Privacy Policy — SevenCoins
Last updated: Feb 16, 2025
1. Data controller
SevenCoins ("we", "our") is responsible for the processing of your personal data under the LGPD (Brazilian General Data Protection Law – Law 13.709/2018) and other applicable regulations.
SevenCoins operates its own digital platforms, including SevenCoins and BioGenerator. This policy applies to data processed across all such platforms.
Contact: suporte@sevencoins.com.br
2. What data we collect
When you use our platforms (including BioGenerator) we may process:
- Account and registration data: email (stored encrypted when applicable), name (when provided), password (stored as hash), nickname, language preference, and profile settings (e.g., avatar and visual preferences).
- Authentication and usage data: access logs, IP address, and technical data necessary for operation and security.
- Payment and subscription data: when you use paid plans, we may receive and process data needed for billing (e.g., via Stripe and/or PagarMe), such as transaction ID, amount, payment status, and purchase/subscription history. Sensitive card data is processed by payment providers.
- Communications: content of emails you exchange with us and automated messages (e.g., purchase confirmation, password recovery), plus notification preferences when applicable.
- Cookies and similar technologies: we use cookies and session data to keep you logged in, remember preferences, and ensure security and operation. When applicable, we use Google Analytics (usage analysis) and Google AdSense (ads on public pages). You can manage preferences via the cookie banner when applicable or in your browser settings.
- On BioGenerator, in addition to the above, we may process simulation-related data (configured parameters, simulation results, saved settings) as needed to provide the service.
3. Purposes of processing
We use these data to:
- Create and manage your account on our platforms.
- Provide the service — including, on BioGenerator, population model simulation, storage of parameters and results, and free and paid features.
- Process payments, issue receipts, and comply with tax and legal obligations.
- Send service communications (confirmations, account notices, password recovery).
- Improve products, security, and user experience (including aggregated and anonymous analytics).
- Comply with legal and regulatory obligations and exercise or defend rights.
4. Legal basis
Processing is based on: contract performance (service and plan provision), legal obligation, legitimate interest (security, service improvement, service communications), and, when applicable, your consent (e.g., promotional communications, non-essential cookies).
5. Data sharing
We may share data only as necessary with:
- Stripe — payment processing.
- PagarMe — payment processing (PIX and others).
- Vercel — hosting and application infrastructure.
- Neon — database (secure storage of platform data).
- Google Analytics — usage and performance analysis (aggregated and anonymous data when used).
- Google AdSense — ads on public pages (when applicable).
- Email providers — transactional messages (confirmations, password recovery, etc.).
- Authorities — when required by law or court order.
We do not sell your personal data. We do not share data for third-party marketing without your consent.
6. Retention
We retain data for as long as necessary for the purposes above, including customer support, tax and legal obligations, and exercise or defense of rights. After account closure, we may retain anonymized or aggregated data and the minimum required for legal compliance.
7. Your rights (LGPD)
You may, by request to the contact in section 1:
- Confirm that processing exists.
- Access your data.
- Correct incomplete, inaccurate, or outdated data.
- Request anonymization, blocking, or deletion of unnecessary or non-compliant data.
- Request data portability.
- Revoke consent when processing is based on consent.
- Be informed about with whom we share data and about the possibility of not giving consent and its consequences.
8. Security
We adopt technical and organizational measures to protect your data (including encryption when applicable and secure connections). No means is 100% secure; in the event of an incident that may affect you, we will seek to notify you and take appropriate measures.
9. Children and adolescents
Our services may be used by children and adolescents. Processing of their personal data will follow the Brazilian General Data Protection Law (Law 13.709/2018), in their best interest and, when applicable, with specific consent of the legal guardian when required by applicable law.
If we identify use that does not comply with applicable law, we may take appropriate measures.
10. Changes
We may update this Privacy Policy. Material changes will be communicated by email or notice in the app/site. Continued use of our services after notice constitutes acceptance of the changes.
11. Contact
To exercise your rights, or for privacy questions or complaints, contact us at the address in section 1.
SevenCoins
CNPJ: 63.778.661/0001-62. This document is for informational purposes and does not replace specialized legal advice. In case of conflict, applicable law prevails.