Privacy Policy

Last updated: March 28, 2026

1. Introduction

Upgravia ("we", "us", or "our") operates upgravia.com (the "Service"). This Privacy Policy describes how we collect, use, store, and protect your personal information when you visit our website or use our Spotify Premium upgrade service. By using the Service, you agree to the practices described in this policy.

2. Information We Collect

Account Information. When you register, we collect your name, email address, and a hashed password. We never store passwords in plain text.

Service Data. To process your upgrade or renewal, we temporarily receive and process the account credentials you submit (your Spotify email address). These credentials are used solely to activate your Premium access and are not retained after the upgrade is complete.

Payment Information. Payments are processed by third-party providers (Stripe, PayPal, or cryptocurrency payment processors). We do not store your full credit card number or payment account details on our servers. We receive only a transaction reference and confirmation from the payment processor.

Technical Data. We automatically collect standard web server logs including your IP address, browser type, operating system, referring URL, and pages visited. This information is used for security, fraud prevention, and service improvement only.

Cookies and Sessions. We use a single session cookie to keep you logged in during your visit. This cookie contains no personal information and is deleted when you close your browser or log out. We do not use tracking cookies or third-party advertising cookies.

3. How We Use Your Information

We use the information we collect exclusively to:

  • Create and manage your account
  • Process and fulfill your upgrade or renewal orders
  • Send transactional emails (order confirmation, key delivery, password reset)
  • Respond to your support requests
  • Detect and prevent fraud, abuse, and security incidents
  • Comply with applicable laws and regulations

We do not sell, rent, or share your personal information with third parties for marketing purposes.

4. Data Retention

Account information is retained for as long as your account is active. If you request deletion of your account, we will delete or anonymise your personal data within 30 days, except where retention is required by law (e.g., financial transaction records, which are kept for 5 years in compliance with applicable accounting regulations).

Server log files are automatically purged after 90 days.

5. Data Security

We protect your data using industry-standard measures including TLS 1.2+ encryption for all data in transit, bcrypt hashing for passwords, and restricted access controls for our servers. No method of transmission over the internet or electronic storage is 100% secure, and we cannot guarantee absolute security, but we take all reasonable precautions to protect your information.

6. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request that we correct inaccurate or incomplete data.
  • Deletion: Request deletion of your personal data, subject to legal obligations.
  • Portability: Request your data in a machine-readable format.
  • Objection: Object to certain types of processing.

To exercise any of these rights, contact us at contact@upgravia.com. We will respond within 30 days.

7. Third-Party Services

Our Service integrates with the following third parties, each governed by their own privacy policies:

  • Stripe — payment processing (stripe.com/privacy)
  • PayPal — payment processing (paypal.com/privacy)
  • NowPayments — cryptocurrency payment processing (nowpayments.io/privacy-policy)

8. International Transfers

Your information may be processed in countries outside your own. When we transfer data internationally, we ensure appropriate safeguards are in place in accordance with applicable data protection laws, including standard contractual clauses where required.

9. Children's Privacy

Our Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If you believe we have inadvertently collected such information, please contact us immediately.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice on our website and updating the "Last updated" date at the top of this page. Your continued use of the Service after any changes constitutes acceptance of the revised policy.

11. Contact

For any questions, concerns, or requests regarding this Privacy Policy, contact us at:

Upgravia
Email: contact@upgravia.com