Back to home

Template — have this reviewed by a lawyer before launch. This text is a starting point only and is not legal advice. Placeholders are shown in [brackets].

Privacy Policy

Version 2026-10

This policy explains how [Legal entity name] (“we”, “us”), operator of Sunny Kim Trading Coach, collects and uses personal data when you use our website, member portal, webinars and community.

1. Data we collect

  • Account data: name, email address, password hash, two-factor settings and profile details you provide.
  • Billing data: plan, payment status and history. Card details are processed by Stripe — we never see or store your full card number.
  • Crypto payment data: wallet addresses you use or verify, transaction hashes and network. Blockchain data is public by nature.
  • Community data: your Telegram user ID and username when you link Telegram, used to manage access to the private group.
  • Webinar data: registration and attendance information from Zoom, used to issue personal join links and manage access.
  • Support data: messages you send us and support ticket history.
  • Technical data: IP address, device and browser information, session cookies and security logs.

2. How we use it

  • To create and secure your account and provide the Service.
  • To process payments, renewals and refunds, and to send renewal reminders.
  • To grant and revoke access to webinars and the Telegram community according to your membership status.
  • To prevent fraud, account sharing and abuse, and to comply with legal obligations (including sanctions screening where applicable).
  • To send service emails. Marketing emails are sent only where permitted, and you can unsubscribe at any time.

[State your legal bases for processing (e.g. contract, legitimate interests, consent, legal obligation) if GDPR/UK GDPR applies.]

3. Sharing

We share data only with service providers who help us run the Service, under appropriate agreements, including:

  • Stripe (card payments), Zoom (webinars), Telegram (community), our email delivery provider and our hosting provider.
  • Professional advisers and authorities where required by law.

We do not sell your personal data.

4. Cookies

We use strictly necessary cookies to keep you signed in and protect your account. [List any analytics or marketing cookies and how to opt out.]

5. Retention

We keep account and billing records for as long as your account is active and afterwards for as long as needed to meet legal, tax and accounting obligations [e.g. 7 years for payment records]. Security logs are kept for [period].

6. Security

We use encryption in transit, hashed passwords, optional two-factor authentication and access controls for staff. No system is perfectly secure, however.

7. Your rights

Depending on where you live, you may have the right to access, correct, delete or export your data, and to object to or restrict certain processing. To exercise these rights contact support@example.com. You may also complain to your local data protection authority.

8. International transfers

Our providers may process data outside your country. [Describe safeguards, e.g. Standard Contractual Clauses.]

9. Children

The Service is not intended for anyone under 18, and we do not knowingly collect their data.

10. Changes

We may update this policy and will notify you of material changes by email or in the portal.

11. Contact

[Legal entity name], [address]. Email: support@example.com.