Privacy Policy
Your Privacy Matters
At Global Heartbeat, we are committed to protecting your privacy and being transparent about how we handle your data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.
By using Global Heartbeat, you consent to the data practices described in this policy.
1Information We Collect
Information You Provide Directly
- Email Address: Required for transaction confirmation and notifications
- Full Name: Optional (2-30 characters)
- Nickname: Optional (2-15 characters)
- Birth Year: Optional for statistical analysis only
- Country: Required from predefined list
- Message Content: Short Pulse has a 300-character limit; Full Heartbeat allows up to 1,000 characters (minimum 30 characters).
- Tags: Optional categorization labels (up to 6)
- Notification Emails: Optional list of recipient emails (up to 10)
Information Collected Automatically
- IP Address: For geographic pricing and security
- Browser Type & Version: For compatibility optimization
- Device Information: Device type and operating system
- Usage Data: Pages visited, time spent, click patterns
- Session Information: Anonymous session identifiers
Payment Information
Critical Security Note: Global Heartbeat does NOT store or save credit card information used in transactions. All payment processing is handled by PCI-DSS compliant third-party payment processors.
2How We Use Your Information
| Purpose | Data Used | Legal Basis |
|---|---|---|
| Message Publication | Message content, sender info (if consented), country | Contractual necessity |
| Transaction Processing | Email, IP address, payment token | Contractual necessity |
| Email Notifications | Your email, recipient emails, message details | Legitimate interest |
| Statistical Analysis | Aggregated, anonymized data only | Your consent |
| Service Improvement | Usage patterns, technical data | Legitimate interest |
| Security & Fraud Prevention | IP address, session data | Legal obligation |
Statistical Analysis Consent
By using our service, you agree to having your data used for general and anonymous statistical analysis purposes only. This includes:
- Aggregated demographic analysis (age ranges, geographic distribution)
- Message content analysis for word frequency and emotional patterns
- Usage pattern analysis for service optimization
- Tag popularity and categorization analysis
All statistical analysis is performed on anonymized, aggregated data that cannot be traced back to individual users.
3Data Protection Commitment
Data Protection Promise: All user data is protected by law and will NOT be used commercially with any partners, ever. We do not sell, rent, or trade your personal information to third parties.
Security Measures
We implement appropriate technical and organizational security measures to protect your data, including:
- Encryption of data in transit (TLS 1.3) and at rest (AES-256)
- Regular security audits and vulnerability assessments
- Access controls and authentication mechanisms
- Secure data center infrastructure
- Regular security training for our team
Data Retention
We retain different types of information for different periods:
- Published Messages: Permanently (as per service design)
- Scheduled Messages: Until published
- Payment Records: 7 years (for tax and legal compliance)
- Email Addresses: Until service termination or user ban
- Technical Logs: 1 year for operational purposes
- Audit Logs: 7 years for compliance
4Your Rights and Choices
Data Subject Rights
Depending on your location, you may have certain rights regarding your personal data:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate data
- Right to Erasure: Request deletion of your data (with limitations)
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a portable format
- Right to Object: Object to certain processing activities
Important Limitation: Due to the permanent nature of our service, published messages cannot be edited or deleted except in cases of policy violations. This is a fundamental design principle of Global Heartbeat.
Exercising Your Rights
To exercise any of these rights, please contact us at contact@ghbeat.com. We will respond to your request within 30 days.
5Third-Party Services
Service Providers
We use third-party services to operate our platform:
- Payment Processors: Stripe, PayPal (PCI-DSS compliant)
- Email Services: SendGrid, Amazon SES
- Cloud Infrastructure: AWS, Google Cloud
- Analytics: Plausible Analytics (privacy-focused)
- Translation Services: Microsoft Azure Translator
All third-party providers are contractually obligated to protect your data and use it only for the services they provide to us.
International Data Transfers
As a global service, your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for international data transfers, including Standard Contractual Clauses where applicable.
6Children's Privacy
Global Heartbeat is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
7Policy Violations and Enforcement
Enforcement Policy: If your message content violates our Terms of Use or this Privacy Policy:
- The administration team will permanently delete the violating message
- The email address used will be banned from submitting new messages
- No refund will be provided for removed messages
- Illegal content may be reported to appropriate authorities
8Service Termination and Data Deletion
Service Discontinuation Policy: If Global Heartbeat decides to terminate the service:
- A broad and general communication will be shown on the home page for 30 days as advance notice
- All the scheduled messages will be published during this 30 days notice
- After the 30-day notice period, the service will be permanently discontinued
- All user data and messages will be permanently deleted
- No direct individual notifications will be sent to users
- Backups will be destroyed following secure deletion protocols
9Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes by posting the new policy on our website and updating the "Last Updated" date. Your continued use of the Service after such changes constitutes your acceptance of the new Privacy Policy.
10Contact Information
For questions about this Privacy Policy or our data practices, please contact us:
Global Heartbeat Privacy Office
Email: contact@ghbeat.com
Website: ghbeat.com
Global Heartbeat - The Pulse of Human Emotion
© 2026 Global Heartbeat Platform. All rights reserved.
This Privacy Policy complies with GDPR, CCPA/CPRA, and other applicable privacy laws. By using Global Heartbeat, you acknowledge that you have read and understood this Privacy Policy.