Privacy Policy

Last updated: November 8, 2025

This Privacy Policy explains how Everythingdid (“Everythingdid,” “we,” “our,” “us”) collects, uses, shares, and protects information in connection with everythingdid.com, our community features (BuddyBoss), marketplace (WooCommerce + WCFM), and bookings (the “Service”).

1) Information We Collect

You provide

  • Account & profile: name, email, username/handle, profile photo, bio, and anything you post.

  • Social login (optional): if you choose Google, Facebook, X (Twitter), LinkedIn, Apple, or Microsoft, we receive basic profile details (e.g., name, email, avatar, provider ID). We do not receive your social passwords. Apple may provide a private relay email (e.g., …@privaterelay.appleid.com).

  • Transactions & bookings: order details, contact info, and preferences. We do not store card numbers; payments are processed by third parties (e.g., Stripe, PayPal).

  • Vendors: payout details and verification status from payment providers (identity documents are handled by those providers).

Automatically collected

  • Device/browser type, IP address, approximate location, pages viewed, and cookies/pixels used for authentication, security, performance, and analytics.

From others

  • Payment processors, analytics/security tools, anti-fraud services, and (when you buy from a vendor) the relevant vendor.

2) How We Use Information

  • Create and manage accounts (including social login) and profiles.

  • Provide marketplace, bookings, payouts, messaging, and community features.

  • Process payments; prevent fraud/abuse; maintain the security and integrity of the Service.

  • Send essential communications (order/booking updates, policy changes, service notices).

  • Improve and personalize the Service; comply with legal obligations.

3) Legal Bases (EEA/UK)

We rely on: (a) contract performance (e.g., orders, account), (b) consent (e.g., social login), (c) legal obligations, and (d) legitimate interests (security, service improvement, anti-abuse).

4) Sharing

  • Processors: hosting, email/SMS, analytics, customer support, anti-abuse/security.

  • Payments & payouts: Stripe, PayPal, and similar providers.

  • Vendors: order/booking details relevant to the vendor you purchase from.

  • Community visibility: content you set to public may be visible to other users.

  • Legal & safety: to comply with law or protect rights.

  • Business transfers: in a merger, acquisition, or asset sale.

We do not sell personal information.

5) Social Login Controls

You can revoke our access in your provider account settings (e.g., Google, Facebook, X/Twitter, LinkedIn, Apple “Sign in with Apple,” Microsoft). If you used Apple private relay, disabling it may stop email forwarding.

6) Cookies & Similar Technologies

We use cookies and similar technologies to keep you signed in, remember preferences, secure the site, and analyze usage. You can control cookies in your browser; some features may not function without them. If we deploy a cookie preference tool, its link will appear here.

7) Retention

  • Account/profile: until you delete your account or after an inactivity period we define.

  • Orders/invoices/payout records: typically 7 years (tax/accounting).

  • Security/analytics logs: ~12 months (typical).

  • KYC documents: retained by Stripe/PayPal per their policies.

8) International Transfers

We may process/store data in the U.S. and other countries. Where required, we use appropriate safeguards (e.g., Standard Contractual Clauses).

9) Your Rights

Depending on your region, you may have rights to access, correct, delete, port, restrict or object to processing, and to withdraw consent (e.g., social login). Contact us to exercise these rights.

California (CPRA): We do not “sell” personal information or “share” it for cross-context behavioral advertising. You may still request access/deletion/correction.

10) Children

The Service is not directed to children under 13 (or the minimum age in your region). We do not knowingly collect such data.

11) Security

We use reasonable technical and organizational measures to protect information. No method is 100% secure.

12) North Carolina Notice

If a security incident triggers a legal notice obligation, we will provide breach notifications consistent with North Carolina and other applicable laws.

13) Changes

We may update this Policy. We will post the updated version with a new “Last updated” date.

14) Contact

Everythingdid
Email: everythingdid@outlook.com