Global Privacy Policy
Last Updated: January 8, 2026
At Spin Panorama, we believe privacy is a fundamental right. This policy explains how we handle your data across the globe, ensuring compliance with the GDPR (EU/UK), CCPA (USA), DPDPA (India), and other international standards.
1. Legal Basis for Processing (GDPR Requirement)
We only process your data when we have a legal reason to do so:
- Contractual Necessity: To provide the service you signed up for (hosting your tours).
- Legitimate Interests: To improve our platform, prevent fraud, and ensure security.
- Consent: When you opt-in to our marketing newsletters.
- Legal Obligation: When we must comply with tax, accounting, or law enforcement requirements.
2. Information Collection & Use
- Account Information: Name, email, and country (for tax/GST/VAT purposes).
- Usage Data: We track "storage volume" (MB used) to calculate your Pay As You Go billing.
- Cookies: We use functional cookies for login sessions and analytical cookies (like Google Analytics) to improve the user experience. You can manage your preferences via our Cookie Settings.
3. International Data Transfers
Spin Panorama is a global service. Your data (images and account info) may be stored and processed in servers located in the United States, India, or the EU.
Safeguards: We ensure all cross-border transfers comply with recognized legal mechanisms, such as Standard Contractual Clauses (SCCs), to ensure your data remains protected to the same standard regardless of where it is stored.
4. California Privacy Rights (CCPA/CPRA)
If you are a resident of California:
- Right to Know: You can request a list of the categories of personal data we collect.
- No Sale of Data: Spin Panorama does not sell, rent, or trade your personal information or uploaded 360° content to third parties for monetary or other valuable consideration.
- Right to Limit Use: You can limit the use of any "Sensitive Personal Information" (though we generally do not collect this).
5. European Union (GDPR) & UK Rights
If you are located in the EEA or UK, you have the following additional rights:
- Right to Portability: You can request a machine-readable export of your 360° images and metadata.
- Right to be Forgotten: You can request the permanent deletion of your account and all associated images.
- Right to Object: You can object to us processing your data for marketing purposes.
6. Data Retention & "Pay As You Go" Logic
- Trial Accounts: If a trial account is not converted to a paid plan, content is archived for 60 days and then permanently deleted.
- Paid Accounts: We retain your data as long as your subscription is active.
- Billing Records: We are legally required to keep financial transaction records (invoices) for 7 years for tax audit purposes.
7. Children’s Privacy (COPPA)
Spin Panorama is not intended for children under the age of 16. We do not knowingly collect data from children. If we discover such data has been collected, it will be deleted immediately.
8. Security of Your Panoramas
We use AES-256 encryption for data at rest and SSL/TLS encryption for data in transit. Your 360° tours are stored in private cloud buckets and only rendered through our secure viewer.
9. Third-Party Sub-Processors
To provide our service, we share data with:
- Hosting: AWS / Google Cloud (Secure Storage).
- Payments: Razorpay / Stripe / PayPal (PCI-Compliant).
- Analytics: Google Analytics / Mixpanel (Anonymous usage data).
Contact Our Global Privacy Team
For any privacy-related requests or to exercise your rights: