Privacy Policy
Last updated: March 13, 2026
1. Information We Collect
We collect the following types of information when you use OpenFans:
- Account Information: Name, email address, username, display name, profile bio, and avatar/banner images you provide during registration and profile setup.
- Wallet Information: Your Solana wallet public address when you connect a wallet for payouts or payments. We never have access to your private keys.
- Payment Data: Transaction records including subscription payments, tips, deposits, and withdrawals processed through the Platform. All USDC transactions are recorded on the Solana blockchain and are publicly visible.
- Content: Any content you upload, including images, videos, text posts, and messages sent through the Platform.
- Usage Data: IP address, browser type and version, device information, operating system, referring URLs, pages visited, interaction patterns, and timestamps collected automatically when you use the Platform.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Platform and its features
- Process payments, manage subscriptions, and calculate platform fees
- Send you notifications related to your account, subscriptions, and earnings
- Detect and prevent fraud, abuse, unauthorized access, and security incidents
- Enforce our Terms of Service and content policies
- Comply with legal obligations, including tax reporting requirements
- Analyze usage patterns to improve user experience and Platform performance
- Communicate with you about updates, changes, or issues related to your account
3. Data Storage & Infrastructure
Your account data, content metadata, and Platform records are stored securely using Supabase, a managed database platform with data centers in the United States. Data is encrypted in transit (TLS) and at rest (AES-256). Database backups are performed regularly and retained for disaster recovery purposes.
Blockchain Data: All USDC payment transactions, subscription records, and wallet interactions are recorded on the Solana blockchain. On-chain data is permanent, publicly visible, and cannot be modified or deleted by OpenFans or any party. Your Solana wallet address and transaction history are inherently public information on the blockchain.
4. Information Sharing
We do not sell, rent, or trade your personal information to third parties for marketing purposes. We may share your information in the following circumstances:
- Service Providers: With trusted third-party services that help us operate the Platform, including Supabase (database), Solana RPC providers (blockchain interaction), and analytics services. These providers are contractually bound to protect your data.
- Legal Requirements: When required by law, subpoena, court order, or government request, or to protect the rights, safety, and property of OpenFans and its users.
- Public Profiles: Creator profiles, display names, avatars, and public content are visible to all users of the Platform. Subscriber lists and private content are only visible to the respective Creator.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction.
5. Cookies & Tracking
We use the following types of cookies and similar technologies:
- Essential Cookies: Required for authentication, session management, and security. These cannot be disabled without breaking core Platform functionality.
- Preference Cookies: Store your settings and preferences (theme, language, notification settings) to personalize your experience.
- Analytics Cookies: Help us understand how users interact with the Platform, which pages are most visited, and where users encounter issues. We may use privacy-respecting analytics tools that do not track users across websites.
You can control cookie preferences through your browser settings. Disabling essential cookies may prevent you from using the Platform.
6. Third-Party Services
OpenFans integrates with the following third-party services:
- Supabase: Database hosting, authentication, and file storage. Subject to Supabase's privacy policy.
- Solana Network: Blockchain infrastructure for USDC payments and wallet interactions. On-chain data is publicly accessible and governed by the decentralized Solana protocol.
- Wallet Providers: When you connect a Solana wallet (Phantom, Solflare, etc.), your interaction with that wallet is governed by the wallet provider's own terms and privacy policy.
7. Your Rights (GDPR & Global Privacy)
Regardless of your location, we respect your privacy rights. If you are a resident of the European Economic Area (EEA), United Kingdom, California, or any jurisdiction with applicable privacy legislation, you have the following rights:
- Right of Access: Request a copy of the personal information we hold about you.
- Right to Rectification: Request correction of inaccurate or incomplete personal information.
- Right to Erasure: Request deletion of your account and associated personal data, subject to legal retention obligations. Note that on-chain blockchain data cannot be erased.
- Right to Restriction: Request that we limit the processing of your personal data in certain circumstances.
- Right to Data Portability: Request your data in a structured, commonly used, machine-readable format.
- Right to Object: Object to the processing of your personal data for certain purposes, including direct marketing.
- Right to Withdraw Consent: Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
To exercise any of these rights, please contact us at privacy@openfans.online. We will respond to your request within 30 days.
8. Data Retention
We retain your personal information for as long as your account is active or as needed to provide services. Upon account deletion:
- Your profile data, content, and messages will be removed within 30 days
- Transaction records may be retained for up to 7 years for legal and tax compliance
- Anonymized, aggregated analytics data may be retained indefinitely
- On-chain blockchain records are permanent and cannot be deleted by any party
9. Data Security
We implement industry-standard security measures to protect your personal information, including encryption in transit (TLS 1.3) and at rest (AES-256), secure authentication with session management, and regular security audits. Access to personal data is restricted to authorized personnel on a need-to-know basis.
However, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security and recommend that you use a strong, unique password and enable two-factor authentication when available.
10. Children's Privacy
OpenFans is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from minors. If we discover that a user under 18 has created an account, we will promptly terminate it and delete associated data.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page, updating the "Last updated" date, and sending a notification via email or in-app alert. Your continued use of the Platform after changes become effective constitutes acceptance of the revised policy.
12. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at privacy@openfans.online.
For general support inquiries, you can reach us at support@openfans.online.
