LEGAL · VERSION 2026-08-01
Privacy Policy.
This notice explains how Ronin Zen processes personal data to create and protect customer accounts, fulfil purchases, deliver licensed software and, only with optional consent, send product news and offers.
Data controller and contact
Ronin Zen is the controller for the processing described here. Privacy requests can be sent to support@roninzen.com.
Information we process
We process account identity and contact details, country of residence, optional city and phone number, adult-status confirmation, policy acceptance records, account-security events, orders, licenses, build identifiers and protected-download logs. Payment references are received from Stripe; Ronin Zen does not store full card details.
Purposes and legal bases
Account administration, checkout fulfilment, license generation, secure delivery, customer support and fraud prevention are processed as necessary to provide the service, protect the platform and meet applicable legal obligations. Optional product-news and offer emails are processed only after a separate affirmative marketing consent.
Marketing choice
Marketing consent is optional, is not required to create an account or purchase a product, and can be withdrawn at any time without affecting prior purchases or account access. Every marketing message must provide an unsubscribe method; consent may also be withdrawn by contacting us.
Service providers and disclosures
Data is shared only when necessary with providers acting for platform operation and delivery, including Supabase for authentication, database and private storage, Stripe for payments, Resend for transactional email, Cloudflare when bot protection is enabled, and the selected hosting provider. We do not sell customer personal data. Providers may process data internationally subject to their applicable contractual and transfer safeguards.
Retention and security
Account and license data is retained while the account or lifetime entitlement remains active. Transaction records are retained for applicable accounting and legal periods. Security logs are retained only as reasonably necessary to protect customers and investigate abuse. Marketing data is retained until consent is withdrawn or the purpose ends. Access is restricted through authentication, MFA, row-level authorization and private storage.
Your rights
Subject to applicable law, customers may request access, correction, deletion, restriction, objection or portability of their data, withdraw consent, and lodge a complaint with the competent data-protection authority. Some transaction records may need to be retained where legally required.
Updates
Material changes will be published with a new version date and, where required, customers will be asked to review or consent again.