Privacy Policy
Last updated: April 2026
1. Data Controller
Sakhi Italia is operated within the European Union (EU region). Your data is hosted on Supabase servers in Frankfurt, Germany.
2. Data We Collect
- Account data: Name, email address, profile photo, bio, location, language preference
- Content: Service listings, posts, comments, messages, exchange items, reviews
- Usage data: Login activity, feature usage (anonymized)
- Payment data: Processed securely by Stripe. We store subscription status only.
3. How We Use Your Data
- To provide and maintain the platform
- To enable communication between users
- To process payments via Stripe
- To send notifications you've opted into
- To enforce community guidelines and moderate content
4. Your Rights (GDPR)
- Access: Download all your data from Profile > Settings
- Rectification: Edit your profile information at any time
- Deletion: Delete your account from Settings (30-day grace period)
- Portability: Export your data in JSON format
- Restriction: Contact us to restrict processing
5. Data Retention
Account data is retained while your account is active. Upon deletion, personal data is removed within 30 days. Messages are anonymized, and your content is deleted.
6. Security
We use HTTPS encryption in transit and Supabase encryption at rest. Row-level security policies enforce data access controls at the database level. Admin access is logged.
7. Cookies
We use essential cookies only (authentication session). No tracking or advertising cookies are used.
8. Contact
For privacy inquiries, contact us at privacy@sakhiitalia.com