Pairly LogoPAIRLY.GG

PAIRLY: PRIVACY POLICY

What data Pairly holds on you, why we are allowed to hold it, how long it stays, and how you get it back or get it deleted.

Privacy Policy

Legal20 September, 2026

Read this together with the Terms of Service and the Refund & Cancellation Policy.

1. Who We Are and How to Reach Us

Pairly operates the website at pairly.gg and the boosting, Duo Finder, and Discord services connected to it. We decide what personal data the platform collects and why, which makes us the controller for that data under the GDPR.

Write to contact@pairly.gg for anything in this policy, including access requests, erasure requests, and complaints. Our registered operator details are on the Imprint page.

You may also complain to the data protection authority in the country where you live or work.

2. Data You Give Us

Account data: username, email address, hashed password where you sign in with credentials, role, avatar, short account ID, and any optional profile fields you fill in.

Order data: the game, service, and rank range you buy, add-ons, order notes, and the delivery preferences you set at checkout.

Duo and game profile data: server, language, rank, lane, champion preferences, voice-chat preference, and the game account you link when you connect one.

Communication data: order chat messages, support requests, reviews you publish, and anything you send us by email.

3. Game Account Credentials

A solo boosting order needs the credentials of the account being played. We store them encrypted and bound to that one order.

Only the booster assigned to that order can reveal them, and only while the order is active. We delete the credentials within 24 hours of delivery.

Every reveal and the deletion are written to the order history. That history stays readable in your account after the credentials themselves are gone, so you can see who opened them and when.

4. Payment, Refund, Voucher, and Dispute Data

Stripe processes your card. We never receive or store your full card number; we hold the payment identifiers Stripe returns, the amount, the currency, the status, and the last four digits shown on your receipt.

We record refunds we issue, the reason for each one, and the compensation vouchers we credit to your account under the Refund & Cancellation Policy, including the voucher amount, currency, expiry, and the order it was later spent on.

When you tick the acceptance box at checkout, we record the moment you ticked it, the version of the policies on screen, and the IP address and browser the acceptance came from. We keep it with the order for as long as the order record itself, and we rely on it when a bank asks what terms you agreed to.

When a bank opens a chargeback on your payment, we process the dispute record Stripe sends us and the order evidence we submit in response: the checkout snapshot, timestamps, order history, delivery records, and the relevant chat. We do this to establish and defend a legal claim, and we keep it until the dispute and any arbitration close.

5. Data the Platform Generates

Security and session data: session identifiers, login history, user agent, IP address records, CSRF and session protection data, rate-limit counters, and anti-abuse signals.

Operational metadata: timestamps, order history entries, moderation actions, audit entries, cached state, and infrastructure logs.

We receive profile data from services you choose to connect, such as a sign-in provider or a linked game account, limited to what that service exposes for the permissions you grant.

6. Why We Process It, and on What Legal Basis

To create your account, take your order, deliver the service, run order chat, and handle support. Legal basis: performance of the contract between you and Pairly (Article 6(1)(b)).

To take payment, issue refunds, credit vouchers, and answer chargebacks. Legal basis: performance of the contract, and our legitimate interest in defending legal claims (Articles 6(1)(b) and 6(1)(f)).

To secure accounts, detect fraud, moderate content, and keep the platform running. Legal basis: our legitimate interest in a safe service, balanced against your rights (Article 6(1)(f)).

To keep accounting and tax records of what you bought and what we charged. Legal basis: our legal obligations (Article 6(1)(c)).

To send marketing email and to measure usage with analytics beyond what the site needs to function. Legal basis: your consent (Article 6(1)(a)), which you withdraw at any time through the unsubscribe link or your account settings.

7. Cookies, Local Storage, and Similar Technologies

Strictly necessary: session and authentication cookies, CSRF protection, and load handling. The site cannot keep you logged in without them, and we set them without asking for consent.

Preferences: theme, display, and interface state we store locally so the site renders the way you left it.

Analytics: usage measurement that helps us find broken flows and slow pages. We set these only where you consent, and you change that choice at any time.

8. Who Else Processes Your Data

Stripe, for payment processing, refunds, and dispute handling.

Hosting, storage, delivery, and monitoring providers, for running the platform and diagnosing incidents.

Email delivery providers, for account, order, and refund notifications.

Discord, where you use the linked Discord features, and the sign-in and game-account providers you connect yourself.

Each of these acts on our instructions under a data processing agreement, and none of them may use your data for their own purposes. We do not sell your personal data and we do not share it for third-party advertising.

Where a provider processes data outside the EEA, we rely on an adequacy decision or on the European Commission’s standard contractual clauses.

9. How Long We Keep It

Game account credentials: deleted within 24 hours of order delivery.

Order, payment, refund, and voucher records: kept for the statutory accounting retention period that applies to our operator, counted from the end of the tax year of the transaction.

Account and profile data: kept while your account is open, then deleted or anonymised after closure, except for records the accounting rule above still covers.

Order chat and moderation records: kept for 24 months, or until any related dispute or investigation closes if that takes longer.

Security and infrastructure logs: kept for up to 12 months, then rotated out.

10. How We Protect It

We encrypt data in transit, encrypt game account credentials at rest, hash passwords, scope access by role, and log administrative actions to the order history.

We rate-limit sensitive endpoints, protect sessions against forgery, and monitor for abuse.

No platform is free of risk. Tell us at contact@pairly.gg if you find a weakness, and we will look at it.

11. Your Rights

You may ask us for a copy of your data, correct it, delete it, restrict or object to processing, and receive it in a portable format. Where we rely on consent, you may withdraw it at any time without affecting what we did beforehand.

Send the request to contact@pairly.gg from the address on your account, or from your account if you can still sign in. We answer within one month and tell you if we need longer.

We will refuse to erase records we must keep by law, such as invoices, and records we need to defend an open chargeback. We will say which ones and why rather than refusing the request as a whole.

12. Children

Pairly is not for children. You need to be at least 16, or the higher minimum age set by the law where you live, and you need your guardian’s consent where that law requires it.

Tell us at contact@pairly.gg if a child has created an account and we will close it and delete the data.

13. Changes to This Policy

We publish changes on this page with a new effective date. Where a change materially affects how we use data you already gave us, we email you before it takes effect.