Privacy Policy

Last updated: March 15, 2026

FairPlay ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our price comparison service. Please read this policy carefully. If you disagree with its terms, please discontinue use of our platform.

1. Information We Collect

Account Information. When you register for a FairPlay account, we collect your name, email address, and a hashed password. You may optionally provide a profile picture and preferences. This information is necessary to create and maintain your account.

Usage and Behavioral Data. As you use FairPlay, we collect information about how you interact with our platform, including search queries, products viewed, price alerts set, and pages visited. This data helps us understand what features are most useful and how to improve the service.

Device and Technical Data. We automatically collect certain technical information when you visit FairPlay, including your IP address, browser type and version, operating system, referring URLs, and device identifiers. This information is used for security monitoring, debugging, and delivering a consistent experience across devices.

Communications Data. If you contact us via our support form or email, we retain the contents of that communication along with your contact details in order to respond to and follow up on your inquiry.

Payment Information. If you subscribe to a paid plan, payment details are collected and processed directly by Stripe. FairPlay never stores your full credit card number or billing details on our servers.

2. How We Use Your Information

We use the information we collect for the following purposes, each grounded in a lawful basis under applicable data protection law:

  • Providing the service (contract performance): Creating and managing your account, delivering price comparison results, sending price alerts and deal notifications you have opted into, and processing subscription payments.
  • Improving the platform (legitimate interest): Analyzing aggregate usage patterns to prioritize product improvements, identify bugs, and optimize search relevance and performance.
  • Security and fraud prevention (legitimate interest): Detecting and preventing unauthorized access, abuse, and fraudulent activity on the platform.
  • Legal compliance (legal obligation): Responding to lawful requests from government authorities, complying with applicable law, and enforcing our Terms of Service.
  • Communications (consent): Sending product updates, newsletters, and promotional offers where you have given explicit consent. You may withdraw consent at any time by unsubscribing or adjusting your notification preferences.

We do not sell, rent, or trade your personal information to third parties for their own marketing purposes.

3. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to operate and improve FairPlay. You can control non-essential cookies through your browser settings or our cookie preference center. The following categories of cookies are in use:

  • Strictly Necessary Cookies: Required for authentication, session management, and core platform functionality. These cannot be disabled without breaking core features.
  • Analytics Cookies: We use PostHog to collect anonymized data on how users navigate FairPlay — which pages are visited most, where users drop off, and how features are used. This helps us make informed improvements. PostHog is configured to respect Do Not Track signals and does not share data for advertising purposes.
  • Preference Cookies: Store your display preferences (such as sort order and filter settings) so you don't have to reconfigure them on each visit.

You may disable non-essential cookies at any time through your browser settings. Note that disabling analytics cookies does not affect your ability to use FairPlay's core features.

4. Third-Party Services

We work with a small number of trusted third-party service providers to operate FairPlay. Each receives only the data necessary for its function:

  • Supabase — Provides our database infrastructure and authentication services. Account data, search history, and saved alerts are stored in Supabase-hosted databases. Data is encrypted at rest and in transit.
  • Stripe — Processes subscription payments. Stripe receives your payment card details and billing address directly; FairPlay only receives a tokenized reference and transaction status.
  • PostHog — Provides privacy-friendly product analytics. Usage event data is transmitted to PostHog without personally identifying information. IP addresses are anonymized before storage.
  • Vercel — Hosts and deploys our web application. Vercel may process request logs including IP addresses as part of normal infrastructure operation.

Each service has its own privacy policy governing its use of your data. We do not share your personal data with any other third parties except as required by law or as necessary to investigate fraud or abuse on the platform.

5. Data Retention

We retain your personal information only as long as necessary to fulfill the purposes described in this policy or as required by law:

  • Account data is retained for the duration of your account and for up to 90 days after deletion to allow for recovery and abuse investigation, after which it is permanently purged.
  • Usage and analytics data is retained in aggregated, anonymized form indefinitely, but event-level data linked to individual users is deleted after 24 months.
  • Support communications are retained for up to 3 years to provide context for follow-up inquiries and to comply with applicable record-keeping requirements.
  • Payment records are retained for 7 years as required by financial regulations. Payment details themselves are not stored by FairPlay.

6. Data Security

We implement industry-standard technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction:

  • All data in transit is encrypted using TLS 1.2 or higher.
  • Data at rest in our database is encrypted using AES-256.
  • Access to production systems and user data is restricted to authorized personnel on a need-to-know basis and protected by multi-factor authentication.
  • We conduct regular security reviews and dependency audits.

In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify affected users and relevant supervisory authorities within 72 hours of becoming aware of the breach, as required by applicable law.

No method of transmission or storage is 100% secure. While we take reasonable precautions, we cannot guarantee absolute security.

7. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal information. To exercise any of these rights, email us at privacy@fairplay.com. We will respond within 30 days.

For users in the European Economic Area (GDPR):

  • Right of Access: Request a copy of the personal data we hold about you.
  • Right to Rectification: Request correction of inaccurate or incomplete data.
  • Right to Erasure: Request deletion of your personal data ("right to be forgotten"), subject to certain exceptions.
  • Right to Restriction: Request that we limit how we process your data in certain circumstances.
  • Right to Data Portability: Receive your data in a structured, machine-readable format.
  • Right to Object: Object to processing based on legitimate interests or for direct marketing purposes.
  • Right to Lodge a Complaint: File a complaint with your local data protection authority.

For California residents (CCPA/CPRA):

  • Right to Know: Request disclosure of the categories and specific pieces of personal information collected about you.
  • Right to Delete: Request deletion of personal information we have collected from you.
  • Right to Opt-Out: We do not sell personal information. No opt-out is required.
  • Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights.

You can export or delete your account directly from your account settings page for most requests. For requests that require manual intervention, please email us and we will respond within 30 days.

8. Children's Privacy

FairPlay is not directed to children under the age of 13, and we do not knowingly collect personal information from children. If we become aware that a child under 13 has provided us with personal information, we will take immediate steps to delete that information. If you believe we have inadvertently collected information from a child, please contact us at privacy@fairplay.com.

9. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or platform features. When we make material changes, we will notify you by:

  • Updating the "Last updated" date at the top of this page.
  • Sending an email notification to registered users at least 14 days before the changes take effect.
  • Displaying a notice within the platform on your next login.

Your continued use of FairPlay after changes become effective constitutes your acceptance of the revised policy. We encourage you to review this page periodically.

10. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please reach out:

We aim to respond to all privacy-related inquiries within 5 business days.