Privacy Policy

Last updated: February 2026

1. Data Controller

Basis 33 GmbH
Musterstraße 1
10115 Berlin, Germany
Email: privacy@viralscribe.ai

2. Data We Collect

We collect and process the following personal data:

  • Name and email address (upon registration)
  • Company name (optional)
  • Usage data (analyses, search queries, generated scripts)
  • Payment data (processed by our payment provider, not stored by us)
  • Technical data (IP address, browser type, access times)

3. Purpose of Processing

Your data is processed exclusively for the following purposes:

  • Providing and operating the service
  • Account management and authentication
  • Payment processing
  • Service improvement and user experience
  • Communication (transactional emails such as registration, password reset, purchase confirmations)

4. Legal Basis

Processing is based on:

  • Art. 6(1)(b) GDPR — Contract performance (providing the service)
  • Art. 6(1)(f) GDPR — Legitimate interest (improvement, security)
  • Art. 6(1)(a) GDPR — Consent (where applicable)

5. Data Transfers

Your data is generally processed within the EU/EEA. Where transfer to third countries is necessary, it is carried out in compliance with legal requirements (e.g., EU Standard Contractual Clauses).

6. Data Retention

Your data is stored as long as your account is active and necessary for the purposes stated above. Upon account deletion, your data will be permanently deleted within 30 days, unless statutory retention obligations apply.

7. Your Rights

Under the GDPR, you have the following rights:

  • Right of access — Information about your stored data
  • Right to rectification — Correction of inaccurate data
  • Right to erasure — Deletion of your data
  • Right to restriction — Restriction of processing
  • Right to data portability — Export of your data
  • Right to object — Object to the processing

To exercise your rights, contact us at: privacy@viralscribe.ai

You also have the right to lodge a complaint with a data protection supervisory authority.

8. Cookies and Local Storage

We only use technically necessary local storage mechanisms (authentication token, language preference). No third-party tracking cookies are used.

9. Web Analytics

We use a privacy-friendly analytics tool that does not collect personal data, does not set cookies, and is fully GDPR-compliant.

10. Data Security

We employ technical and organizational measures to protect your data from unauthorized access, loss, or misuse. These include encryption in transit (TLS/SSL), secure password hashing, and regular security reviews.

11. Changes to This Privacy Policy

We reserve the right to update this privacy policy as needed. The current version is always available on this page.