Privacy policy
Last updated 3 August 2026
This page explains what data I Love SCL keeps about you, why, for how long, and how you can delete it. The Spanish version prevails if the two ever disagree.
Who is responsible
{RAZÓN SOCIAL}, tax ID {RUT}, at {DIRECCIÓN}, is the data controller.
For anything about your data, including the rights below: {CORREO DE CONTACTO}.
What we keep
Only what your membership needs to work:
- Your first and last name, so you can be recognised when you show your card.
- Your email, which is how you sign in: we do not use passwords.
- Your phone, if you give it. Optional.
- Your country, if you give it. Optional.
- Your date of birth, because venues have a minimum age.
- Your photo, if you upload one, so you can be recognised at the door. Optional.
- Your member number, your membership dates and what you paid.
- Which clubs you checked into and on which night.
- Which phone your card is open on, so it works on one at a time.
Why we may keep it
Name, email, member number, membership and check-ins: necessary to provide the service you bought. Without them there is no card.
Phone, country and photo: you gave them to us. You can delete them any time from your card and everything else keeps working.
Date of birth: partner venues have a minimum age and require us to be able to evidence it.
Purchase details: we are legally required to keep receipts.
Who else sees it
We do not sell your data or share it for advertising. Only these see it, and only so the service works:
- The hotel or hostel that sold you the membership: your name, email and membership status. Only that one, never another.
- The club where you check in: your name, member number and photo, at the moment of scanning.
- Supabase, which hosts the database and photos, on servers in São Paulo, Brazil.
- Vercel, which runs the application, on servers in São Paulo, Brazil.
- Resend, which sends the emails, on servers in São Paulo, Brazil.
- Sentry, which receives error reports. We strip them before sending: they carry no name, email, phone or photo.
If you are in Europe
Your data is processed in Brazil, outside the European Economic Area. The European Commission has recognised Brazil as providing an adequate level of protection, so the transfer needs no additional safeguards.
You may lodge a complaint with the data protection authority in your country if you believe we handled your data improperly.
For how long
We keep your personal data while your membership is valid and for two years after it expires, in case you come back and want your history.
If you delete your data it goes immediately. Only the purchase record remains —date and amount, without your name— because receipts must be retained by law.
Club check-ins are kept without your name, for the counts we report to each venue.
What you can do
You have the right to access your data, correct it, delete it, object to our processing, ask us to restrict it, and take it elsewhere.
The common ones are in your own card: under "Edit my details" you can see and correct everything, and delete it with one button. No need to write to us or wait for a reply.
For anything else —a copy of all your data, an objection, or any question— write to {CORREO DE CONTACTO}. We answer within thirty days.
Automated decisions
We make no automated decisions about you and do no profiling. Your card says whether your membership is valid, and nothing else.
Cookies
We use only the cookies needed for you to sign in and for your card to work on one phone at a time. No advertising or tracking cookies, which is why we do not ask you to accept anything.
If this changes
If something important changes we will say so in your card before it takes effect. The date above says when it was last updated.