Privacy Policy
Last updated: January 5, 2025
Introduction
STRUTTURA ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website struttura.magius.it and our Minecraft mods (collectively, the "Service").
Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy.
Data Controller
The data controller responsible for your personal data is:
Giuliano Alviani
struttura@magius.it
Information We Collect
We collect information you provide directly to us and information collected automatically.
OAuth Authentication Data
When you sign in using Google, Microsoft, or Discord, we receive:
- Email address
- Username or display name
- Unique identifier from the OAuth provider
- Access and refresh tokens (stored securely for authentication purposes)
Usage Data
We automatically collect:
- Anonymous usage statistics via Plausible Analytics (no cookies, GDPR-compliant)
- Server logs (IP address, browser type, access times) for security purposes
User Content
When you use our Service, we store:
- Minecraft creations you upload (blocks, metadata, images)
- Your custom lists of creations
- Your preferences and settings
How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Create and manage your account
- Send you service-related communications (account notifications, security alerts)
- Send promotional emails and newsletters (only with your explicit consent)
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations
Legal Basis for Processing (GDPR)
Under the General Data Protection Regulation (GDPR), we process your data based on:
- Consent: For marketing communications and newsletters
- Contract: To provide the Service you requested
- Legitimate Interest: For security, fraud prevention, and service improvement
- Legal Obligation: To comply with applicable laws
Information Sharing
We do not sell your personal data. We may share information with:
- Service providers who assist in operating the Service (hosting, analytics)
- Law enforcement or government agencies when required by law
- Third parties to protect rights, privacy, safety, or property
Third-Party Services
- OAuth Providers (Google, Microsoft, Discord): For authentication only
- Plausible Analytics: Anonymous, cookie-free website analytics
- Stripe: Payment processing (when subscriptions are active). Stripe handles all payment data; we only store your subscription tier.
Data Storage and Security
Data Location
Your data is stored on servers located in the European Union (OVH/Aruba Italy). We do not transfer your data outside the EU.
Security Measures
We implement appropriate technical and organizational measures to protect your data, including:
- Encryption of data in transit (HTTPS/TLS)
- Restricted access to personal data
- Secure hashing of sensitive tokens
- Regular security updates and monitoring
Data Retention
We retain your personal data for as long as your account is active or as needed to provide the Service. You can request deletion at any time.
Your Rights (GDPR)
Under the GDPR, you have the following rights:
- Access: Request a copy of your personal data
- Rectification: Request correction of inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Request limitation of processing
- Portability: Receive your data in a portable format
- Objection: Object to processing based on legitimate interest
- Withdraw Consent: Withdraw consent at any time for consent-based processing
To exercise these rights, contact us at struttura@magius.it. We will respond within 30 days.
Cookies
We use only essential cookies required for authentication and session management. We do not use tracking cookies. Plausible Analytics does not use cookies and is fully GDPR-compliant.
Children's Privacy
Our Service is intended for users aged 13 and older. We do not knowingly collect personal data from children under 13. If you believe we have collected data from a child under 13, please contact us immediately.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.
Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, contact us at:
Email: struttura@magius.it
