Privacy Policy
Last updated: May 01, 2026
- 1. Information We Collect
- 2. How We Use Your Information
- 3. How We Share Your Information
- 4. Third-Party Service Providers
- 5. Data Security
- 6. Data Retention
- 7. Your Rights and Choices
- 8. California Privacy Rights (CCPA/CPRA)
- 9. European Privacy Rights (GDPR)
- 10. Cookies & Tracking Technologies
- 11. Children's Privacy
- 12. International Data Transfers
- 13. Data Breach Notification
- 14. Changes to This Policy & Contact
At Anylancer ("we," "us," or "our"), we are committed to protecting your privacy. This Privacy Policy explains how Anylancer LLC, a Delaware limited liability company, collects, uses, shares, and safeguards your personal information when you use our website and services (collectively, the "Service").
By using Anylancer, you consent to the practices described in this Privacy Policy. This policy should be read together with our Terms of Service and Cookie Policy.
1. Information We Collect
1.1 Information You Provide
We collect information that you voluntarily provide, including:
- Account Information: Name, email address, username, password, and country of residence when you register
- Profile Information: Professional bio, skills, portfolio items, profile photo, languages, education, work experience, and certifications
- Payment Information: Billing address and payment method details (processed securely by Stripe and PayPal — we do not store full card numbers)
- Communication Data: Messages exchanged between buyers and sellers through the platform's messaging system
- Service Listings: Task descriptions, images, pricing tiers, FAQs, requirements, and delivery terms
- Support Requests: Information included in support tickets, contact form submissions, and dispute filings
- Review Content: Star ratings, written reviews, and seller responses
1.2 Identity Verification Data
If you opt into our identity verification program, we may collect government-issued identification documents (passport, national ID, driver's license). This sensitive data is:
- Stored securely in encrypted, access-controlled storage
- Accessible only to authorized administrators for verification purposes
- Retained only as long as your account is active (deleted upon account closure or verification removal)
- Never shared with third parties except as required by law
1.3 Information Collected Automatically
When you use our Service, we automatically collect:
- Device Information: Browser type, operating system, device type, and screen resolution
- Log Data: IP address, pages visited, time spent, referring URLs, and access timestamps
- Usage Data: Search queries, features used, interactions with listings, and navigation patterns
- Location Data: Country-level geolocation derived from your IP address (we do not use GPS tracking)
- Cookies: Session identifiers, preferences, and analytics data (see our Cookie Policy)
1.4 Information from Third Parties
We may receive information from:
- Payment processors (transaction status, confirmations, chargeback notifications)
- Analytics providers (aggregated usage statistics)
- Fraud prevention services (risk assessments)
2. How We Use Your Information
2.1 Providing the Service
- Creating and managing your account
- Processing transactions and facilitating payments
- Enabling communication between buyers and sellers
- Delivering order notifications and platform features
2.2 Safety & Security
- Detecting and preventing fraud, spam, and unauthorized access
- Monitoring for suspicious activity (login anomalies, IP-based threat detection)
- Enforcing our Terms of Service and Community Standards
2.3 Improvement & Analytics
- Analyzing usage patterns to improve features and user experience
- Conducting internal research and development
- Troubleshooting technical issues
2.4 Communication
- Transactional: Order updates, delivery notifications, dispute alerts, security warnings (always sent)
- Marketing: Newsletters, promotions, and platform updates (only with consent; opt-out anytime via email preferences or unsubscribe link)
2.5 Legal Compliance
- Complying with applicable laws and regulations
- Responding to lawful requests from authorities
- Enforcing our agreements and protecting our legal rights
- Tax reporting where required (e.g., IRS 1099-K)
3. How We Share Your Information
3.1 With Other Users
Your public profile information, service listings, and reviews are visible to other platform users. When you place or receive an order, certain information is shared between buyer and seller to facilitate the transaction (e.g., username, order requirements, delivery files).
3.2 Payment Processors
We share necessary transaction data with Stripe and PayPal to process payments. These processors handle your payment data under their own privacy policies and PCI-DSS compliance standards.
3.3 Service Providers
We share information with trusted third-party providers who assist in operating the platform. See 4 for the full list.
3.4 Legal Requirements
We may disclose information if required by law, court order, or governmental request, or if disclosure is necessary to protect our rights, prevent fraud, or ensure user safety.
3.5 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction. We will notify you of any such change.
We do not sell your personal information to third parties.
4. Third-Party Service Providers
We work with the following categories of third-party providers:
4.1 Payment Processing
- Stripe — Credit/debit card processing (Stripe Privacy Policy)
- PayPal — PayPal payments and payouts (PayPal Privacy Policy)
4.2 Infrastructure & Hosting
- Cloudflare — CDN, DDoS protection, and DNS
- VPS Hosting Provider — Server infrastructure
4.3 Communication
- Amazon SES / SMTP Provider — Transactional and marketing email delivery
- Pusher — Real-time notifications and messaging
4.4 Analytics & Advertising
- Google Tag Manager — Tag management (loaded only after cookie consent)
- Google Analytics — Usage analytics (loaded only after cookie consent)
- Facebook Pixel — Advertising analytics (loaded only after cookie consent)
- Google AdSense — Display advertising (when enabled)
Analytics and advertising tools are only activated after you provide consent through our cookie consent banner, in compliance with GDPR requirements.
5. Data Security
We implement industry-standard security measures to protect your personal information:
- SSL/TLS encryption for all data transmitted between your browser and our servers
- Secure, hashed password storage using bcrypt (we never store passwords in plain text)
- CSRF protection on all forms and state-changing requests
- Content Security Policy headers to prevent cross-site scripting
- Rate limiting on authentication and sensitive endpoints
- IP-based threat detection and automatic blocking of suspicious activity
- Access controls limiting employee access to personal data on a need-to-know basis
- Regular security audits and administrative audit logging
- Encrypted storage for sensitive documents (identity verification files)
While we strive to protect your information, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but are committed to following best practices.
6. Data Retention
6.1 Active Accounts
We retain your personal information for as long as your account is active and as needed to provide the Service.
6.2 Account Deletion
When your account is deleted, we will remove or anonymize your personal data within 30 days, except where retention is required by law.
6.3 Legal Retention
Certain data may be retained beyond account deletion:
- Financial records: Transaction data retained for up to 7 years for tax compliance
- Security logs: IP and login records retained for up to 12 months for fraud prevention
- Dispute records: Retained for the duration of any ongoing legal proceedings
- Admin audit logs: Retained for regulatory compliance
7. Your Rights and Choices
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal data (subject to legal obligations)
- Portability: Request your data in a structured, machine-readable format
- Objection: Object to processing of your data for specific purposes
- Restriction: Request that we limit processing of your data
- Withdraw Consent: Withdraw consent for marketing communications at any time
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days (or 45 days for complex requests, with notice).
8. California Privacy Rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) provide you with additional rights regarding your personal information.
8.1 Right to Know
You have the right to request that we disclose:
- The categories of personal information we have collected about you
- The categories of sources from which your information was collected
- The business or commercial purpose for collecting your information
- The categories of third parties with whom we share your information
- The specific pieces of personal information we have collected about you
8.2 Right to Delete
You may request deletion of your personal information, subject to certain exceptions (e.g., completing a transaction, legal compliance, security purposes).
8.3 Right to Opt-Out of Sale
We do not sell your personal information. If this changes in the future, we will provide a "Do Not Sell My Personal Information" link and update this policy.
8.4 Right to Non-Discrimination
We will not discriminate against you for exercising your CCPA rights. You will not receive different pricing, quality of service, or access levels for exercising your privacy rights.
8.5 How to Submit a Request
California residents may submit requests by emailing [email protected] with the subject line "CCPA Request." We will verify your identity before processing your request. You may also designate an authorized agent to make requests on your behalf.
9. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, the General Data Protection Regulation (GDPR) provides you with additional protections.
9.1 Legal Basis for Processing
We process your personal data under the following legal bases:
- Contract Performance: Processing necessary to provide the Service (account management, order processing, payments)
- Legitimate Interests: Processing for fraud prevention, security, platform improvement, and customer support
- Consent: Marketing communications, non-essential cookies, and analytics tracking
- Legal Obligation: Tax reporting, responding to lawful authority requests
9.2 Your GDPR Rights
In addition to the rights in 7, you have the right to:
- Lodge a complaint with your local data protection supervisory authority
- Withdraw consent at any time for processing based on consent (this does not affect the lawfulness of processing before withdrawal)
- Object to automated decision-making including profiling that produces legal effects
9.3 Data Protection Contact
For GDPR-related inquiries, contact our data protection team at [email protected] with the subject line "GDPR Request."
9.4 International Data Transfers
Your data may be transferred to and processed in the United States. When we transfer data outside the EEA, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission to ensure adequate protection of your data.
10. Cookies & Tracking Technologies
We use cookies and similar technologies to enhance your experience, analyze usage, and deliver relevant content. Our cookie practices are fully described in our Cookie Policy.
Key points:
- Essential cookies (session management, security) are always active
- Analytics and advertising cookies are only activated after you provide consent through our cookie consent banner
- You can manage preferences through your browser settings or our consent banner
- Withdrawing cookie consent does not affect essential platform functionality
11. Children's Privacy
Anylancer is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If we learn that we have collected information from a child under 18, we will promptly delete that information. If you believe a child has provided us with personal information, please contact us at [email protected].
12. International Data Transfers
Anylancer operates globally, and your information may be transferred to and processed in countries other than your country of residence, including the United States. These countries may have different data protection laws than your jurisdiction.
When we transfer data internationally, we implement appropriate safeguards:
- Standard Contractual Clauses (SCCs) for transfers from the EEA/UK
- Data Processing Agreements with all third-party service providers
- Encryption of data in transit and at rest
13. Data Breach Notification
In the event of a data breach that poses a risk to your rights and freedoms, we commit to:
- Notifying affected users within 72 hours of becoming aware of the breach (as required by GDPR)
- Reporting the breach to the relevant supervisory authority where required
- Providing clear information about what data was affected and what steps we are taking
- Offering guidance on protective measures you can take
14. Changes to This Policy & Contact
14.1 Policy Updates
We may update this Privacy Policy to reflect changes in our practices or applicable laws. When we make material changes, we will notify you by email or through a prominent notice on the platform at least 30 days before the changes take effect. The "Last updated" date at the top indicates when this policy was last revised.
14.2 Contact Us
If you have questions about this Privacy Policy or our data practices:
- Privacy inquiries: [email protected]
- General support: [email protected]
- Contact page: anylancer.com/contact
For CCPA requests, use subject line "CCPA Request." For GDPR requests, use "GDPR Request."