Privacy Policy
Last updated: May 16, 2025
This Privacy Policy explains how BloxDB ("we", "us", or "our"), operating at bloxdb.net, collects, uses, and protects your information when you visit our website. By using the site, you agree to this policy.
1. Who We Are
BloxDB is an independent, community-run database of in-game skins for BloxStrike (a Roblox game). The website is owned and operated by an individual based in the Netherlands. A Chamber of Commerce (KVK) registration number will be added to this policy once obtained.
Data Controller: BloxDB, the Netherlands
Contact: info@bloxdb.net
2. What Data We Collect
2.1 Guests (no account)
- IP address (collected automatically by our servers and Google Analytics)
- Browser type and device information
- Pages visited and time spent on site
- Cookies placed by Google Analytics
2.2 Registered Users (optional account)
When you create an account via OAuth login (Roblox, Google, or Discord), we receive from those providers:
- Your user ID from that platform
- Your username or display name
- Your profile picture URL (if provided by the platform)
- Your email address (if shared by the OAuth provider)
We do NOT receive or store your password. Authentication is handled entirely by Roblox, Google, or Discord.
We also store your on-site preferences as a logged-in user:
- Skins you have marked as favourites
- Skins you are tracking or watching
3. Legal Basis for Processing (GDPR)
We process personal data under the following legal bases as defined by the GDPR:
- Performance of a contract (Art. 6(1)(b)): To provide account features such as saving favourites and tracked skins.
- Legitimate interests (Art. 6(1)(f)): To analyse site usage via Google Analytics to improve our service.
- Consent (Art. 6(1)(a)): For analytics cookies placed on EU/EEA visitors, obtained via our cookie consent banner.
4. Cookies
- Session cookies: Required to keep you logged in during your visit.
- Google Analytics cookies: Used to collect anonymised usage statistics (pages visited, session duration, device type).
EU/EEA visitors will be presented with a cookie consent banner before any analytics cookies are placed. You can withdraw consent or opt out of Google Analytics at any time via: https://tools.google.com/dlpage/gaoptout
5. Google Analytics
We use Google Analytics (provided by Google LLC) to understand site traffic. Google may process data on servers in the United States under the EU-US Data Privacy Framework. We have enabled IP anonymisation on all analytics tracking. For more information, see Google's Privacy Policy: https://policies.google.com/privacy
6. Third-Party OAuth Providers
Logging in via Roblox, Google, or Discord means you are also subject to their respective privacy policies. We only receive the data those providers share with us at the moment of login and do not share your personal data back to them beyond what authentication requires.
7. How Long We Keep Your Data
- Account data (username, OAuth ID, profile picture): Retained for as long as your account exists.
- Favourites and tracked skins: Retained for as long as your account exists.
- Google Analytics data: 26-month retention (Google default).
- Server logs including IP address: Deleted after approximately 30 days.
You may delete your account at any time. Upon deletion, all personal data we hold about you will be removed.
8. Your Rights Under GDPR
If you are located in the EU/EEA, you have the following rights:
- Right of access (Art. 15): Request a copy of the personal data we hold about you.
- Right to rectification (Art. 16): Ask us to correct inaccurate or incomplete data.
- Right to erasure (Art. 17): Ask us to delete your data ("right to be forgotten").
- Right to data portability (Art. 20): Request your data in a structured, machine-readable format.
- Right to object (Art. 21): Object to processing based on legitimate interests.
- Right to withdraw consent (Art. 7(3)): Opt out of consent-based processing (such as analytics cookies) at any time.
You also have the right to lodge a complaint with a supervisory authority. As our operator is based in the Netherlands, the relevant authority is the Autoriteit Persoonsgegevens (AP): www.autoriteitpersoonsgegevens.nl
To exercise any of the above rights, contact us at: info@bloxdb.net
9. Children's Privacy
Our site is accessible to users of all ages, including minors who play Roblox and BloxStrike. We do not knowingly collect more personal data from children under 13 than is strictly necessary for OAuth-based account login. We do not use children's data for any marketing or profiling purposes. If you are a parent or guardian and believe your child has provided personal data without your consent, please contact us at info@bloxdb.net and we will delete it without delay.
10. Data Security
We implement appropriate technical and organisational measures to protect your personal data, including HTTPS encryption and restricted database access. However, no system can be guaranteed to be 100% secure.
11. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page will always reflect the most recent version. Continued use of bloxdb.net after changes are posted constitutes your acceptance of the updated policy.
12. Contact
For any privacy-related questions or data requests, contact us at: info@bloxdb.net