Privacy Policy
🏝️ Your privacy matters to us. Learn how we protect your data while you showcase your work to the world.
Welcome to Indie Island
Indie Island ("we," "our," or "us") operates the indieis.land platform, designed specifically for digital nomads, freelancers, and indie hackers to showcase their work and connect with opportunities worldwide. This Privacy Policy explains how we collect, use, and protect your information when you use our services.
Information We Collect
Account Information
- Profile Data: Username, email address, display name, bio, profile picture
- Authentication: Login credentials and authentication tokens (managed by Clerk)
- Contact Information: Professional contact details you choose to display
Portfolio Content
- Projects & Media: Images, videos, documents, and other files you upload
- Project Details: Titles, descriptions, timelines, and categorizations
- External Links: Social media profiles, websites, and other professional links
Location Information
- Current Location: City/country information you choose to share on your profile
- Map Data: Location coordinates for map cards in your portfolio
- Travel History: Locations associated with your projects (when provided)
Usage Analytics
- Platform Activity: Page views, feature usage, and interaction patterns
- Performance Data: Load times, error reports, and technical diagnostics
- Device Information: Browser type, device type, and operating system
Data Security
Technical Safeguards
- Encryption: Data encrypted in transit and at rest
- Access Controls: Strict limitations on who can access your data
- Regular Audits: Ongoing security assessments and improvements
- Secure Infrastructure: Industry-standard hosting and storage practices
Privacy by Design
- Minimal Collection: We only collect data necessary for platform functionality
- User Control: You control what information is public vs. private
- Data Retention: We keep data only as long as necessary
Authentication & Clerk
What Clerk Handles
- We use Clerk to manage authentication and sessions. Clerk processes identity data (e.g., email, name, user IDs, session tokens) so you can sign in securely.
- We do not store plaintext passwords. Credentials and multi‑factor/auth flows are handled by Clerk and/or your chosen provider (e.g., OAuth/OIDC).
- For details on Clerk’s processing and security, see Clerk’s Privacy Policy and Security pages.
Data We Receive
- From Clerk, we receive your profile and session context (e.g., email, display name, avatar, user ID) so we can personalize your account and secure dashboard features.
- We apply the principle of least privilege; backend routes verify your Clerk session and only use the minimum data needed to provide the service.
Payments & Polar Integration
How Payments Are Processed
- We use Polar (polar.sh) to process payments for yearly and lifetime plans. When you make a purchase, certain information is shared with Polar to complete the transaction, such as your name, email, billing details, and purchase metadata (e.g., product ID).
- Card data security: We do not store full card numbers on our servers. Card processing is handled by Polar and its partners in accordance with PCI-DSS requirements.
- We keep limited payment records (e.g., product purchased, amount, currency, invoice/receipt URLs) for accounting, audit, and support purposes.
Compliance & Retention
- KYC/AML: For fraud prevention and legal compliance, Polar may perform identity and anti‑money‑laundering checks. Where required, related data may be retained for the period mandated by applicable laws.
- Retention: We retain payment-related records only as long as necessary to provide services, comply with legal obligations, resolve disputes, and enforce agreements.
- International transfers: Payment processing may involve transfers outside your country. We and our partners apply safeguards to protect your information across borders.
Your Rights & Choices
- Access/Correction/Deletion: You can request access to, correction of, or deletion of your personal data by contacting us.
- Consent: Where processing is based on consent, you may withdraw it at any time. This won’t affect processing already performed but may impact our ability to provide certain services.
- To exercise these rights, email indieisland.work@gmail.com.
Digital Nomad Considerations
Cross-Border Data
As a platform for location-independent professionals, we understand you may access Indie Island from various countries. Your data may be processed in different jurisdictions, but we maintain consistent privacy protections regardless of location.
Variable Connectivity
We optimize our platform for users with varying internet connectivity and implement caching strategies to minimize data usage while maintaining functionality.
Get in Touch
Questions about this Privacy Policy or your data? We're here to help! 💬