Privacy Policy

RareAS privacy center

Public privacy information stays available before sign-in. RareAS is built on a private-first philosophy. Your collection data, ownership details, and personal information are protected by default.

Effective: January 1, 2025Last updated: January 1, 2025

Private by default

Collections and ownership data are never public unless you choose

Right to delete

Full account deletion available in your settings at any time

No data sales

We never sell your personal information to third parties

1. Information We Collect

Account information: When you create a RareAS account, we collect your email address, display name, and authentication credentials managed through our secure identity provider. You may optionally provide a profile photo, bio, and location.

Collection data: Items you add to your collection or wishlist, including condition notes, acquisition details, and any photos you upload. This data is private by default.

Usage data: We collect information about how you interact with the platform, including pages visited, search queries, and feature usage. This helps us improve the product experience.

Contribution data: If you contribute catalog corrections, variant information, or provenance evidence, we associate those contributions with your account for moderation and attribution purposes.

Device and technical data: Browser type, operating system, IP address, and device identifiers are collected automatically for security, analytics, and service delivery.

2. How We Use Your Information

Providing and maintaining the RareAS platform, including catalog browsing, collection management, and social features.

Authenticating your identity and securing your account through our identity system.

Personalizing your experience, including recommendations, search results, and notification preferences.

Processing catalog contributions and moderation workflows to maintain data quality.

Communicating with you about account activity, platform updates, and support requests.

Analyzing usage patterns to improve platform features, performance, and reliability.

Detecting and preventing fraud, abuse, and violations of our community guidelines.

3. Information Sharing

Public profile: Your display name, avatar, and any collection items you explicitly mark as public are visible to other users.

Private by default: Collection details, wishlist items, valuation data, and pricing information are never shared publicly unless you choose to make them visible.

Service providers: We work with infrastructure, identity, and analytics providers who process data on our behalf under strict confidentiality agreements.

Legal requirements: We may disclose information when required by law, subpoena, or government request, or to protect the rights, safety, or property of RareAS and its users.

We do not sell your personal information to third parties. We do not share your collection data with advertisers.

4. Data Retention

Active accounts: We retain your data for as long as your account is active and as needed to provide services.

Deleted accounts: When you delete your account, we remove your personal data within 30 days. Some anonymized contribution data may be retained to preserve catalog integrity.

Backups: Encrypted backups may retain deleted data for up to 90 days before automatic purge.

Legal holds: Data subject to legal proceedings or regulatory requirements may be retained beyond standard periods.

5. Your Rights

Access: You can view and download your personal data through your account settings.

Correction: You can update your profile and collection data at any time through the platform.

Deletion: You can request complete account deletion through Settings. This removes your profile, collection, and associated data.

Portability: You can export your collection data in standard formats for use with other services.

Objection: You can opt out of non-essential data processing and marketing communications.

For EU/EEA residents: You have additional rights under GDPR, including the right to restrict processing and lodge complaints with a supervisory authority.

6. Cookies & Tracking

Essential cookies: Required for authentication, session management, and security. These cannot be disabled.

Analytics cookies: Help us understand how users interact with the platform. You can opt out of analytics tracking in your account settings.

We do not use third-party advertising cookies or cross-site tracking.

GameScan desktop client: The companion application uses OAuth tokens for authentication and does not set browser cookies.

7. Children's Privacy

RareAS is not directed at children under 13. We do not knowingly collect personal information from children under 13.

If you believe a child under 13 has provided personal information to RareAS, please contact us so we can delete the data.

8. Policy Changes

We may update this privacy policy from time to time. When we make material changes, we will notify registered users via email or in-app notification.

Continued use of RareAS after changes take effect constitutes acceptance of the revised policy.

We encourage you to review this page periodically for the latest information on our privacy practices.

Questions about your privacy?

If you have questions about this policy or want to exercise your data rights, reach out through our contact page or account settings.