Skip to content
MarketplaceLeaderboardHow it works
Log inList your game
MarketplaceLeaderboardHow it worksList your game

Privacy Policy

Last updated: August 30, 2026

RoFund — Privacy Policy

Effective date: September 13, 2026 Data controller: RoFund, established in Greece — contact via the Support link in the site footer. Site: rofund.xyz

This Privacy Policy explains what personal data RoFund collects, why, how long we keep it, and the rights you have under the EU General Data Protection Regulation (GDPR) and comparable laws.


1. Who this applies to

Everyone who visits RoFund, creates an account, lists a game, or contacts a listed developer. Roblox's audience includes minors; RoFund accounts require the minimum age in our Terms of Service (§1), and we do not knowingly collect data from children below that age. If you believe a child has created an account, contact us and we will delete it.

2. What data we collect and why

| Data | Source | Purpose (lawful basis) | Retention | |---|---|---|---| | Email address, password hash (argon2id) | You (signup) | Account, login, transactional emails (contract) | Until account deletion | | Pending email address (email change in progress) | You (settings) | Double opt-in email change (contract) | Until confirmed or 24h after request | | Roblox user ID, username, avatar, account age | Roblox (OAuth openid profile + public API) | Identity, game-ownership verification, trust signals (contract) | Until account deletion | | Roblox group memberships & roles (public data, e.g. group names, role names/ranks, member counts) | Roblox public groups API | Trust signals on public profiles (e.g. group ownership/positions); Free-tier eligibility (RoFund HQ membership, checked at listing activation and in a daily sweep — see ToS §4.7) | Until account deletion | | Nickname, role label (Investor/dev/Both) | You | Display, personalization (contract) | Until account deletion | | Discord user ID (optional link) | Discord (OAuth identify) | Display/contact convenience (contract) | Until unlink/deletion | | Listing content: pitch, description, intent, contact fields | You | Publishing your listing (contract) | While listing active + 90 days after expiry | | Roblox game statistics (visits, CCU, favorites, likes) | Roblox public API | Marketplace data, leaderboard, growth history (legitimate interest) | Indefinitely, in anonymized/aggregated form possible | | Contact reveals (who revealed whose contacts, when) | System | Abuse prevention, showing devs interest (legitimate interest) | 24 months | | Chat messages (listing-anchored threads) | You | The chat feature (contract) | While both accounts exist; on report, during moderation | | Pitches (dev → investor, note, status) | You | The pitching feature (contract) | While both accounts exist | | Favorites / watchlist | You | Watchlist + growth-alert emails (contract) | Until removed or deletion | | Email verification, password-reset tokens | System | Account security (contract) | Until used or expired (max 30 days) | | Notification/marketing consent flags | You | GDPR consent records (legal obligation) | Until withdrawn + 30 days | | Payments: order ID, tier, amount, status, provider refs | OxaPay / Roblox webhook | Activation, receipts, accounting (contract + legal obligation) | 7 years (tax law) | | Rate-limit counters & security logs (IP-hashed, timestamps) | System | Abuse/security (legitimate interest) | 90 days | | Server logs (hosting: Vercel), error logs (Sentry) | System | Security, debugging (legitimate interest) | 30 days (Sentry: per plan, PII scrubbing on) |

We do not collect: government IDs, payment card data, wallet keys, precise location, or biometric data. We do not buy data from brokers.

3. Cookies & tracking

RoFund uses the minimum possible cookies:

  • Strictly necessary: session/auth cookies (JWT session), signup-flow cookie (HMAC, crosses the OAuth round-trip), security (rate-limit/CSRF). These cannot be switched off; they do not require consent.
  • Analytics: Vercel Analytics — aggregate, cookie-free, no personal profiles, no cross-site tracking. Because it sets no identifying cookies, it does not require a consent banner under GDPR/ePrivacy.
  • No advertising cookies, no third-party ad trackers, no social-media pixels. We never sell personal data.

You can clear/Block cookies in your browser; the site will then not stay logged in.

4. Emails you may receive

  • Transactional (always on, while your account exists): email verification, password reset, payment receipts, expiry reminders, free-listing takedown notices (if you leave the RoFund HQ group — see ToS §4.7), pitch/chat/message notifications, watchlist growth alerts, security notices. These are part of the service; you can manage most of them in Settings → Notifications.
  • Marketing (opt-in only): newsletter/digest. Unsubscribing takes one click in any marketing email or in Settings; transactional emails continue.

5. Who we share data with (processors & disclosures)

We share only what is necessary, with:

| Provider | Role | Data | Location | |---|---|---|---| | Vercel | Hosting, serverless functions | Server logs, request data | EU/US (EU region preferred) | | Supabase | Database hosting | All DB data above | EU region | | Sentry | Error tracking | Error logs (PII scrubbing enabled) | EU | | Resend | Transactional + marketing email | Email address, email content metadata | US (SCCs) | | OxaPay | Crypto payment processing | Order ID, amount, status (no wallet keys) | Per OxaPay's terms | | Roblox | OAuth + public data | What you authorize (openid profile) | US |

  • Legal disclosure: we may disclose data if legally required (court order, valid law-enforcement request) or to protect rights, safety, and security.
  • Business transfer: if RoFund is ever involved in a merger, acquisition, or sale (see ToS §9.4), user data may be transferred as part of that transaction, subject to this policy; any such change will be announced on the site.
  • We do not sell or rent personal data, ever.

6. International transfers

Providers above may process data outside the EU. Where that happens, we rely on the EU Standard Contractual Clauses (SCCs) and equivalent safeguards (provider Data Processing Agreements — DPA). Copies of relevant DPAs are available on request.

7. Your rights (GDPR and friends)

You have the right to:

  1. Access — get a copy of your personal data (Settings → data export, or email us; provided within 30 days, machine-readable JSON).
  2. Rectification — correct inaccurate data (most is editable in Settings; username is fixed by design and automatically follows your Roblox username if you rename on Roblox — see ToS §3.1).
  3. Erasure — delete your account (Settings → Danger zone). We delete or anonymize your personal data; accounting records (payments) and logs with a legal retention basis are kept only as long as legally required.
  4. Restriction and objection — you can object to processing based on legitimate interest (e.g. security logs) by contacting us.
  5. Portability — take your data (export covers profile, listings, chats).
  6. Withdraw consent — for marketing emails, anytime, one click.
  7. Complain — to your national data-protection authority. In the EU, find yours at edpb.europa.eu. We'd appreciate you contacting us first so we can fix it.

California residents (CCPA/CPRA): we do not sell or share personal data as defined by the CCPA/CPRA, and the rights above (access, deletion, correction, portability) apply equally to California residents. Exercising them is free of discrimination.

We respond to rights requests within 30 days; requests are free unless manifestly excessive.

8. Security

We protect your data with: argon2id password hashing, JWT sessions, mandatory HTTPS, strict security headers, rate limiting on sensitive endpoints, least-privilege database access (row-level security), secrets never in frontend code, webhook signature verification, and encrypted automated database backups (GPG-encrypted, short retention). Details in our published Security overview. No system is perfect — if you find a vulnerability, please report it responsibly via the Support link (we do not pursue good-faith researchers).

9. Children's data

RoFund is not directed at children under the ToS minimum age (§1.1). We do not knowingly collect their data. Accounts found to belong to underage users are suspended and deleted on discovery or report.

10. Changes to this policy

Material changes will be announced on the site and by email to account holders at least 14 days before they take effect. The effective date above always reflects the current version.


This document is provided as part of the RoFund project and should be reviewed by a legal professional before commercial launch.

Not affiliated with Roblox Corporation.

RoFund
How it worksPricingSupportTermsPrivacy

Not affiliated with Roblox Corporation.