1. Controller and scope
This policy describes how Maison Maveya processes personal data for its adult-only escort profile marketplace, including accounts, verification, media, private messages, moderation and safety records.
2. Data we collect
- Account data such as name, email, role, language, login records and subscription status.
- Provider profile data such as profile text, images, appearance fields, rates, services, availability and city information.
- Client communication data such as selected profile, message content, timing preferences, city and conversation status.
- Verification and moderation data such as review status, reports, risk flags, audit logs and evidence submitted through support channels.
- Technical data such as device, IP, browser, cookies, security logs and usage events.
3. Purposes
- Create accounts and authenticate users.
- Display approved escort profiles and city directory pages.
- Provide private messaging and apply account, provider and safety rules to published direct-contact links.
- Moderate content, investigate reports and prevent fraud or exploitation.
- Manage subscriptions, manual payment status, promotions and provider packages.
- Comply with legal obligations and preserve platform security.
4. Legal basis
Depending on the jurisdiction and use case, processing may rely on contract necessity, consent, legitimate interests, legal obligations or explicit consent for sensitive verification-related processing.
5. Sharing
Data may be shared with hosting, authentication, storage, email, verification, payment, analytics, legal or safety vendors where necessary. Data is not sold to advertisers.
6. Creator content and moderator access
- Journal, follower-only and paid creator media is stored separately from public profile media and delivered through access-controlled links.
- Authorised content moderators may open original files only for moderation, safety, consent and rights checks, support, dispute handling or legal compliance. A reason is required and the access is recorded.
- Support and finance personnel receive only the metadata needed for their role unless a separate lawful escalation authorises broader access.
- Purchase, entitlement, refund, report and access records may be retained for fraud prevention, disputes, accounting and safety even after public visibility ends.
7. User rights
Users may request access, correction, deletion, restriction, objection or portability where applicable. Certain records may be retained where required for safety, dispute handling, fraud prevention or legal obligations.
8. International transfers
If data is processed outside the user’s country or region, appropriate safeguards such as contractual clauses, vendor due diligence or equivalent transfer mechanisms should be applied.
9. Security
The platform uses authentication, role controls, Row Level Security, storage rules and admin review processes. Sensitive verification documents must not be stored in public media buckets.