Privacy Policy
Last updated: February 2026
Collectorista ("we," "us," or "our") operates the collectorista.com website and platform. This policy describes how we collect, use, and protect your information.
The Short Version
Collectorista uses zero-knowledge encryption. Your collection data — item details, valuations, provenance, photographs, and documents — is encrypted on your device before it reaches our servers. We cannot read it. We do not read it. This policy covers the limited data we do process.
1. Data We Cannot Access
The following data is encrypted client-side using AES-256-GCM with keys derived from your master password. We store only ciphertext and have no ability to decrypt it:
- Collection item records (titles, descriptions, classifications, dimensions, etc.)
- Valuation and financial data (purchase prices, current valuations, insurance values)
- Provenance and exhibition history
- Location information
- Photographs and documents
- Ownership and fractional ownership details
- Condition reports
- Notes and annotations
We cannot access this data under any circumstances, including in response to legal requests. A legal request for your collection data would produce only encrypted ciphertext.
2. Data We Do Collect
To operate the platform, we process a limited set of data that is not end-to-end encrypted:
Account Information
- Email address
- Display name
- Hashed password (your master password is never stored in plaintext; we store only a hash that cannot be reversed)
Organization Metadata
- Organization name and slug
- Subscription tier and billing status
- Usage counts (number of items, team members, storage bytes used)
- Team member email addresses and assigned roles
Billing Information
- Payment processing is handled by Stripe. We do not store credit card numbers.
- We store Stripe customer IDs and subscription status.
Technical Data
- IP addresses (for security monitoring and abuse prevention)
- Browser type and version
- Access timestamps
- Error logs that may contain request metadata (never collection content)
Communications
- Emails you send to our support addresses
- Waitlist submissions
3. How We Use Your Data
We use the non-encrypted data described above to:
- Operate and maintain the platform
- Process payments and manage subscriptions
- Enforce usage limits per subscription tier
- Send transactional emails (password reset, team invitations, billing)
- Monitor for abuse and unauthorized access
- Debug technical issues
- Comply with legal obligations
We do not:
- Sell or share your data with third parties for marketing
- Use your data for advertising
- Build user profiles for behavioral targeting
- Share account information with other users (except team members within your organization, who see only your display name and role)
4. Data Sharing
We share data only with:
- Stripe — for payment processing
- Firebase (Google Cloud) — for encrypted data storage, authentication, and infrastructure
- Vercel — for website hosting and content delivery
We do not share data with data brokers, advertising networks, or analytics platforms that build user profiles.
5. Data Retention
- Encrypted collection data: Retained while your account is active. Upon account deletion, permanently deleted within 30 days.
- Account information: Retained while active and for up to 90 days after deletion for abuse prevention.
- Billing records: Retained for 7 years as required by tax and financial regulations.
- Technical logs: Retained for up to 12 months, then automatically deleted.
6. Your Rights
Under GDPR and applicable Portuguese and EU law, you have the right to:
- Access your personal data
- Rectify inaccurate personal data
- Delete your account and all associated data
- Export your data at any time through the platform's export function
- Restrict processing in certain circumstances
- Object to processing based on legitimate interests
- Withdraw consent where processing is based on consent
For encrypted collection data: because we cannot decrypt it, you are the sole controller. Export it before deleting your account.
To exercise any of these rights, contact: legal@collectorista.com
7. Security
Beyond zero-knowledge encryption, we implement:
- HTTPS/TLS for all data in transit
- Firestore security rules restricting document access by role
- Firebase Authentication with secure session management
- Audit logging for access to organization data
- Regular review of infrastructure security
8. Children's Privacy
Collectorista is not intended for use by individuals under 16.
9. International Data Transfers
Your encrypted data is stored on Google Cloud infrastructure. For data transferred outside the EEA, we rely on Google's standard contractual clauses.
10. Changes to This Policy
We will notify registered users by email of material changes at least 30 days before they take effect.