Back to Home
Legal Document

Privacy Policy

Last updated: January 7, 2025

1

Introduction

This Privacy Policy explains how Tisfile S.R.L. (“TisFile”, “we”) collects, uses, and protects personal data in compliance with the General Data Protection Regulation (GDPR).

2

Roles Under GDPR

Subscribers

Data Controllers for their End Users

TisFile
  • Data Controller for Subscriber data
  • Data Processor for End User data
3

Data We Collect

3.1 Subscriber Data

  • Name
  • Email
  • Profile image
  • Stripe customer ID
  • Subscription status

3.2 Subscriber Content

  • STL files (3D models)
  • Product configurations
  • Viewer settings
  • API keys

3.3 End User Data (Processed on Behalf of Subscribers)

  • Email address
  • Optional description
  • SVG logo files
  • Rendered STL files
  • Configuration metadata
4

Purpose of Processing

We process data to:

  • Provide and operate the Service
  • Process payments
  • Deliver transactional emails
  • Enable 3D rendering and customization
  • Ensure security and prevent abuse
5

Legal Bases

  • Contractual necessity
  • Legitimate interests
  • Legal obligations
  • Consent (where applicable)
6

Third-Party Processors

We use the following trusted service providers:

StripePayment processing
MongoDB AtlasDatabase hosting
AWS S3File storage
ResendTransactional emails
Google OAuthAuthentication

All providers comply with GDPR and applicable safeguards.

7

Data Retention

Data is retained:

  • While the account is active
  • According to subscription limits
  • Until deleted by the Subscriber
  • Or as required by law

Account deletion removes all associated data permanently.

8

Data Subject Rights

Subscribers may:

  • Access, correct, export, or delete their data
  • Revoke API keys
  • Close their account at any time

End Users must contact the Subscriber directly for rights requests.

9

Cookies & Storage

We use:

  • Session cookies
  • Authentication tokens
  • Local storage for viewer preferences

We do not use advertising or tracking cookies.

10

Security

We apply industry-standard safeguards including:

🔒HTTPS encryption
🔐Secure authentication
🛡️Access controls
File validation
11

International Transfers

Data may be processed outside the EU using providers with appropriate safeguards (e.g., Standard Contractual Clauses).

12

Changes to This Policy

We may update this Privacy Policy. Material changes will be communicated via email. Continued use constitutes acceptance.

13

Contact