Privacy Policy
Last updated: April 9, 2026
JadaDev ("we," "us," or "our") operates the ggbro platform. This Privacy Policy explains how we collect, use, store, and protect your information when you use our Service.
1. Information We Collect
1.1 Information You Provide
| Data | Purpose |
|---|---|
| Username & email | Account creation and identification |
| Password | Account authentication (stored as a bcrypt hash — we never store plaintext passwords) |
| Profile information (avatar, banner, bio) | User profile display |
| Messages & attachments | Providing the messaging service |
| Payment information (PayPal email) | Processing GGBRO Plus payments (we do not store credit card numbers) |
| Connected accounts | Optional profile connections you choose to link |
| 2FA secret | Two-factor authentication (if enabled by you) |
1.2 Information Collected Automatically
| Data | Purpose |
|---|---|
| IP address | Security, abuse prevention, and WebRTC connectivity |
| Online status & presence | Showing availability to friends and server members |
| Device information (user agent) | Providing compatible service and debugging issues |
| Usage data (servers joined, messages sent) | Platform statistics and service improvement |
1.3 Information We Do NOT Collect
- We do not sell your data to third parties.
- We do not track you across other websites.
- We do not use third-party advertising trackers.
- We do not store the content of voice or video calls — they are peer-to-peer via WebRTC.
2. How We Use Your Information
- Providing the Service: Delivering messages, managing servers, friend lists, and user profiles.
- Security: Detecting and preventing fraud, abuse, spam, and unauthorized access.
- Improvement: Understanding how the platform is used to improve features and performance.
- Communication: Sending system notifications (e.g., friend requests, server invites). We do not send marketing emails.
- Payment processing: Verifying and processing GGBRO Plus subscription payments.
- Legal compliance: Complying with applicable laws, legal processes, or enforceable governmental requests.
3. How We Store and Protect Your Data
- All data is stored on secured servers with restricted access.
- Passwords are hashed using bcrypt and never stored in plaintext.
- 2FA secrets are stored encrypted.
- All communication between your client and our servers uses TLS encryption.
- Voice and video calls use DTLS-SRTP encryption (WebRTC standard).
- We perform regular security reviews of our codebase and infrastructure.
4. Data Sharing
We do not sell, rent, or trade your personal information. We may share data only in these circumstances:
- With other users: Your username, avatar, bio, and online status are visible to other users as part of the platform's social features. Messages are visible to members of the channels where they are sent.
- With server administrators: Server audit logs may show actions you take within a server (e.g., creating channels, deleting messages).
- With bots: Bots in servers you are a member of can see your messages in those servers and your public profile information.
- For legal reasons: We may disclose information if required by law, legal process, or to protect the safety of users or the public.
5. Data Retention
- Messages: Messages are retained as long as they exist in the relevant channel or DM. Users and server admins can delete messages.
- Accounts: Account data is retained as long as your account exists. You may request account deletion at any time.
- Server data: When a server is deleted, all associated messages, channels, roles, and members are permanently deleted.
- Uploaded files: Attachments and media files are retained as long as the associated message exists.
- Logs: Server audit logs are retained for up to 90 days.
6. Your Rights
You have the right to:
- Access the personal data we hold about you.
- Correct inaccurate personal data (via your profile settings).
- Delete your account and associated data by contacting support.
- Export your data by contacting support.
- Object to processing in certain circumstances.
7. Children's Privacy
The Service is not intended for children under 13. We do not knowingly collect personal information from children under 13. If we discover that a child under 13 has provided us with personal information, we will promptly delete such data.
8. Cookies
The ggbro web application uses only essential session tokens (JWT stored locally) for authentication. We do not use advertising cookies, tracking pixels, or third-party analytics cookies.
9. Third-Party Services
The Service integrates with the following third-party services:
- Tenor: For GIF search and sharing. Tenor's own privacy policy applies to GIF content.
- PayPal: For payment processing of GGBRO Plus subscriptions. PayPal's privacy policy governs payment data.
- WebRTC (TURN/STUN): For voice/video call connectivity. Your IP address may be shared with STUN/TURN servers for connection establishment.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated through the Service. Your continued use after changes are posted constitutes acceptance of the updated policy.
11. Contact
For privacy-related questions or data requests, contact us at support@jadadev.com.