1. Introduction
MetalGlowZone ("we", "us", "our") operates www.metalglowzone.com, a B2B marketplace for metal trading. This Privacy Policy applies to all users of our Platform.
Controller: MetalGlowZone is the data controller responsible for your personal information.
2. Information We Collect
2.1 Information You Provide
| Data Category | Examples | Purpose |
|---|---|---|
| Account Information | Name, email, password, phone number | Account creation and authentication |
| Business Information | Company name, address, tax ID, business license | Seller verification and compliance |
| Transaction Information | Product inquiries, quotes, messages | Facilitating trades and communication |
| Payment Information | Billing address, payment method | Processing subscription payments |
| Profile Information | Company logo, product images, descriptions | Profile display and product listings |
2.2 Automatically Collected Information
- Device & Browser Data: IP address, browser type, device type, operating system
- Usage Data: Pages viewed, time spent, search queries, click patterns
- Cookies & Tracking: Session cookies, preference cookies, analytics cookies
- Location Data: Approximate location based on IP address
3. How We Use Your Information
We use your information for:
3.1 Platform Operations
- Creating and managing your account
- Processing and fulfilling transactions
- Facilitating communication between buyers and sellers
- Verifying seller credentials and business licenses
- Providing customer support
3.2 Platform Improvement
- Analyzing usage patterns and trends
- Improving platform features and functionality
- Personalizing user experience
- Testing new features
3.3 Communications
- Sending transactional emails (quotes, inquiries, notifications)
- Providing platform updates and announcements
- Marketing communications (with your consent)
- Responding to your inquiries
3.4 Legal & Security
- Detecting and preventing fraud
- Enforcing our Terms of Service
- Complying with legal obligations
- Protecting rights, property, and safety
4. Legal Basis for Processing (GDPR)
For users in the EU/EEA, we process your data based on:
- Contract Performance: To provide our services (Art. 6(1)(b) GDPR)
- Legitimate Interests: Platform improvement, fraud prevention (Art. 6(1)(f) GDPR)
- Consent: Marketing communications, optional cookies (Art. 6(1)(a) GDPR)
- Legal Obligation: Tax compliance, anti-money laundering (Art. 6(1)(c) GDPR)
5. Information Sharing
5.1 Public Information
The following information is publicly visible on the Platform:
- Company name and business profile
- Product listings (names, descriptions, images)
- Verification status badges
5.2 With Other Users
When you submit a quote request, we share your contact information (name, email, company) with the seller.
5.3 Service Providers
We share data with trusted third parties who help us operate:
- Hosting: AWS, DigitalOcean (data storage)
- Email: SendGrid, Mailgun (transactional emails)
- Analytics: Google Analytics (usage tracking)
- Payment: Stripe, PayPal (payment processing)
5.4 Legal Requirements
We may disclose information when:
- Required by law or legal process
- To protect our rights or property
- To prevent fraud or illegal activity
- With your consent
6. Data Retention
We retain your information for:
- Active Accounts: Duration of account plus 90 days
- Closed Accounts: Up to 7 years for legal/tax compliance
- Transaction Records: 7 years minimum
- Marketing Data: Until you opt out
- Analytics: Aggregated data retained indefinitely
7. Your Rights
7.1 GDPR Rights (EU/EEA Users)
You have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Limit how we process your data
- Portability: Receive your data in a structured format
- Object: Object to processing based on legitimate interests
- Withdraw Consent: Opt out of marketing communications
7.2 CCPA Rights (California Users)
California residents have additional rights:
- Know what personal information is collected
- Know whether information is sold or disclosed
- Opt out of the sale of personal information
- Access and delete personal information
- Non-discrimination for exercising rights
Note: MetalGlowZone does NOT sell your personal information.
7.3 How to Exercise Your Rights
To exercise any of these rights, contact us at:
- Email: privacy@metalglowzone.com
- Subject Line: "Data Rights Request"
- Include: Your name, email, and specific request
We will respond within 30 days.
8. Cookies
8.1 Types of Cookies We Use
| Cookie Type | Purpose | Duration |
|---|---|---|
| Essential | Authentication, security, language preference | Session or 30 days |
| Analytics | Understanding usage patterns | 2 years |
| Functional | Remembering preferences | 1 year |
| Marketing | Targeted advertising (with consent) | 1 year |
8.2 Managing Cookies
You can control cookies through your browser settings. Note that disabling cookies may affect platform functionality.
9. International Data Transfers
MetalGlowZone operates globally. Your information may be transferred to and processed in countries outside your residence, including the United States.
For EU/EEA users, we rely on:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Adequacy decisions for certain countries
- Other lawful transfer mechanisms under GDPR
10. Security
We implement industry-standard security measures:
- Encryption: HTTPS/TLS for data in transit
- Access Controls: Role-based access, 2FA for admin accounts
- Regular Audits: Security assessments and penetration testing
- Data Backups: Regular encrypted backups
- Employee Training: Security awareness programs
However, no system is 100% secure. Please use strong passwords and keep your credentials confidential.
11. Children's Privacy
MetalGlowZone is a B2B platform not intended for users under 18. We do not knowingly collect information from children. If we learn we have collected data from a child, we will delete it immediately.
12. Third-Party Links
Our Platform may contain links to third-party websites. We are not responsible for their privacy practices. Please review their privacy policies before providing information.
13. Data Breach Notification
In the event of a data breach affecting your personal information, we will notify you and relevant authorities as required by applicable law (within 72 hours for GDPR breaches).
14. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes via email or prominent notice on the Platform. Continued use after changes constitutes acceptance.
15. Contact Us
For privacy-related questions or concerns:
- Email: privacy@metalglowzone.com
- Data Protection Officer: dpo@metalglowzone.com
- Phone: +1-555-METALS
- Mail: MetalGlowZone Privacy Department
EU Representative
For EU/EEA users, our EU representative contact details are available upon request.
16. Supervisory Authority
If you are in the EU/EEA, you have the right to lodge a complaint with your local data protection authority. A list of authorities can be found at https://edpb.europa.eu.