Security & Privacy
How FairArena protects your data and privacy
Your Security Matters
At FairArena, we take your security and privacy seriously. We've built our platform with multiple layers of protection to keep your data safe and give you control over your information.
Our Security Approach
Industry-Leading Protection
We use enterprise-grade security measures:
- 🔒 Encrypted Data - All data is encrypted in transit and at rest
- 🛡️ Secure Authentication - Modern authentication powered by Clerk
- 🚨 DDoS Protection - Advanced protection against attacks with Arcjet
- 🤖 Bot Detection - Automated defense against malicious bots
- 📊 Rate Limiting - Prevents abuse and ensures fair usage
- 🔍 Security Monitoring - 24/7 monitoring for threats
- 🔐 Access Controls - Role-based permissions throughout
Data Encryption
Your data is protected at every stage:
In Transit
- All connections use TLS/SSL encryption
- HTTPS enforced across the platform
- Secure API communications
- Protected data transmission
At Rest
- Database encryption
- Secure file storage
- Encrypted backups
- Protected credentials
Account Security
Strong Authentication
We partner with Clerk for secure authentication:
Benefits:
- Industry-standard security protocols
- Secure password handling
- Protected login sessions
- Session management
- Security monitoring
Password Requirements:
- Minimum 8 characters
- Mix of letters, numbers, and symbols recommended
- Regular security checks
- Breach detection alerts
Two-Factor Authentication (2FA)
Add an extra layer of security:
Why Enable 2FA?
- Protects against password theft
- Adds second verification step
- Significantly reduces unauthorized access risk
- Peace of mind for your account
How to Enable:
- Go to Account Settings
- Navigate to Security
- Click Enable Two-Factor Authentication
- Scan QR code with authenticator app
- Enter verification code
- Save backup codes securely
- 2FA is now active! ✅
Supported Methods:
- Authenticator apps (Google Authenticator, Authy)
- SMS verification
- Email verification
- Backup codes
Keep your backup codes in a safe place! You'll need them if you lose access to your 2FA device.
Session Security
Your login sessions are protected:
- Automatic session expiration
- Secure session tokens
- Multi-device session management
- Remote session termination
- Unusual activity detection
Password Management
Best Practices:
- Use a unique password for FairArena
- Don't share your password
- Change password if compromised
- Use a password manager
- Enable 2FA for extra protection
Reset Password:
- Click Forgot Password on login page
- Enter your email address
- Check email for reset link
- Click link (valid for 1 hour)
- Create new password
- Confirm new password
- Log in with new password
Privacy Controls
Profile Privacy
You control who sees your information:
Public Profile
- Visible to everyone on the internet
- Maximum discoverability
- Great for networking and opportunities
- Anyone can view your profile
Private Profile
- Only logged-in FairArena members can view
- Better privacy while staying discoverable
- Good balance for most users
- Requires account to view
Require Authentication
- Extra privacy layer
- Must be logged in to view
- You can track who views your profile
- Gives you more control
View Tracking
Control profile view tracking:
Enable Tracking:
- See who viewed your profile
- Get visitor names and emails
- View timestamps of visits
- Understand your audience
Disable Tracking:
- More privacy for you
- Visitors remain anonymous
- No tracking data collected
- Simpler experience
Information Sharing
Control what you share:
- Make fields optional or required
- Choose which social links to display
- Control resume visibility
- Set contact information privacy
- Manage work history visibility
Data Privacy
What We Collect
We collect only what's necessary:
Account Information
- Email address
- Name
- Password (encrypted)
- Profile information you provide
Usage Information
- How you use the platform
- Features you interact with
- Performance data
- Error logs
Technical Information
- IP address
- Browser type
- Device information
- Login timestamps
How We Use Your Data
Your data is used to:
- Provide and improve our services
- Authenticate your identity
- Send important notifications
- Customize your experience
- Ensure platform security
- Comply with legal obligations
- Analyze usage patterns (anonymized)
What We Don't Do
We never:
- ❌ Sell your personal information
- ❌ Share data without permission
- ❌ Use your data for unauthorized purposes
- ❌ Access your data unnecessarily
- ❌ Keep data longer than needed
Your Data Rights
You have the right to:
- ✅ Access your personal data
- ✅ Correct inaccurate information
- ✅ Delete your account and data
- ✅ Export your data
- ✅ Opt-out of marketing emails
- ✅ Control privacy settings
- ✅ Withdraw consent
Third-Party Services
Trusted Partners
We work with trusted services:
Clerk - Authentication
- Secure login and signup
- Session management
- User authentication
Razorpay - Payment Processing
- Secure payment handling
- PCI DSS compliant
- Encrypted transactions
PostgreSQL - Database
- Reliable data storage
- Encrypted at rest
- Regular backups
Monitoring Services
- Performance monitoring
- Error tracking
- Security alerts
- Anonymized analytics
Data Sharing
We only share data when:
- Required for service operation
- You give explicit permission
- Required by law
- Necessary for security
- Part of business transfer (with notice)
Each partner follows strict privacy standards and contracts.
Account Logs
Activity Tracking
Monitor your account activity:
What's Logged:
- Login attempts
- Password changes
- Settings modifications
- Profile updates
- Credit transactions
- Important actions
Access Your Logs:
- Go to Account Settings
- Click Account Logs
- View your activity history
- Filter by action type
- Check timestamps
- Verify authorized activity
Log Details:
- Action performed
- Date and time
- Device/location
- Result (success/failure)
- Additional context
Regularly review your account logs to ensure all activity is authorized. Report any suspicious activity immediately.
Audit Trails
Organization & Team Logs
Track organizational activity:
Organization Audit Logs:
- Member additions/removals
- Role changes
- Settings updates
- Team creation
- Important decisions
Team Audit Logs:
- Team member changes
- Project creation
- Permission updates
- Configuration changes
- Critical actions
Project Audit Logs:
- Member changes
- Role assignments
- Settings modifications
- Access changes
- Important updates
These logs help with:
- Accountability
- Compliance
- Security monitoring
- Troubleshooting
- Understanding history
Data Protection
Backup & Recovery
Your data is protected:
- Regular Backups: Multiple daily backups
- Redundancy: Data stored across multiple locations
- Quick Recovery: Fast restoration if needed
- Disaster Recovery: Plans for worst-case scenarios
- Data Integrity: Regular validation checks
Data Retention
How long we keep your data:
Active Accounts:
- Data retained while account is active
- Regular updates and maintenance
- Accessible anytime
Deleted Accounts:
- Most data deleted within 30 days
- Some data retained for legal reasons
- Financial records kept per regulations
- Audit logs maintained as required
Inactive Accounts:
- Notifications sent before action
- Option to reactivate
- Data preserved during inactive period
- Eventual deletion after extended inactivity
Cookies & Tracking
How We Use Cookies
Cookies help us provide a better experience:
Essential Cookies:
- Keep you logged in
- Remember your preferences
- Enable core features
- Ensure security
Analytics Cookies:
- Understand usage patterns
- Improve features
- Identify issues
- Measure performance
Preference Cookies:
- Remember your settings
- Customize experience
- Save language preferences
- Store display options
Managing Cookies
You can control cookies:
- Browser settings
- Cookie preferences in account
- Opt-out of analytics
- Clear cookies anytime
Disabling essential cookies may affect platform functionality. Analytics and preference cookies can be safely disabled.
Compliance
Standards We Follow
We comply with:
- GDPR (General Data Protection Regulation)
- CCPA (California Consumer Privacy Act)
- SOC 2 principles
- Industry best practices
- Regional privacy laws
Your Rights Under GDPR
If you're in the EU:
- Right to access your data
- Right to rectification
- Right to erasure ("right to be forgotten")
- Right to data portability
- Right to restrict processing
- Right to object
- Right to withdraw consent
Your Rights Under CCPA
If you're in California:
- Right to know what data we collect
- Right to delete personal information
- Right to opt-out of data sales (we don't sell data)
- Right to non-discrimination
- Right to access your data
Security Best Practices
For Your Safety
Protect your account:
Strong Passwords
- Use unique, complex passwords
- Don't reuse passwords
- Use a password manager
- Change if compromised
Enable 2FA
- Add extra security layer
- Protect against password theft
- Use authenticator apps
- Keep backup codes safe
Be Cautious
- Don't share login credentials
- Verify emails before clicking links
- Watch for phishing attempts
- Log out on shared devices
Stay Informed
- Review account activity regularly
- Check login sessions
- Monitor for unusual activity
- Report security concerns
Keep Updated
- Use latest browser version
- Keep OS updated
- Update security software
- Install security patches
Reporting Issues
Security Concerns
Found a security issue?
Report It:
- Email fairarena.contact@gmail.com
- Describe the issue clearly
- Include steps to reproduce (if applicable)
- Don't publicly disclose until fixed
- We'll respond within 48 hours
What to Report:
- Security vulnerabilities
- Data breaches
- Unauthorized access
- System weaknesses
- Privacy concerns
Privacy Concerns
Questions about privacy?
Contact Us:
- Email: fairarena.contact@gmail.com
- Response within 3-5 business days
- Detailed investigation
- Clear resolution
Data Deletion
Delete Your Account
Want to leave FairArena?
Before You Delete:
- Export your data if needed
- Download important files
- Cancel subscriptions
- Inform team members
- Consider consequences
Deletion Process:
Go to Settings
Navigate to Account Settings → Privacy & Security
Request Deletion
Click Delete Account
Confirm Identity
Verify it's really you (password or 2FA)
Confirm Deletion
Understand what will be deleted
Complete Deletion
Account is marked for deletion
Grace Period
30-day window to cancel deletion
Permanent Deletion
After 30 days, data is permanently removed
What Gets Deleted:
- Personal information
- Profile data
- Account settings
- Most activity history
What May Remain:
- Financial records (legal requirement)
- Audit logs (compliance)
- Anonymized analytics data
- Public contributions (anonymized)
Transparency
Our Commitment
We believe in transparency:
- Clear privacy policy
- Regular security updates
- Open communication
- User education
- Responsive support
Policy Updates
When we update policies:
- Notice sent to your email
- Posted on the platform
- Reasonable notice period
- Opportunity to review
- Option to object
Contact Us
Privacy & Security Team
Have questions?
Email:
- Security: fairarena.contact@gmail.com
- Privacy: fairarena.contact@gmail.com
- General: fairarena.contact@gmail.com
Response Times:
- Security issues: 48 hours
- Privacy inquiries: 3-5 business days
- General questions: 24 hours
What's Next?
Account Settings
Configure your account preferences
Support
Get help when you need it
Terms & Conditions
Read our terms of service
Your security and privacy are our top priorities. We're here to protect you! 🔒