Miven
Miven

Privacy Policy

Effective date: June 2026

1. Who we are

Miven provides a payment platform that helps creators earn money from their content. When you use our service, we process some of your personal data. This policy tells you what we collect, why we need it, and what rights you have.

2. What data we collect

We collect only the data we need to provide our service. Here is exactly what that includes:

  • Account information — your email address and the authentication method you choose (such as Google or Apple sign-in). We store this to identify you and keep your account secure.
  • Payment records — when you make or receive a payment, we keep a record of the transaction: the amount, the time, and what content was purchased. We need this to settle payments and show you your earnings history.
  • Content metadata — if you are a creator, we store the URLs and pricing information for the content you choose to monetize. We do not access, store, or host your actual content files. Your content stays where you put it.
  • Public wallet address — a unique identifier on the payment network that allows funds to be sent to you. This is generated when you first use the platform. We never have access to your private keys.

3. How we collect your data

You provide us with data directly when you:

  • Create an account or sign up for the waitlist.
  • Add content to monetize and set your prices.
  • Make a payment to unlock someone's content.
  • Contact our support team.

We do not buy data from third parties, and we do not collect data from public sources or social media profiles. The data we hold comes from you, through your use of the platform.

4. Why we process your data — legal basis

Under the GDPR and equivalent laws, every use of personal data must have a valid legal basis. We process your data on these grounds:

  • Contractual necessity — we process your account information, content metadata, and payment records to deliver the service you signed up for. Without this data, we cannot provide the platform.
  • Legitimate interest — we process anonymised usage data to monitor platform stability and prevent fraud. We may also use your email to send essential service updates such as changes to these terms or security notices.
  • Consent — if we ever send you marketing communications or product updates beyond essential service messages, we will ask for your explicit consent first. You can withdraw that consent at any time.

5. Who we share your data with

We use a small number of carefully selected infrastructure providers to operate the platform. These providers process data on our instructions and are contractually bound to the same data protection standards we follow. They include:

  • Hosting and database provider — stores account profiles and transaction records. Data is encrypted at rest and in transit.
  • Payment infrastructure provider — processes wallet creation and payment settlement. Your private keys are generated and managed exclusively by this provider; we never see or store them.
  • Edge network provider — delivers the platform globally with low latency. Processes requests at the network edge without storing application-level data.

We do not sell your data. We do not share your data with advertisers or data brokers. If a legal authority requests your data through a valid court order, we will comply only to the extent required by law, and we will notify you unless prohibited from doing so.

6. International data transfers

Some of our infrastructure providers operate data centres outside the European Economic Area. When data is transferred internationally, we ensure it is protected through one of these safeguards: the provider is certified under an approved data protection framework, or we have signed Standard Contractual Clauses approved by the European Commission. You can request a copy of these safeguards by contacting us.

7. How we protect your data

  • All communication between your device and our servers is encrypted using modern transport-layer security.
  • Your authentication session is stored exclusively in a secure cookie that cannot be read by third-party scripts running in your browser.
  • Access tokens are temporary and expire automatically. We do not store long-lived credentials on our servers.
  • Payment credentials such as private keys are never handled by our systems. They remain in the custody of the dedicated payment infrastructure we use.
  • We apply strict access controls so that only essential systems and personnel can reach your data.

8. How long we keep your data

We retain your account information and transaction history for as long as your account remains active. If you close your account, we will delete your personal data within 60 days, except where we are legally required to keep records for a longer period (for example, transaction logs needed for tax or anti-fraud purposes). Anonymised or aggregated data that cannot identify you may be kept for analytics.

9. Your rights

Depending on where you live, you have the following rights over your personal data:

  • Access — request a copy of the personal data we hold about you.
  • Correction — ask us to fix inaccurate or incomplete data.
  • Deletion — ask us to erase your personal data, subject to legal retention obligations.
  • Restriction — ask us to limit how we process your data in certain circumstances.
  • Portability — receive your data in a structured, commonly used format, or ask us to send it to another provider.
  • Objection — object to processing based on legitimate interest.
  • Withdraw consent — where processing is based on your consent, you can withdraw it at any time without affecting the lawfulness of processing that occurred before withdrawal.

To exercise any of these rights, email us at privacy@miven.dev. We respond to all legitimate requests within 30 days. There is no charge for exercising your rights unless the request is manifestly unfounded or excessive.

10. Cookies

We use a minimal set of first-party cookies that are strictly necessary for the platform to function: one to keep you signed in and one to remember your display preferences. These cookies do not track you across other websites and are not used for advertising. You can disable cookies in your browser settings, but some features of the platform may stop working. We do not use third-party tracking cookies, analytics cookies, or advertising identifiers of any kind.

11. Children's privacy

Our service is not directed at anyone under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us immediately and we will delete it.

12. Updates to this policy

We review this policy regularly and update it when our practices change or when the law requires it. The date at the top of the page shows when it was last revised. If we make a material change, we will notify you through the platform or by email before it takes effect. Continuing to use Miven after a policy update means you accept the new terms.

13. Complaints

If you believe your data protection rights have been violated, you have the right to file a complaint with the data protection authority in your country. We encourage you to contact us first so we can try to resolve the issue directly.

14. Contact

Questions about this policy or your data? Reach out to our Data Protection team:

Email: privacy@miven.dev