01. Scope and Data Controller
This Privacy Policy describes how Club Nirvana LLC ("Company," "we," "us," or "our") collects, uses, shares, and protects personal information in connection with ArtificialWeapons.com, including our website, newsletter, subscription services, and all related products and services (collectively, the "Platform").
Club Nirvana LLC is the data controller responsible for your personal information. For users located in the European Economic Area, United Kingdom, or other jurisdictions with applicable data protection legislation, this Policy is designed to comply with the General Data Protection Regulation (GDPR), UK GDPR, and California Consumer Privacy Act (CCPA) as applicable.
By accessing or using the Platform, you acknowledge that you have read and understood this Privacy Policy. If you do not agree to the collection and use of your information as described, please discontinue use of the Platform.
02. Information We Collect
We collect information in the following categories:
| Category | Specific Data | Source |
|---|---|---|
| Account Information | Name, email address, username, password (hashed), account creation date | Provided by you at registration |
| Payment Metadata | Subscription plan, billing status, transaction IDs, last 4 digits of card, expiry date | Provided via Stripe at checkout |
| Usage Data | Pages visited, reports accessed, search queries, session duration, click patterns, referral source | Automatically collected via analytics |
| Technical Data | IP address, browser type and version, operating system, device type, screen resolution, time zone | Automatically collected |
| Communications | Email correspondence, support requests, feedback submissions | Provided by you |
| Newsletter Data | Email address, signup source, open rates, click rates, unsubscribe status | Provided at signup; tracked by email platform |
We do not collect sensitive personal data such as racial or ethnic origin, religious beliefs, health data, biometric data, or financial account numbers beyond payment metadata processed by Stripe.
03. How We Use Your Information
We use the information we collect for the following purposes, each grounded in a lawful basis under applicable data protection law:
- Service Delivery: To create and manage your account, process subscriptions, provide access to content, and deliver newsletters. (Basis: Contract performance)
- Payment Processing: To facilitate billing, manage subscription renewals, and handle payment disputes. (Basis: Contract performance)
- Communications: To send transactional emails, subscription confirmations, account notices, and respond to inquiries. (Basis: Contract performance / Legitimate interest)
- Marketing: To send promotional emails about new reports, features, or offers, where you have opted in or we have a legitimate interest with opt-out available. (Basis: Consent / Legitimate interest)
- Platform Improvement: To analyze usage patterns, identify bugs, improve content relevance, and develop new features. (Basis: Legitimate interest)
- Security and Fraud Prevention: To detect and prevent unauthorized access, abuse, and fraudulent activity. (Basis: Legitimate interest / Legal obligation)
- Legal Compliance: To comply with applicable laws, regulations, and legal processes. (Basis: Legal obligation)
We do not use your personal data for automated individual decision-making or profiling that produces legal or similarly significant effects without your explicit consent.
04. How We Share Your Information
We do not sell, rent, or trade your personal information to any third party for their own marketing purposes.
We may share your information in the following limited circumstances:
- Service Providers: Third-party vendors who assist in operating the Platform, including payment processing (Stripe), email delivery, analytics, and hosting. These providers are contractually bound to use your data only to provide services to us and may not use it for their own purposes.
- Legal Requirements: When required by applicable law, regulation, legal process, or governmental request, including to comply with a subpoena, court order, or similar legal mandate.
- Safety: When we believe disclosure is necessary to protect the rights, property, or safety of Club Nirvana LLC, our users, or the public.
- Business Transfers: In connection with a merger, acquisition, sale of assets, or bankruptcy, your information may be transferred as part of the transaction. We will notify you via email or Platform notice prior to such transfer and advise of any change in privacy practices.
- With Your Consent: In any other circumstance with your prior explicit consent.
05. Payment Processing
All payment card transactions on the Platform are processed by Stripe, Inc., a PCI DSS-compliant payment processor. When you enter payment information, that data is transmitted directly to Stripe using industry-standard TLS encryption. Club Nirvana LLC does not receive, transmit, or store full payment card numbers, CVV codes, or complete card data on our servers.
We receive only limited payment metadata from Stripe, including the last four digits of your card, card brand, expiry date, and transaction status, which we use solely for account management and billing purposes.
Stripe's handling of your payment data is governed by Stripe's own Privacy Policy, available at stripe.com/privacy. By submitting payment information, you agree to Stripe's processing of your data in accordance with their privacy practices.
06. Newsletter and Email Communications
When you sign up for our newsletter, we collect your email address and may collect your name. We use this information to send you intelligence briefings, new report notifications, and occasional promotional messages related to the Platform.
Opt-Out. You may unsubscribe from marketing emails at any time by clicking the "unsubscribe" link included in every email we send, or by contacting us at hello@clbnva.com. Unsubscribing from marketing emails does not affect delivery of transactional emails related to your active subscription.
We may track email open rates and link click rates using standard email marketing analytics. This data is used only to assess the relevance and performance of our communications and is not shared externally for third-party marketing purposes.
Newsletter data may be processed by a third-party email service provider acting as a data processor under a data processing agreement with us. These providers do not use your email data for their own marketing.
07. Analytics and Tracking
We use analytics tools to understand how users interact with the Platform, which content is most valuable, and how to improve the user experience. Analytics data is collected in aggregate or pseudonymous form and is used solely for internal Platform improvement purposes.
We are committed to privacy-respecting analytics practices. Where possible, we configure analytics tools to: anonymize IP addresses, respect browser Do Not Track signals, minimize data collection, and avoid sharing raw user data with analytics providers for their independent use.
We do not use cross-site tracking technologies, advertising networks, or third-party data brokers to build behavioral profiles of our users for advertising targeting purposes.
08. Cookies and Similar Technologies
The Platform uses cookies and similar browser storage technologies for the following purposes:
- Essential Cookies: Required for the Platform to function, including authentication, session management, and security. These cannot be disabled without impairing core functionality.
- Preference Cookies: Store user preferences such as display settings. These improve your experience but are not required for core functionality.
- Analytics Cookies: Collect anonymized data about Platform usage to help us understand performance and user behavior.
You may control cookie behavior through your browser settings. Note that disabling essential cookies may affect your ability to log in or access subscriber content. For users in the EU/UK, we obtain consent for non-essential cookies prior to placement in accordance with applicable law.
09. Data Retention
We retain personal data only as long as necessary for the purposes for which it was collected, or as required by applicable law:
- Account data: Retained for the duration of your account and for up to 3 years following account closure, to support legal, financial, and dispute resolution requirements.
- Payment metadata: Retained for 7 years to comply with financial recordkeeping obligations.
- Newsletter data: Retained until you unsubscribe, plus a reasonable suppression period to honor opt-outs.
- Analytics data: Retained in anonymized or aggregated form indefinitely; identifiable analytics data purged after 26 months.
- Support communications: Retained for 3 years from the date of the interaction.
Upon expiry of the applicable retention period, we will securely delete or anonymize personal data in a manner that prevents recovery or reconstruction.
10. Security
We implement and maintain technical and organizational measures designed to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include TLS encryption for data in transit, access controls limiting data access to authorized personnel, regular security assessments, and secure development practices.
However, no method of transmission over the Internet or method of electronic storage is completely secure. While we strive to protect your personal data, we cannot guarantee absolute security. In the event of a data breach affecting your rights and freedoms, we will notify you and relevant regulatory authorities as required by applicable law.
You are responsible for maintaining the security of your account credentials. We will never ask for your password via email or phone.
11. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
Access
Request a copy of the personal data we hold about you.
Correction
Request correction of inaccurate or incomplete personal data.
Deletion
Request deletion of your personal data, subject to legal retention obligations.
Portability
Receive your data in a structured, machine-readable format.
Objection
Object to processing based on legitimate interests, including direct marketing.
Restriction
Request that we limit processing of your data in certain circumstances.
To exercise any of these rights, submit a written request to hello@clbnva.com. We will respond within 30 days. We may request identity verification before processing requests that involve access to or deletion of personal data. We will not discriminate against you for exercising your privacy rights.
California Residents (CCPA). California residents have the right to know what personal information we collect, the right to delete, the right to opt out of sale (we do not sell personal data), and the right to non-discrimination. Submit CCPA requests to hello@clbnva.com.
EU/UK Residents (GDPR). If you are located in the EEA or UK, you have the right to lodge a complaint with your local supervisory authority if you believe we have processed your data unlawfully.
12. International Data Transfers
Club Nirvana LLC is based in the United States. If you are located outside the United States, your personal data may be transferred to, stored, and processed in the United States or other countries where our service providers operate. These jurisdictions may have data protection laws different from those in your country.
Where required by applicable law, we ensure that international transfers of personal data are subject to appropriate safeguards, such as the EU Standard Contractual Clauses, adequacy decisions, or other mechanisms recognized under applicable data protection law.
13. Children's Privacy
The Platform is not directed to or intended for use by individuals under the age of 18. We do not knowingly collect personal data from children under 18. If we become aware that we have inadvertently collected personal data from a minor, we will promptly delete that information from our records. If you believe we may have collected information from a minor, please contact us at hello@clbnva.com.
14. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will post the revised Policy on the Platform with an updated effective date. For significant changes, we will notify registered users via email to the address associated with their account.
Your continued use of the Platform after the effective date of any revised Policy constitutes your acceptance of the changes. We encourage you to review this Policy periodically.
15. Contact Us
For questions, concerns, or requests related to this Privacy Policy or our data practices, please contact us:
Club Nirvana LLC
Privacy and Data Protection
Email: hello@clbnva.com
We are committed to resolving privacy concerns promptly and transparently. All privacy inquiries receive a response within 30 days.
Exercise Your Privacy Rights
Request access, correction, deletion, or export of your data by contacting hello@clbnva.com. We respond within 30 days and will verify your identity before processing sensitive requests.