Skip to content

Privacy Policy

Last updated: March 15, 2026

1. Introduction

Relicara (“we,” “us,” or “our”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share your personal information when you use the Relicara platform (“Service”).

By using the Service, you consent to the practices described in this policy. If you do not agree, please do not use the Service.

2. Information We Collect

Information you provide

  • Account information: Name, email address, and password when you register
  • Profile information: Display name, avatar, and bio (optional)
  • Collection data: Item descriptions, conditions, values, custom fields, tags, and any other metadata you enter
  • Images: Photographs you upload of your collection items
  • Communications: Messages sent through the platform, support requests, and feedback
  • Payment information: Billing details processed securely by our third-party payment provider (we do not store full card numbers)

Information collected automatically

  • Usage data: Pages visited, features used, actions taken, and time spent on the platform
  • Device information: Browser type, operating system, screen resolution, and device identifiers
  • Log data: IP address, access times, referring URLs, and error logs
  • Cookies: See our Cookie Policy for details

3. How We Use Your Information

We use your information to:

  • Provide the Service: Store and display your collections, process trades, and enable community features
  • Improve the platform: Analyze usage patterns to enhance features, fix bugs, and optimize performance
  • Personalize your experience: Recommend collections, surface relevant community content, and tailor notifications
  • Process payments: Manage subscriptions, billing, and refunds
  • Communicate with you: Send transactional emails (account verification, password resets, subscription updates) and optional marketing emails you can unsubscribe from at any time
  • Ensure security: Detect and prevent fraud, abuse, and unauthorized access
  • Generate AI valuations: Process item data through our valuation models to provide estimated values (paid plans only)

4. How We Share Your Information

We do not sell your personal information. We share data only in these limited circumstances:

  • Public collections: If you choose to make a collection public, its contents (items, images, descriptions) are visible to other users and may be indexed by search engines
  • Community features: Your display name and public profile are visible to other users when you follow, trade, or interact on the platform
  • Service providers: We use trusted third-party services for hosting, payment processing, email delivery, and analytics. These providers are bound by confidentiality agreements and process data only on our behalf
  • Legal requirements: We may disclose information if required by law, subpoena, or court order, or to protect the rights, safety, or property of Relicara or its users
  • Business transfers: In the event of a merger, acquisition, or sale of assets, user data may be transferred to the successor entity

5. Data Storage and Security

We take the security of your data seriously:

  • Encryption: All data is encrypted in transit (TLS 1.2+) and at rest (AES-256)
  • Password hashing: Passwords are hashed using bcrypt and are never stored in plain text
  • Access controls: Employee access to user data is restricted on a need-to-know basis
  • Image processing: EXIF metadata is automatically stripped from uploaded images to protect your location and device information
  • Infrastructure: Our servers are hosted in secure, SOC 2-compliant data centers

While we implement industry-standard safeguards, no system is 100% secure. We encourage you to use a strong, unique password for your account.

6. Data Retention

  • Active accounts: We retain your data for as long as your account is active
  • Deleted accounts: When you delete your account, all personal data and collection content is permanently removed within 30 days
  • Backups: Data may persist in encrypted backups for up to 90 days after deletion, after which it is purged
  • Anonymized data: We may retain anonymized, aggregated data (e.g., total collections created, platform usage trends) indefinitely for analytics purposes

7. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Update or correct inaccurate information
  • Deletion: Request deletion of your account and associated data
  • Export: Download your collection data in a portable format (available on Premium plans)
  • Objection: Object to certain types of data processing
  • Withdraw consent: Withdraw consent for optional data processing (e.g., marketing emails) at any time

To exercise any of these rights, contact us at hello@relicara.com. We will respond within 30 days.

8. Children’s Privacy

The Service is not intended for users under 16 years of age. We do not knowingly collect personal information from children under 16. If we become aware that a child under 16 has provided us with personal data, we will promptly delete it.

9. International Data Transfers

If you access the Service from outside the United States, your data may be transferred to and processed in the United States. By using the Service, you consent to this transfer. We ensure appropriate safeguards are in place for international data transfers in compliance with applicable data protection laws.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users of material changes via email or an in-app notice at least 14 days before the changes take effect. The “Last updated” date at the top of this page reflects the most recent revision.

11. Contact

If you have questions or concerns about this Privacy Policy or our data practices, please contact us at hello@relicara.com.