Privacy Policy
Last updated: 1st September 2025
1. About This Policy
Pixel Candy ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our LED video wall calculation and design services.
As a UK-based company, we comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Information We Collect
Personal Information You Provide
- Account Information: Username, email address, password (encrypted)
- Profile Data: Optional profile information you choose to provide
- Payment Information: Processed securely via Stripe (we don't store card details)
- Communication Data: Support emails, feedback, and correspondence
Project and Usage Data
- Project Data: Video wall designs, cable plans, and calculations you create
- Usage Analytics: Feature usage, session duration, and interaction patterns
- Device Information: Browser type, operating system, screen resolution
- Log Data: IP addresses, timestamps, and error logs for service improvement
Automatically Collected Information
- Cookies: Essential cookies for functionality and optional analytics cookies
- Technical Data: Browser capabilities, referrer URLs, and performance metrics
- OAuth Data: Basic profile information from Google/Microsoft (if you use social login)
3. How We Use Your Information
Service Delivery
- Provide access to calculators and design tools
- Save and sync your projects across devices
- Generate PDF exports and documentation
- Process subscription payments and manage billing
Service Improvement
- Analyze usage patterns to improve features
- Identify and fix technical issues
- Develop new calculators and panel database entries
- Optimize performance and user experience
Communication
- Send account-related notifications and updates
- Provide customer support and respond to inquiries
- Send optional marketing communications (with your consent)
- Notify you of service changes or security updates
4. Legal Basis for Processing (UK GDPR)
We process your personal data based on the following legal grounds:
- Contract Performance: To provide our service as agreed in our Terms of Service
- Legitimate Interests: To improve our service, prevent fraud, and ensure security
- Consent: For marketing communications and non-essential analytics
- Legal Obligation: To comply with tax, accounting, and legal requirements
5. Data Sharing and Disclosure
Third-Party Services
We work with trusted third parties to provide our service:
- Stripe: Payment processing (they have their own privacy policy)
- Google/Microsoft: OAuth authentication (minimal data sharing)
- Analytics Providers: Anonymized usage data for service improvement
- Cloud Hosting: Secure data storage and application hosting
Legal Requirements
We may disclose information if required by law or to:
- Comply with legal process or government requests
- Protect our rights, property, or safety
- Prevent fraud or investigate security incidents
- Enforce our Terms of Service
6. Data Security
We implement industry-standard security measures:
- Encryption: Data encrypted in transit and at rest
- Access Controls: Strict authentication and authorization
- Regular Updates: Security patches and system updates
- Monitoring: Continuous security monitoring and incident response
- Staff Training: Regular security awareness training
🔒 Security Note: While we implement robust security measures, no internet transmission is 100% secure. We cannot guarantee absolute security but continuously work to protect your data.
7. Your Privacy Rights (UK GDPR)
Under UK GDPR, you have the following rights:
Access and Portability
- Right of Access: Request copies of your personal data
- Right of Portability: Export your data in a structured format
Correction and Deletion
- Right of Rectification: Correct inaccurate personal data
- Right of Erasure: Request deletion of your personal data
- Right of Restriction: Limit how we process your data
Control and Objection
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent for marketing or analytics
Exercise Your Rights:
Email: privacy@pixel-candy.com
We will respond to requests within 30 days as required by UK GDPR
8. Data Retention
We retain your data based on the following schedule:
- Active Accounts: Data retained while account is active
- Inactive Accounts: Deleted after 3 years of inactivity
- Project Data: Retained until account deletion or user request
- Payment Records: Retained for 7 years per UK tax requirements
- Support Communications: Retained for 2 years
- Analytics Data: Anonymized and aggregated, retained indefinitely
9. International Data Transfers
Your data is primarily processed within the UK and EU. If we transfer data outside these regions, we ensure appropriate safeguards through:
- Standard Contractual Clauses approved by the UK authorities
- Adequacy decisions for specific countries
- Other appropriate transfer mechanisms as required by law
10. Children's Privacy
Our service is not intended for children under 16. We do not knowingly collect personal information from children under 16. If we become aware that a child under 16 has provided personal information, we will delete it promptly.
11. Cookies and Tracking
We use cookies and similar technologies for:
Essential Cookies
- User authentication and session management
- Security and fraud prevention
- Basic functionality and preferences
Analytics Cookies (Optional)
- Usage statistics and performance monitoring
- Feature effectiveness and user behavior
- Service improvement insights
You can control cookies through your browser settings or our cookie preferences.
12. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of material changes via:
- Email notification to registered users
- Prominent notice on our website
- In-app notification for significant changes
13. Contact Information
For privacy-related questions or to exercise your rights:
Data Protection Officer
Email: privacy@pixel-candy.com
Subject Line: "Privacy Request - [Your Request Type]"
Website: https://pixel-candy.com
14. Supervisory Authority
If you believe we have not adequately addressed your privacy concerns, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO):
This Privacy Policy is designed to be transparent and user-friendly. If you have questions or need clarification, please contact us.