Privacy Policy
We're committed to protecting your privacy and being transparent about how we collect, use, and safeguard your information.
Introduction
Deal Goblins ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform, including our website and services (collectively, the "Platform").
By using Deal Goblins, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies and practices, please do not use our Platform.
This Privacy Policy is governed by Australian privacy laws, including the Privacy Act 1988 (Cth) and the Australian Privacy Principles. We are committed to complying with these laws and protecting your personal information.
Last Updated: 4 December 2025
Information We Collect
We collect information that you provide directly to us, as well as information that is automatically collected when you use our Platform.
Information You Provide to Us
- •Account Information: When you create an account, we collect your full name, email address, phone number (if provided), and role (venue owner, admin, or diner). This information is stored in your user profile.
- •Venue Information: If you are a venue owner, we collect information about your venue, including venue name, address, contact details (phone, email, website, Instagram handle), venue type, description, logo images, banner images, and brand colors.
- •Deal Information: When you create deals, we collect deal titles, descriptions, pricing information, images, timing details, meal types, dietary tags, and other deal-related content.
- •Payment Information: When you subscribe to a paid plan, payment information is processed through Stripe. We do not store your full payment card details on our servers. We store Stripe customer IDs and subscription IDs to manage your subscription.
- •Deal Submissions: If you submit a deal for moderation, we collect the venue name, address, deal details, pricing, and any other information you provide in the submission form.
- •Communications: When you contact us through email, contact forms, or other means, we collect the information you provide, including your name, email address, and the content of your message.
Information Automatically Collected
- •Usage Data: We automatically collect information about how you interact with our Platform, including pages visited, features used, time spent on pages, and navigation patterns.
- •Deal Views: When you view deals, we collect information about which deals you viewed, when you viewed them, your IP address (hashed for privacy), and your user agent (browser/device information).
- •Device Information: We may collect information about your device, including device type, operating system, browser type, screen resolution, and other technical information.
- •Location Information: We may collect approximate location information based on your IP address or if you provide location data when searching for deals in specific suburbs or areas.
- •Log Data: Our servers automatically log information when you access our Platform, including IP addresses, access times, pages viewed, and error messages.
Information from Third Parties
- •Google Authentication: When you sign in with Google, we receive your Google account information, including your name, email address, and profile picture (if available). This information is used to create and manage your Deal Goblins account.
- •Stripe: When you subscribe to a paid plan, Stripe provides us with payment status, subscription details, and billing information necessary to manage your subscription.
How We Use Your Information
We use the information we collect for the following purposes:
- •To Provide and Maintain Our Platform: We use your information to create and manage your account, process your transactions, display deals, and provide customer support.
- •To Process Subscriptions: We use payment information to process subscription payments, manage billing, and provide access to premium features.
- •To Communicate with You: We use your contact information to send you account-related notifications, respond to your inquiries, provide customer support, and send important updates about our Platform.
- •To Improve Our Platform: We analyze usage data, deal views, and user behavior to understand how our Platform is used, identify trends, and improve user experience, features, and functionality.
- •To Moderate Content: We review deal submissions, venue listings, and user-generated content to ensure compliance with our Terms of Use and maintain platform quality.
- •To Verify Venues: We use contact information and documentation to verify venue ownership and legitimacy, including email and phone verification.
- •To Prevent Fraud and Abuse: We use information to detect, prevent, and address fraudulent activity, unauthorized access, and other security issues.
- •To Comply with Legal Obligations: We may use your information to comply with applicable laws, regulations, legal processes, or governmental requests.
- •To Enforce Our Terms: We use information to enforce our Terms of Use, investigate potential violations, and take appropriate action.
Third-Party Services
Our Platform integrates with third-party services that have their own privacy policies. We encourage you to review their privacy policies:
- •Google: We use Google authentication for user sign-in. Google's privacy policy governs how they collect and use your information. You can review Google's privacy policy at policies.google.com/privacy.
- •Stripe: We use Stripe to process payments and manage subscriptions. Stripe's privacy policy governs how they collect and use your payment information. You can review Stripe's privacy policy at stripe.com/privacy.
- •Supabase: We use Supabase for database storage, authentication, and file storage. Supabase's privacy policy governs how they handle your data. You can review Supabase's privacy policy at supabase.com/privacy.
- •Vercel: We use Vercel to host our Platform. Vercel's privacy policy governs how they handle server logs and hosting data. You can review Vercel's privacy policy at vercel.com/legal/privacy-policy.
We are not responsible for the privacy practices of these third-party services. Your interactions with these services are governed by their respective privacy policies.
Data Storage and Security
Data Storage: Your information is stored on secure servers provided by Supabase and Vercel. Data is stored in Australia and may be backed up in other locations as part of our service providers' infrastructure.
Security Measures: We implement appropriate technical and organizational measures to protect your personal information, including:
- •Encryption of data in transit using SSL/TLS protocols
- •Secure authentication and access controls
- •Regular security assessments and updates
- •Limited access to personal information on a need-to-know basis
- •IP address hashing for deal view tracking to protect privacy
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.
Data Breaches: In the event of a data breach that may affect your personal information, we will notify you and relevant authorities as required by applicable law.
Your Rights
Under Australian privacy laws, you have certain rights regarding your personal information:
- •Access: You have the right to request access to the personal information we hold about you. You can access much of your information through your account settings, or you can contact us to request a copy of your data.
- •Correction: You have the right to request correction of inaccurate, incomplete, or out-of-date personal information. You can update much of your information through your account settings.
- •Deletion: You have the right to request deletion of your personal information, subject to certain legal and operational requirements. You can delete your account through your account settings, or contact us to request deletion.
- •Objection: You have the right to object to certain processing of your personal information. You can opt out of marketing communications at any time.
- •Data Portability: You have the right to request a copy of your data in a portable format. Contact us to request your data export.
- •Withdraw Consent: If we process your information based on consent, you have the right to withdraw your consent at any time.
To exercise these rights, please contact us using the information provided in the Contact Information section. We will respond to your request within a reasonable timeframe and in accordance with applicable law.
Note: Some information may be retained for legal, regulatory, or operational purposes even after you request deletion, as described in our Data Retention section.
Children's Privacy
Our Platform is not intended for children under the age of 18. We do not knowingly collect personal information from children under 18.
If you are a parent or guardian and believe that your child has provided us with personal information, please contact us immediately. If we become aware that we have collected personal information from a child under 18, we will take steps to delete that information from our systems.
Note: While anyone may browse and view deals on our Platform, creating an account and listing venues requires users to be at least 18 years old, as stated in our Terms of Use.
International Data Transfers
Your information is primarily stored and processed in Australia. However, some of our service providers may store or process your information in other countries, including:
- •Supabase: May store data in regions outside Australia as part of their global infrastructure
- •Stripe: Processes payment information in accordance with their global operations
- •Vercel: May host our Platform in regions outside Australia
When we transfer your information to other countries, we take appropriate measures to ensure your information is protected in accordance with this Privacy Policy and applicable privacy laws. By using our Platform, you consent to the transfer of your information to these countries.
Data Retention
We retain your personal information for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.
- •Account Information: We retain your account information for as long as your account is active. If you delete your account, we will delete or anonymize your personal information, subject to legal and operational requirements.
- •Venue and Deal Information: Public venue and deal information may remain on the Platform even after account deletion if it has been indexed by search engines or cached by third parties. We will remove this information from our active systems upon account deletion.
- •Transaction Records: We retain payment and subscription records as required by law and for accounting purposes, typically for 7 years.
- •Log Data: We retain server logs and usage data for a limited period, typically up to 12 months, for security and operational purposes.
- •Legal Requirements: We may retain certain information for longer periods if required by law, court order, or to resolve disputes.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by:
- •Posting the updated Privacy Policy on this page
- •Updating the "Last Updated" date at the top of this policy
- •Sending you an email notification (for material changes) if you have an account with us
Your continued use of our Platform after any changes to this Privacy Policy constitutes acceptance of those changes. If you do not agree with the updated policy, you should stop using our Platform and may delete your account.
We encourage you to review this Privacy Policy periodically to stay informed about how we collect, use, and protect your information.
Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
- Email: privacy@dealgoblins.com
- Website: dealgoblins.com/contact
If you are not satisfied with our response to your privacy concerns, you may contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.