1. Introduction
FanzPro, LLC ("FanzPro," "we," "our," or "us") operates the FanzPro platform at fanzpro.com and related services. This Privacy Policy explains how we collect, use, store, share, and protect your personal information when you use our platform as a fan, artist, affiliate, agent, manager, venue operator, or enterprise partner.
By creating an account or using FanzPro, you agree to the practices described in this policy. If you do not agree, please do not use the platform.
2. Information We Collect
2.1 Account & Profile Data
- Name, email address, and password (hashed)
- Username, bio, avatar image, and social media links
- Role selection (fan, artist, affiliate, agent, manager, venue, ARM)
- Phone number (optional, for SMS notifications and contact import)
2.2 Payment & Financial Data
- Stripe Customer ID and Stripe Connect account ID
- Transaction history, commission earnings, and payout records
- Tax information (W-9 data collected by Stripe, not stored by FanzPro directly)
- Subscription status (artist subscriptions, wiki subscriptions, API tier)
2.3 Affiliate & Tracking Data
- Affiliate link codes and short codes
- Click events: IP address, user agent, device type, referrer URL, country code, visitor ID
- Conversion records: sale amount, commission earned, external transaction ID
- Campaign tags and product associations
2.4 Fan & Contact Data (Artist-Owned)
- Fan contact records uploaded by artists: name, email, phone, tags, notes, and source
- Fan tier memberships, loyalty points, badge achievements
- Fan favorites (which artists a fan follows)
- Phone contacts imported voluntarily for fan invite features
2.5 Usage & Technical Data
- Browser type, operating system, screen resolution
- Pages visited, features used, and session duration
- Error logs and performance metrics
- Cookie consent preferences
3. How We Use Your Information
- Service Delivery: Authenticate users, manage roles, process affiliate link clicks and conversions, and calculate commissions.
- Payments: Process payouts via Stripe Connect, manage subscription billing, and generate tax-related documentation through Stripe.
- Analytics: Provide artists, affiliates, and partners with dashboards showing clicks, conversions, revenue, and fan engagement metrics.
- Fraud Prevention: Detect click fraud, bot traffic, self-referrals, velocity spikes, and geographic mismatches through our fraud detection engine.
- Communications: Send transactional emails (password resets, payout confirmations), SMS notifications (when opted in), and optional marketing updates.
- Platform Improvement: Analyze usage patterns to improve features, fix bugs, and develop new capabilities.
- Legal Compliance: Respond to lawful requests, enforce our Terms of Service, and comply with tax reporting obligations.
4. Artist Data Isolation & Fan Data Ownership
4.1 Independent Data Silos
Every artist on FanzPro operates within a strict, independent data silo — regardless of whether they are independent or managed by an agency. Each artist profile has isolated records for:
- Tour dates and concert information
- Merchandise products and inventory
- Digital downloads and releases
- Fan contact databases and CRM records
- Click, conversion, and earnings analytics
Managers may toggle between artist portals, but the underlying data is always scoped to the specific artist profile to ensure clean attribution and prevent cross-contamination.
4.2 Fan Data Ownership
Artists own their fan contact data. Fan records (names, emails, phones, tags, notes) uploaded or collected by an artist are stored exclusively within that artist's data silo. FanzPro does not share one artist's fan database with another artist, and fan data is never sold to third parties.
4.3 Profile Visibility Tiers
Artists control their profile visibility through settings that affect how fan data is collected and displayed:
- Public: Profile is discoverable; fans can follow and interact freely.
- Invite Only: Only fans with a valid invite code can access the profile and its offerings.
- Private: Profile is hidden from public discovery; all fan interactions require explicit artist approval.
5. PII Protection & Security Measures
5.1 Row-Level Security (RLS)
All database tables enforce row-level security policies. Users can only access their own data unless explicitly authorized. Sensitive fields (email, phone, tax IDs) are protected by strict access controls that limit visibility to the record owner.
5.2 Public Profile Data
Publicly accessible profile information is limited to non-sensitive fields: user ID, username, display name, bio, and avatar URL. Sensitive PII is never exposed through public-facing queries or APIs.
5.3 Encryption & Infrastructure
- All data is transmitted over TLS/HTTPS encryption
- Passwords are hashed using industry-standard algorithms (bcrypt)
- API keys are shown only once at creation and stored securely
- Webhook secrets are verified via timing-safe comparison to prevent replay attacks
- Database backups are encrypted at rest
5.4 Fraud Detection Data
Our fraud detection engine collects IP addresses, user agents, click velocity data, and geographic indicators to identify and prevent fraudulent affiliate activity. Flagged events are stored in a dedicated fraud review table and are accessible only to platform administrators.
6. White-Label & Branding Privacy
6.1 White-Label Service
FanzPro may be used as a white-label service. Artists who subscribe to an eligible tier may fully rebrand the platform experience under their own identity — including their own name, logo, colors, and custom domain — so that the service appears to fans and visitors as the artist's own proprietary platform. In such cases:
- The artist presents the platform under their own brand; FanzPro branding may be entirely removed at the Pro tier and above
- Fans interacting with a white-labeled profile may not see any reference to FanzPro — the experience is presented as the artist's own service
- Despite the rebrand, FanzPro, LLC remains the underlying technology provider and data processor; the artist acts as the data controller for their fan data
- All data protection, security, and privacy obligations described in this policy continue to apply regardless of branding
6.2 Branded vs. Unbranded Tiers
FanzPro offers three white-label tiers (Basic, Pro, Enterprise) that progressively allow artists to customize or fully remove FanzPro branding from their public profiles, dashboards, and embeddable widgets:
- Basic: Custom primary and accent colors; "Powered by FanzPro" badge remains
- Pro: Custom logos, fonts, and complete removal of all FanzPro branding badges
- Enterprise: Full custom domain mapping (e.g., shop.artistname.com) plus all Pro features
6.3 Custom Domain Data
Artists on the Enterprise white-label tier may map custom domains (e.g., shop.artistname.com). DNS records (CNAME) point to FanzPro infrastructure. We store the custom domain value but do not access the artist's domain registrar account. SSL certificates are provisioned automatically. Custom domains route through FanzPro infrastructure — all security measures remain in effect.
6.4 Logo & Brand Assets
Custom logos uploaded for white-label branding are stored in secure cloud storage. These assets are only displayed on the artist's own profile and widgets. FanzPro does not use artist-uploaded brand assets for any other purpose.
6.5 Fan Awareness
When an artist operates a fully white-labeled experience, fans may interact with the service without being aware that FanzPro is the underlying platform. Artists using white-label features are responsible for including their own privacy policy and terms of service that accurately describe how fan data is collected, stored, and processed. FanzPro provides this policy as a reference and foundation, but artists must ensure their own disclosures meet applicable legal requirements for their jurisdiction.
7. Information Sharing & Third Parties
We do not sell personal information. We share data only in these circumstances:
- Stripe: Payment processing, Connect payouts, tax form collection (W-9/1099-K). Stripe acts as an independent data controller for payment data.
- Fulfillment Partners: When an artist connects a fulfillment provider (Printful, Printify, etc.), order data is shared with that provider to fulfill merchandise orders.
- Webhook Recipients: When a partner app registers webhooks, normalized conversion data (affiliate code, sale amount, commission) is delivered to their configured endpoint.
- Legal Obligations: We may disclose information to comply with court orders, subpoenas, or applicable law.
- Business Transfers: In the event of a merger, acquisition, or asset sale, user data may be transferred as part of the transaction.
8. Cookies & Tracking Technologies
FanzPro uses the following cookies and tracking mechanisms:
| Cookie / Mechanism | Purpose | Duration |
|---|---|---|
| Session token | Authentication | Session |
| Visitor ID (browser localStorage, not a cookie) | Affiliate click attribution from the ?ref= link you clicked | 30 days |
| Cookie consent | Remember consent preference | 1 year |
| Theme preference | Dark/light mode setting | Persistent |
| UTM parameters | Campaign tracking | Session |
You can manage cookie preferences through the consent banner displayed on first visit. Affiliate attribution does not use cookies: when you follow a share link, the referral code from the ?ref= URL parameter is stored in your browser's localStorage for 30 days. Clearing site data removes it, which may prevent proper commission attribution for the fan who shared the link.
9. Data Retention
- Account data: Retained while your account is active. Deleted within 30 days of account deletion request.
- Transaction & commission records: Retained for 7 years to comply with tax reporting requirements.
- Click events: Retained for 2 years for analytics and fraud review, then aggregated and anonymized.
- Fraud flags: Retained for 5 years to support ongoing fraud prevention.
- Fan contact data: Retained as long as the artist's account is active. Deleted when the artist deletes their account or removes the contact.
- White-label assets (logos): Deleted within 30 days of white-label plan cancellation.
10. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access: Request a copy of the personal data we hold about you.
- Correction: Update or correct inaccurate personal data.
- Deletion: Request deletion of your account and associated data (subject to legal retention requirements).
- Portability: Export your data in a machine-readable format.
- Objection: Opt out of marketing communications at any time.
- Restriction: Request limited processing of your data in certain circumstances.
To exercise any of these rights, email us at info@fanzpro.com. We will respond within 30 days.
11. Children's Privacy
FanzPro is not intended for users under 13 years of age (or 16 in the EU/EEA). We do not knowingly collect personal information from children. If we discover that a child has created an account, we will delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting a notice on the platform and, where possible, sending an email to your registered address. Continued use of the platform after changes constitutes acceptance.
13. Contact Us
For privacy-related questions, data requests, or concerns:
14. Shopify Integration Privacy Addendum
This addendum applies when an artist installs the FanzPro for Artists Shopify app and connects a Shopify store. It describes exactly what data we receive from Shopify, what we deliberately do not collect, and how we honor Shopify's mandatory data-protection webhooks.
14.1 Data We Receive From Shopify
- Product catalog (via
read_products): titles, images, prices, variants — used to render the artist's catalog inside FanzPro and on fan link-in-bio pages. - Discount code usage (via
write_discounts): we create per-fan discount codes and read aggregate redemption counts to attribute commissions. - Marketing event acknowledgements (via
write_marketing_events): success/failure responses for events we publish into Shopify's Marketing Activities.
14.2 Data We Deliberately Do Not Collect (Phase 1)
- Customer names, emails, phone numbers, or shipping addresses.
- Order line items, billing addresses, or payment details.
- Anything classified by Shopify as Protected Customer Data.
We have not requested read_orders or read_customers at install. If a future release requires these scopes, FanzPro will first complete Shopify's Protected Customer Data review, amend this Privacy Policy, and require explicit re-consent from the merchant before activation.
14.3 Lawful Basis
We process Shopify data under our contract with the merchant (the artist). The merchant acts as the data controller for their store data; FanzPro acts as a data processor for that data.
14.4 Retention & Deletion
- Product cache: retained for the lifetime of the install; cleared on uninstall.
- Per-fan discount-code attribution records: retained 24 months for audit, then anonymized.
- OAuth access tokens: deleted immediately on the Shopify
app/uninstalledwebhook. - Installation row and any shop-scoped metadata: deleted on the
shop/redactwebhook (received ~48 hours after uninstall).
14.5 Sub-processors for Shopify Data
- Supabase — encrypted storage and edge function execution.
- Stripe — only for payouts to fans whose commissions originated from Shopify orders; Shopify customer data is never sent to Stripe.
14.6 GDPR / Shopify Mandatory Webhooks
FanzPro subscribes at install time to all three Shopify privacy webhooks and responds as follows:
customers/data_request: Because Phase 1 does not store customer PII, no FanzPro-side customer profile exists to export. The request is queued for admin review and forwarded to the merchant within 30 days, in line with Shopify's requirements.customers/redact: No-op. We do not store identifiable customer data, so there is nothing to delete. The request is logged for compliance.shop/redact: Deletes the Shopify installation row, OAuth tokens, OAuth state records, and any shop-scoped cache for the redacted store.
14.7 Merchant Rights
- Revoke FanzPro access at any time from Shopify Admin → Apps → Uninstall.
- Email info@fanzpro.com to request immediate deletion of all FanzPro-side data tied to your shop, without waiting for the
shop/redactwebhook.
14.8 Disclosure: Not Affiliated with Shopify
FanzPro is an independent Shopify partner app. We are not affiliated with, endorsed by, or operated by Shopify Inc. Shopify's own privacy policy governs Shopify's processing of your data.