PRIVACY POLICY
This policy describes how Gump Ai Limited (“we”, “us”, “our”) collects, uses, and protects your personal data—including facial images and biometric information—in compliance with the EU General Data Protection Regulation (GDPR) and relevant international data privacy rules.
By visiting our website (https://gump.gg, the “Site”) or using our platform, you accept and consent to the practices detailed below.GDPR Compliance Statement
Gump.gg is committed to fully complying with the EU General Data Protection Regulation (GDPR) and applicable data protection laws in all personal and biometric data processing activities. We adhere to GDPR principles of transparency, data minimization, lawfulness, and robust user rights.- Information We Collect
- You provide: Name, contact info, payment details, account content (e.g., uploaded photos).
- Automatic collection: IP, device/browser, cookies, site and feature usage data.
- From third parties: Partners and vendors as permitted by law.
- Facial Recognition & Biometric Data
- We process biometric data including facial attributes from photos for our AI-powered search and tagging features.
- Lawful Basis: Biometric data is only processed with your explicit, informed, opt-in consent (GDPR Articles 6, 9)
- How consent works: You must actively agree before any facial recognition is enabled or your images are analyzed; this consent can be withdrawn at any time in your account settings.
- DPIA: All facial recognition is subject to regular Data Protection Impact Assessments as required by the GDPR.
- Use of Content
- We use client-uploaded content only to provide, secure, and operate the Gump Platform. We do not use client-uploaded media to train or fine-tune our AI models, and we do not use such content for marketing, demos, or other promotional purposes without prior written consent.
- How We Use Data
- Provide, operate, and improve Gump’s products and services
- Account management and customer support
- Communications, billing, and security
- Personalization
- Legal and regulatory compliance
- Cookies & Tracking
- Cookies are used for analytics, essential features, and personalization. See our Cookie Policy for details.
- Data Sharing & Disclosure
- Affiliates, contractors, and providers as needed to operate our services
- Required disclosures to regulators or during business transfers
- Never: We do not sell your personal data
- Retention and Deletion
- Client content remains in the account until it is deleted by the client or removed in accordance with our retention policy. Deleted content will be removed from our active systems within a reasonable period, subject to backup cycles, legal obligations, or contractual requirements.
- Access and Security
- Access to client data is restricted to authorized personnel only, for support, maintenance, security, and compliance purposes. We protect data using appropriate technical and organizational security measures, including encryption and access controls.
- International Transfers
- Where data is moved internationally, Gump.gg ensures GDPR-standard safeguards are in place.
- Your Rights
- You may request to:
- Confirm if we hold your data
- Access, correct, delete, or export your data
- Withdraw consent (including for biometric/facial processing)
- Object to or restrict data use
- Lodge a complaint with a data protection authority
- Contact hello@gump.gg to exercise these rights.
- Children’s Privacy
- Our platform is not intended for those under age 18. We delete any such data if discovered.
- Third-Party Services
- We are not responsible for privacy practices or content of external services linked on our site.
- Changes to this Policy
- We will notify users of key changes. Use after such notice constitutes acceptance.
- Contact
- Questions, concerns, or requests regarding privacy may be sent to: hello@gump.gg.
Last Updated: 23 July 2026