This Privacy Policy explains how BEEYONDTHEWORLD LIMITED (“we”, “us”, “our”), operator of Lolmanager.com(the “Service”), collects, uses and protects your personal data. We are the “data controller” under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Who this policy applies to
The Service is intended for users aged 16 and over. We do not knowingly collect personal data from children under 16. If you believe a child has provided us with personal data, please contact us and we will delete it.
2. What personal data we collect
We collect and process the following categories of personal data:
- Account data: email address, username, and a hashed password.
- Subscription and payment data: Stripe customer ID, subscription ID, subscription status, and billing events. We do notstore your full card number, CVC or bank details — these are handled directly by Stripe.
- Game data: your in-game save state, settings and preferences. This is stored against your account so you can resume play.
- Discord linking (optional): if you link a Discord account for beta or community access, we store your Discord user ID and handle.
- Communications: the content of any emails you send us and any transactional emails we send to you (for example, account confirmations, password resets, subscription receipts).
- Technical data: IP address, browser type, device type, and log data generated when you interact with the Service. This is retained only for security and diagnostic purposes.
We do not use third-party analytics, advertising trackers, or behavioural profiling tools on the Service.
3. How we use your data and our legal basis
- To provide the Service(create and authenticate your account, save your game, deliver paid features) — legal basis: performance of a contract.
- To take payment and manage subscriptions— legal basis: performance of a contract.
- To send transactional emails(receipts, security alerts, essential service notices) — legal basis: performance of a contract and legitimate interests.
- To protect the Service(fraud prevention, abuse detection, security) — legal basis: legitimate interests.
- To comply with legal obligations(tax records, responding to lawful requests) — legal basis: legal obligation.
4. Who we share your data with
We share personal data only with service providers who help us run the Service, bound by appropriate contractual safeguards:
- Stripe(payments) — payment processing and subscription management.
- Neon(database hosting) — storage of your account and game data.
- Our email provider— delivery of transactional emails.
- Discord(where you choose to link) — community and beta access.
We do not sell your personal data. We will disclose personal data if required by law, court order, or to protect the rights, property, or safety of BEEYONDTHEWORLD LIMITED, our users, or others.
5. International transfers
Some of our providers may process data outside the United Kingdom or European Economic Area. Where this happens, we rely on appropriate safeguards (such as the UK International Data Transfer Agreement, the EU Standard Contractual Clauses, or an adequacy decision) to protect your data.
6. How long we keep your data
- Account and game data: for as long as your account is active, plus up to 30 days after deletion to allow for recovery.
- Payment records: up to 7 years, as required by UK tax and accounting law.
- Technical / log data: up to 90 days, unless required longer for a security investigation.
7. Your rights
Under UK GDPR, you have the right to:
- access the personal data we hold about you;
- request correction of inaccurate data;
- request erasure (“right to be forgotten”);
- restrict or object to processing;
- data portability;
- withdraw consent where processing is based on consent.
To exercise any of these rights, email ukadvertising11@gmail.com. We will respond within one month. If you are not satisfied with our response, you have the right to complain to the UK Information Commissioner’s Office (ICO) at ico.org.uk.
8. Security
We use industry-standard safeguards including TLS encryption in transit, hashed passwords, and access controls. No system is perfectly secure, so we cannot guarantee absolute security, but we will notify affected users and the ICO of any breach involving personal data where required by law.
9. Cookies
We use only strictly necessary cookies (for authentication and session management). See our Cookie Policy for details.
10. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be communicated by email and / or by a notice on the Service. The “Last updated” date at the top of this page reflects the most recent revision.