FICTBASE

Legal

Privacy Policy

Last updated: May 22, 2026

1. Who we are

FICTBASE (“we”, “us”, “our”) operates the website at fictbase.com and provides the FICTBASE WordPress plugin. Our contact email is support@fictbase.io.

2. What we collect

We collect the minimum information needed to provide our service:

  • Account data: first name, last name, and email address when you purchase a Pro licence or create an account.
  • Payment data: payments are processed by Stripe. We never see or store your card number, CVV, or banking details. Stripe may store payment information in accordance with their own privacy policy.
  • Licence data: your licence key, purchase date, and subscription status so we can validate your Pro licence.
  • Support data: any information you voluntarily provide when submitting a support ticket.
  • Usage data: standard server logs (IP address, browser type, pages visited, timestamps). We do not use third-party analytics trackers on this website.

3. How we use your information

  • Deliver your licence key and account setup link after purchase.
  • Send transactional emails: payment receipts, password resets, licence renewal reminders.
  • Respond to support tickets.
  • Detect and prevent fraud or abuse.
  • Improve our product based on aggregated, anonymised usage patterns.

We do not sell your personal data. We do not send unsolicited marketing emails.

4. Third-party processors

We share data with the following third parties only to the extent necessary to provide our service:

  • Stripe — payment processing. Stripe is PCI-DSS Level 1 certified. See stripe.com/privacy.
  • Hosting provider — our servers are hosted on a VPS. Server logs may be retained for up to 30 days.

5. The WordPress plugin

The FICTBASE WordPress plugin runs entirely on your own server. We do not receive any data from your WordPress installation, your stories, your chapters, or your readers. Your content and reader data remain 100% under your control in your own database.

6. Cookies

This website uses only a session authentication cookie (fictbase_customer_token) when you are logged into the customer portal. We do not use advertising or tracking cookies.

7. Data retention

We retain your account data for as long as your account is active, plus up to 90 days after deletion to allow for fraud recovery. Payment records are retained as required by applicable law (typically 7 years for financial records). Support ticket data is retained for 2 years.

8. Your rights

Depending on your location, you may have the following rights:

  • Access: request a copy of the personal data we hold about you.
  • Rectification: ask us to correct inaccurate data.
  • Erasure: request deletion of your account and associated data, subject to legal retention requirements.
  • Portability: receive your data in a machine-readable format.
  • Objection: object to processing based on legitimate interests.

To exercise any of these rights, email support@fictbase.io. We will respond within 30 days.

9. Security

We use HTTPS for all data in transit, bcrypt hashing for passwords, and HttpOnly cookies for session tokens. We do not store payment card data. Despite these measures, no system is completely secure — please use a strong, unique password for your account.

10. Changes to this policy

We may update this policy to reflect changes to our practices or applicable law. We will update the “Last updated” date at the top of this page. Continued use of our service after changes constitutes acceptance of the updated policy.

11. Contact

Questions about this policy? Email support@fictbase.io.

Privacy Policy | FICTBASE | FICTBASE