Privacy Policy

Effective Date: September 11, 2025

1. Introduction

Welcome to The AI Review Site(https://theaireviewsite.com). We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, submit reviews, comments, or interact with our services.

This policy applies to all users of our site, including visitors, registered users, and contributors. It complies with the UK General Data Protection Regulation (UK GDPR), the EU General Data Protection Regulation (EU GDPR), and the Data Protection Act 2018.

If you are in the European Economic Area (EEA), United Kingdom, or Switzerland, your data is processed in accordance with these laws. We process personal data only where we have a lawful basis to do so.

2. Data Controller

The data controller responsible for your personal data is:
The AI Review Site, Unit 121652, PO Box 6945, London, W1A 6US
contact@theaireviewsite.com

3. Personal Data We Collect

We collect the following categories of personal data:

3.1 Data You Provide Directly

  • Account Information: When you register for an account to submit reviews or comments, we collect your username, email address, and any other information you provide in your user profile (e.g., bio or preferences).
  • Content Submissions: Comments, reviews, ratings, or articles you post, including any text, images, or media uploaded.
  • Contact Forms: Name, email, and message content if you contact us via forms.
  • Media Uploads: Images or files you upload, which may include metadata like EXIF GPS location data (we advise avoiding uploads with such data).

3.2 Data Collected Automatically

  • Device and Usage Information: IP address, browser type, operating system, referring URLs, pages viewed, time spent on pages, and clickstream data.
  • Cookies and Similar Technologies: See our separateCookie Policy for details. This includes cookies for login persistence, screen preferences, and analytics.
  • Log Data: Server logs capturing access times, errors, and security events.

3.3 Data from Third Parties

  • Gravatar Service: If you use Gravatar for profile pictures, we may receive a hash of your email address to check for an associated image. Gravatar’s privacy policy applies:https://automattic.com/privacy/.
  • Embedded Content: Interactions with embedded videos, images, or articles from third-party sites (e.g., YouTube) may allow those sites to collect data about you, as if you visited them directly.
  • Spam Detection: Visitor comments may be checked via automated services like Akismet, which processes IP addresses and user agents.

4. Purposes and Legal Bases for Processing

We process your personal data for the following purposes, based on the specified legal bases under UK/EU GDPR:

Purpose
Description
Legal Basis
Providing Services
Operating the website, enabling user registrations, posting reviews/comments, and displaying content.
Performance of a contract (Art. 6(1)(b)) or legitimate interests (Art. 6(1)(f)) in running a review platform.
Moderation and Spam Prevention
Detecting spam, moderating comments, and ensuring content quality.
Legitimate interests (Art. 6(1)(f)) in maintaining site integrity and security.
Analytics and Improvements
Analyzing site usage to improve functionality, content, and user experience (e.g., via aggregated stats).
Consent (Art. 6(1)(a)) for non-essential analytics; legitimate interests (Art. 6(1)(f)) for essential ones.
Security
Protecting against fraud, unauthorized access, and legal threats.
Legitimate interests (Art. 6(1)(f)) in site security.
Communications
Sending password resets, account notifications, or responses to inquiries.
Performance of a contract (Art. 6(1)(b)) or consent (Art. 6(1)(a)).
Legal Compliance
Complying with laws, audits, or disputes.
Legal obligation (Art. 6(1)(c)).

Where we rely on legitimate interests, we have conducted a balancing test to ensure your rights are not overridden. You can request details by contacting us.If we process data based on consent, you can withdraw it at any time (see Section 8).

5. Sharing Your Data

We share personal data only as necessary:

  • Service Providers: With third parties like hosting providers, spam filters (e.g., Akismet), and analytics tools (e.g., Google Analytics). These are bound by data processing agreements.
  • Embedded Content Providers: Third-party sites for embedded media may collect data independently.
  • Legal Requirements: If required by law, court order, or to protect rights (e.g., in response to subpoenas).
  • Business Transfers: In case of merger, acquisition, or sale of assets.

We do not sell your personal data.

6. International Data Transfers

Your data may be transferred outside the UK/EEA, e.g., to US-based services like Gravatar or Akismet. We ensure adequate safeguards:

  • Adequacy decisions (where applicable).
  • Standard Contractual Clauses (SCCs) or UK International Data Transfer Agreements (IDTAs).
  • Binding Corporate Rules (if relevant).

For details on specific transfers, contact us.

7. Data Retention

We retain personal data only as long as necessary:

  • Comments and metadata: Indefinitely, to display and moderate follow-ups (unless deleted by you).
  • User profiles: Until account deletion or 2 years after inactivity.
  • Logs and IP data: Up to 12 months for security.
  • Cookies: As detailed in our Cookie Policy.

Data is deleted or anonymized when no longer needed, subject to legal retention requirements (e.g., for tax/audit purposes).

8. Your Data Protection Rights

Under UK/EU GDPR, you have the following rights:

  • Access: Request a copy of your personal data.
  • Rectification: Correct inaccurate data.
  • Erasure (‘Right to be Forgotten’): Delete data in certain cases (e.g., if consent is withdrawn), excluding data kept for legal reasons.
  • Restriction: Limit processing in specific scenarios.
  • Objection: Object to processing based on legitimate interests or direct marketing.
  • Data Portability: Receive your data in a structured format.
  • Withdraw Consent: At any time, without affecting prior processing.
  • Automated Decisions: Not to be subject to solely automated decisions with legal effects (we do not use such on our site).

To exercise rights, email contact@theaireviewsite.com. We respond within one month (extendable if complex). No fee usually applies, but we may charge for excessive requests.You can complain to the UK Information Commissioner’s Office (ICO) atwww.ico.org.uk or your local supervisory authority in the EEA.

9. Data Security

We implement appropriate technical and organizational measures, including encryption, access controls, and regular audits, to protect your data from unauthorized access, loss, or breach. However, no system is 100% secure.In case of a breach, we notify you and authorities as required by law.

10. Children’s Privacy

Our site is not intended for children under 16. We do not knowingly collect data from them. If we discover such data, we delete it.

11. Changes to This Policy

We may update this policy. Changes are posted here with the new effective date. Significant changes are notified via email or site notice.

12. Contact Us

For questions, contact: contact@theaireviewsite.com.

Lost Password

Please enter your username or email address. You will receive a link to create a new password via email.