Privacy Policy
How DiscoReady collects, uses and protects your personal data. Written in plain English, aligned with the GDPR.
1. Who controls your data
The data controller for the personal data processed via DiscoReady is:
- Controller: AZ Medias Limited
- Registered office: Office C, 23/F COS Centre, 56 Tsun Yip Street, Kwun Tong, Kowloon, Hong Kong
- Contact: contact@discoready.com
- Service : DiscoReady — discoready.com
DiscoReady is an independent service and is not affiliated with Google LLC. Any processing described below refers to data we collect ourselves, not data Google holds about you.
2. What data we collect
2.1 Data you provide to us directly
- Email address — when you submit the Profiler form to receive a result, or when you subscribe to a Pro plan or the newsletter.
- Queried domain — the public domain name you type into the Profiler tool.
- Any content you send us — for example, the body of an email or a support message.
2.2 Data collected automatically
- Technical log data — IP address (truncated after processing), user agent, timestamp, referrer. Collected via our hosting provider's standard HTTP logs for security and abuse prevention.
- Usage analytics — pages visited, device type, approximate geography. Only if and when a privacy-respecting analytics solution is enabled (not active at the date of this policy).
We do not collect special categories of data (health, political opinions, religious beliefs, biometric identifiers) and we do not buy personal data from third-party data brokers.
3. Why we collect it (purposes)
| Purpose | Data used |
|---|---|
| Deliver the Profiler result by email | Email, queried domain |
| Provide paid Pro plans and related services | Email, business contact details, billing data (via our future payment provider) |
| Send the optional newsletter | Email (only with explicit opt-in) |
| Security, abuse prevention, rate-limit enforcement | Technical log data (IP, user agent, timestamps) |
| Respond to user requests, questions and complaints | Email, content of the message |
| Comply with our legal obligations | Any data necessary to comply with a lawful request |
4. Legal basis
Under the GDPR, every personal data processing activity rests on a legal basis:
- Consent — for the newsletter and any optional marketing communication. You can withdraw your consent at any time via a one-click unsubscribe link.
- Performance of a contract — for delivering the Profiler result you asked for, and for fulfilling Pro plan obligations.
- Legitimate interest — for security, abuse prevention and service-improvement analytics, balanced against your rights and freedoms.
- Legal obligation — where applicable, for billing records or law enforcement requests.
5. How long we keep it
| Data | Retention period |
|---|---|
| Email submitted via Profiler (free tier) | 24 months after the last use of the Service, then automatic deletion |
| Newsletter email (with explicit opt-in) | Until unsubscribe + 6 months suppression list |
| Pro plan customer data | Duration of the contract + 5 years (French accounting / commercial law) |
| Technical logs (IP, user agent, timestamp) | 12 months maximum |
| Support emails | 24 months after the last interaction |
6. Who can access your data
Your data is accessed only by AZ Medias Limited staff and the following service providers, acting as processors on our behalf:
- Cloudflare, Inc. (USA) — web hosting, CDN and abuse prevention
- Email service provider — when we plug in one (Brevo, SendGrid, Resend or similar) to deliver Profiler results and newsletters. This policy will be updated accordingly.
- Payment provider (for Pro plans) — Stripe or a similar PCI-DSS compliant partner, when we start processing payments.
We do not sell, rent or trade your personal data.
7. International transfers
AZ Medias Limited is based in Hong Kong and our hosting provider Cloudflare, Inc. is based in the United States. Some of our future processors may also be based outside the European Economic Area. In such cases, transfers are covered by appropriate safeguards recognized by the European Commission, typically Standard Contractual Clauses (SCCs) and, where applicable, participation in the EU-US Data Privacy Framework.
8. Your GDPR rights
If you are located in the European Economic Area, the United Kingdom or Switzerland, you have the following rights over your personal data:
- Right of access — request a copy of the data we hold about you.
- Right to rectification — ask us to correct inaccurate or incomplete data.
- Right to erasure ("right to be forgotten") — ask us to delete your data, subject to legal retention obligations.
- Right to restriction of processing.
- Right to data portability — receive your data in a structured, machine-readable format.
- Right to object — to processing based on legitimate interest or for direct marketing purposes.
- Right to withdraw consent at any time, without affecting the lawfulness of processing before the withdrawal.
- Right to lodge a complaint with a supervisory authority (see below).
To exercise any of these rights, email us at contact@discoready.com. We respond within 30 days.
If you believe your rights are not respected, you can file a complaint with your local authority:
- France — CNIL (cnil.fr/en/plaintes)
- Belgium — APD (autoriteprotectiondonnees.be)
- United Kingdom — ICO (ico.org.uk)
9. Cookies and trackers
At the date of this policy, DiscoReady uses the minimum set of cookies strictly necessary for the Service to function:
sessionStorage/localStorageentrylang_set— remembers your explicit language choice so we don't re-redirect you on each visit. No personal data attached.
We do not currently use analytics cookies, advertising trackers, or third-party pixels. If this changes, we'll update this policy and show a consent banner as required by applicable law.
10. Security
We apply technical and organizational measures proportionate to the risk: HTTPS everywhere, up-to-date hosting platform, limited access to data (one publisher, no team), encrypted transport for any third-party processor. No system is 100% secure, but we do our best and we notify affected users if a breach affects their data.
11. Children's data
DiscoReady is not aimed at users under 16. We do not knowingly collect data from children. If you believe a child has provided us with personal data, contact us and we will delete it.
12. Changes to this policy
We may update this policy to reflect changes in the Service, legal requirements or business practices. The effective date is indicated at the top of the page. Significant changes will be communicated on the Service and, if relevant, via email to the addresses we hold.
13. Contact
For any privacy-related question, request or complaint, email contact@discoready.com.
Read our Terms of Service for the contractual framework, and the Legal notice for publisher identification.
