svitelskyi ("we", "us", "our"), an individual developer based in the European Union. Payout Manager is a financial management tool for Fanvue agencies, available via the Fanvue App Store at payoutmanager.app.
For the purposes of the General Data Protection Regulation (GDPR), Vladyslav Svitelskyi is the data controller of your personal data.
02
Data We Collect
We collect only the data necessary to provide Payout Manager's features. This includes:
Account Data
- Your name and email address (provided at sign-up or via Fanvue OAuth)
- Your role within your agency (admin or partner)
Fanvue Integration Data
- OAuth access tokens used to connect your Fanvue account (stored securely server-side)
- Earnings and transaction data synced from Fanvue (amounts, dates, platform sources)
- Creator/model names associated with your agency account
Financial Records You Create
- Withdrawal records (amounts, dates, EUR/USD conversions, partner splits)
- Expense records (descriptions, amounts, categories)
- Revenue entries added manually
Partner Data
- Names and email addresses of partners you invite to your agency workspace
- Revenue split percentages per partner and per model
Technical Data
- Authentication session tokens (stored securely)
- Basic usage logs for error monitoring (no behavioural tracking)
We never store your passwords in plaintext — sign-in is handled by Supabase Auth (passwords are salted and hashed) and Fanvue OAuth. We also do not collect: payment card details, government IDs, or any content from your Fanvue profile or messages.
03
How We Use Your Data
We use your data solely to operate Payout Manager:
- To authenticate you and manage your workspace
- To sync and display your Fanvue earnings in the tracker
- To calculate partner splits, outstanding balances, and FX conversions
- To display financial reports and charts within the app
- To send operational emails (if email notifications are enabled by you)
- To respond to your support requests
04
Legal Basis for Processing (GDPR)
We process your personal data under the following legal bases:
- Contract performance (Art. 6(1)(b) GDPR): processing is necessary to provide the service you signed up for
- Legitimate interests (Art. 6(1)(f) GDPR): security logging and error monitoring to maintain a stable service
- Consent (Art. 6(1)(a) GDPR): for optional email notifications, which you can disable at any time in Settings
05
Data Sharing
We do not sell, rent, or share your personal data with third parties for marketing purposes. We use the following sub-processors to operate the service:
Supabase
Database, authentication, and file storage — data stored in the EU region (Ireland, eu-west-1)
Resend
Transactional email delivery (partner invitations and optional daily digests) — receives the recipient's name and email address only
Wise API
Exchange rate data only — no personal data is sent
Fanvue API
Your earnings data is retrieved via OAuth with your explicit authorisation
We may disclose data if required by law or to comply with a valid legal process.
06
Data Retention
We retain your data for as long as your account is active. If you delete your account, all associated data (workspace records, withdrawal history, transaction logs, partner information) is permanently deleted within 30 days.
07
Your Rights Under GDPR
As a data subject in the EU, you have the following rights:
Right of Access
Request a copy of all data we hold about you
Right to Rectification
Request correction of inaccurate data
Right to Erasure
Request full deletion of your account and data
Right to Portability
Request your data in machine-readable format — CSV export available in-app
Right to Object
Object to processing based on legitimate interests
Right to Restrict
Request that we limit how we use your data
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.
In-app deletion: Settings → About → Delete my data removes your account and all associated data immediately.
08
Data Security
- All data is transmitted over HTTPS with valid TLS certificates
- Fanvue OAuth tokens are encrypted at rest (AES-256-GCM) and stored server-side; the encryption key is held separately from the database
- Multi-tenant data is isolated by row-level security, so each agency can only access its own data
- Access to production data is restricted to the operator
- We do not log sensitive tokens or personal credentials
09
International Transfers
Your data is stored within the EU (Supabase EU region). Where any sub-processor operates outside the EU, we ensure appropriate safeguards are in place in accordance with GDPR Chapter V.
10
Children
Payout Manager is intended for adult agency operators and is not directed at anyone under 18. We do not knowingly collect data from minors.
11
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by updating the "Last updated" date at the top of this page. Continued use of the service after changes constitutes acceptance of the updated policy.
12
Supervisory Authority
If you believe we have not handled your data correctly, you have the right to lodge a complaint with your local EU data protection supervisory authority.
13
Contact
For any privacy-related questions or data requests: