Article

GDPR

Last Updated: 03 May 2026

This GDPR / Data Protection Policy explains how Diginz (“Diginz”, “we”, “us”, “our”, “Platform” or “Service”) processes, protects and manages personal data in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR), where applicable, and relevant Turkish data protection principles under KVKK.

This Policy applies to users, customers, visitors, account holders, support contacts and other individuals who access or use Diginz through https://diginz.com.

This Policy should be read together with our Privacy Policy, Terms of Use, Refund & Cancellation Policy, Cookie Policy and any additional legal notices published by Diginz.

1. Company and Contact Information

Brand Name: Diginz

Website: https://diginz.com

Email: hi@diginz.com

Phone/WhatsApp: +49 1515 1567312

Business Sector: SMM Panel, social media services, digital marketing services, digital service packages and related online services.

2. Purpose of This Policy

The purpose of this Policy is to explain:

  • What personal data we process.
  • Why we process personal data.
  • Which legal bases we rely on.
  • How long we retain data.
  • With whom we may share data.
  • How we protect data.
  • What rights users may have.
  • How users can contact us regarding privacy and data protection matters.

3. Data Controller

For personal data where Diginz determines the purposes and means of processing, Diginz acts as the data controller.

This may include personal data processed for account management, order handling, payment records, support, platform security, fraud prevention, chargeback defense, legal compliance and business operations.

Certain third-party providers, including payment processors, crypto payment providers, panel infrastructure providers, hosting providers, analytics providers, email providers, fraud prevention tools, support tools and social media service suppliers may act as independent controllers, data processors or sub-processors depending on the specific processing activity.

4. Data Processor and Third-Party Providers

Diginz may use third-party service providers to operate the Platform and provide services.

These may include, but are not limited to:

  • SocPanel for panel infrastructure and technical service operation.
  • PayTR for credit card and supported local payment processing.
  • Heleket for cryptocurrency payment processing.
  • Hosting and server providers.
  • Cloudflare or similar infrastructure and security providers.
  • Analytics and performance monitoring providers.
  • Email and support communication providers.
  • Fraud prevention, risk monitoring and abuse detection tools.
  • API providers and social media service suppliers.

Where required by applicable law, Diginz takes reasonable steps to ensure that data processors process personal data only according to appropriate instructions, contractual safeguards, confidentiality obligations and security requirements.

5. Categories of Personal Data We Process

Depending on how you use Diginz, we may process the following categories of personal data:

Account Data

Username, login name, email address, encrypted password, account ID, account status, language settings, country, registration date and account preferences.

Contact Data

Email address, phone number, support messages, ticket history, contact requests and communication preferences.

Order Data

Order ID, selected service, service quantity, submitted links, social media usernames, profile URLs, post URLs, video URLs, channel URLs, comments, instructions, target platform, order status, refill status, cancellation status, delivery records and timestamps.

Payment and Transaction Data

Deposit amount, currency, account balance, payment method, transaction ID, invoice information, payment status, refund status, chargeback status, processor response and payment-related records.

Cryptocurrency Payment Data

Crypto invoice data, transaction hash, wallet address, payment network, confirmation status, underpayment or overpayment data, refund-related data and processor logs where applicable.

Technical Data

IP address, visitor ID, cookie-based security identifiers, browser type, device type, operating system, language settings, approximate location based on IP, user-agent, session logs, page activity, login timestamps, referrer, screen size, timezone and diagnostic data.

Security and Fraud Prevention Data

IP logs, visitor ID logs, device logs, account activity logs, suspicious activity indicators, chargeback evidence, failed login records, abuse reports, payment risk signals and security event records.

Legal and Compliance Data

Records required for accounting, tax, legal compliance, consumer protection, chargeback defense, dispute handling, fraud investigations, regulatory requests, law enforcement requests and legal claims.

6. Special Categories of Personal Data

Diginz does not require users to provide special categories of personal data for standard service use.

You should not submit sensitive personal data to Diginz unless strictly necessary and legally permitted.

Sensitive personal data may include health data, biometric data, religious beliefs, political opinions, racial or ethnic origin, sexual orientation, criminal records or other legally protected categories.

If such data is submitted unnecessarily, Diginz may delete, restrict or disregard it where appropriate.

7. Sources of Personal Data

We may collect personal data from:

  • You directly.
  • Your account registration.
  • Your payment activity.
  • Your order submissions.
  • Your support tickets and emails.
  • Your browser and device.
  • Cookies and similar technologies.
  • Payment providers such as PayTR.
  • Crypto payment providers such as Heleket.
  • Panel infrastructure providers such as SocPanel.
  • Security, anti-fraud and hosting providers.
  • Service suppliers and technical delivery partners.

8. Purposes of Processing

Diginz may process personal data for the following purposes:

  • To create, manage and secure user accounts.
  • To provide access to the Platform.
  • To process deposits, account balance and payments.
  • To process and deliver digital social media services.
  • To route orders through technical suppliers, APIs or infrastructure providers.
  • To provide support and respond to user requests.
  • To verify, cancel, refill, review or investigate orders.
  • To detect and prevent fraud, abuse, spam, unauthorized access and suspicious activity.
  • To defend chargebacks and payment disputes.
  • To maintain IP logs, visitor ID logs, security logs and technical records.
  • To comply with accounting, tax, legal, regulatory and consumer protection obligations.
  • To improve platform performance, reliability, usability and security.
  • To enforce our Terms of Use, Refund & Cancellation Policy and other legal policies.
  • To protect the rights, property and legitimate interests of Diginz, users, payment providers, suppliers and third parties.

9. Legal Bases for Processing

Where GDPR or similar laws apply, Diginz may rely on the following legal bases:

Performance of a Contract

We process personal data when necessary to create and manage your account, process payments, handle orders, deliver digital services, provide support and operate the Platform.

Legal Obligation

We process personal data where necessary to comply with tax, accounting, e-commerce, consumer protection, payment, data protection, regulatory, law enforcement or other legal obligations.

Legitimate Interests

We process personal data where necessary for legitimate business and security interests, including fraud prevention, abuse detection, account security, chargeback defense, service improvement, legal claim defense, supplier coordination and platform protection.

Consent

We may rely on your consent for certain optional processing activities, including non-essential cookies, optional analytics, marketing communications or other processing where consent is required by law.

10. Legitimate Interests

Diginz may rely on legitimate interests for processing that is necessary, proportionate and balanced against user rights.

Legitimate interests may include:

Preventing payment fraud.

Preventing abuse and misuse of services.

Maintaining IP and security logs.

Detecting suspicious account activity.

Defending chargebacks.

Protecting against cyberattacks.

Maintaining platform reliability.

Improving services.

Resolving disputes.

Protecting business operations.

Complying with supplier and payment provider requirements.

11. Payment Processing

Diginz may process payments through third-party payment providers.

Credit card and supported local payment methods may be processed through PayTR.

Cryptocurrency payments may be processed through Heleket.

These payment providers may process personal data according to their own privacy policies, fraud prevention rules, compliance requirements and legal obligations.

Diginz does not intentionally store full credit card numbers.

Payment-related information may be retained for accounting, dispute handling, refund processing, fraud prevention, chargeback defense and legal compliance.

12. Security Logs, Visitor ID and IP Data

For account security, fraud prevention, abuse investigation, payment dispute handling, chargeback defense and legal compliance purposes, Diginz may process technical identifiers such as:

  • Visitor ID.
  • Customer login.
  • IP address.
  • Cookie-based security identifiers.
  • Device information.
  • Browser information.
  • User-agent.
  • Page activity.
  • Order activity.
  • Payment activity.
  • Timestamps.
  • Security logs.

These records may be used to investigate suspicious activity, prevent fraud, respond to payment disputes, cooperate with payment providers, comply with legal obligations and protect the rights and legitimate interests of Diginz, its users and service providers.

13. Cookie-Based Identifiers

Diginz may use cookies, local storage, session storage and similar technologies to operate the Platform, keep users logged in, remember preferences, manage language settings, detect suspicious activity, prevent abuse, improve reliability and support analytics.

Some cookies are strictly necessary for the Platform to function.

Other cookies, such as analytics or marketing cookies, may require consent where legally required.

For more information, please review our Cookie Policy.

14. Sharing of Personal Data

Diginz may share personal data with the following categories of recipients where necessary and legally permitted:

  • Payment providers, including PayTR.
  • Cryptocurrency payment providers, including Heleket.
  • Panel infrastructure providers, including SocPanel.
  • Hosting and cloud infrastructure providers.
  • Cloudflare or similar security and infrastructure providers.
  • Service suppliers, API providers and technical delivery partners.
  • Fraud prevention and abuse detection providers.
  • Analytics and performance monitoring providers.
  • Email, notification and support providers.
  • Legal, tax, accounting and compliance advisors.
  • Banks, card networks and dispute resolution bodies.
  • Courts, regulators, law enforcement or public authorities where legally required or reasonably necessary.
  • Business successors in connection with merger, acquisition, restructuring or transfer of assets.

15. International Transfers

Because Diginz operates online and uses international infrastructure and service providers, personal data may be processed outside your country of residence, including outside the European Economic Area or Türkiye.

Where required by applicable law, Diginz uses appropriate safeguards for international data transfers, such as contractual safeguards, data processing agreements, standard contractual clauses, adequacy mechanisms or other legally recognized transfer tools.

16. Data Retention

Diginz retains personal data only for as long as necessary for the purposes described in this Policy, unless a longer retention period is required or permitted by law.

Retention periods may vary depending on the type of data and purpose of processing.

Account data may be retained while the account remains active.

Order data may be retained for service, support, accounting and dispute purposes.

Payment records may be retained for accounting, tax, refund, chargeback and legal obligations.

Security logs and IP logs may be retained for fraud prevention, abuse investigation, platform security and legal compliance.

Support communications may be retained for customer service, dispute handling and operational records.

Data may be retained longer where necessary for legal claims, regulatory requests, fraud investigations, payment disputes, chargeback defense or compliance obligations.

17. Data Security

Diginz takes reasonable technical and organizational measures to protect personal data against unauthorized access, loss, misuse, alteration, disclosure or destruction.

Measures may include:

  • Access controls.
  • Encrypted passwords.
  • Secure infrastructure.
  • Logging and monitoring.
  • Fraud detection.
  • Limited staff access.
  • Backups.
  • Secure communication channels.
  • Provider security reviews.
  • Operational security procedures.
  • However, no digital system, website, server, database, payment system or internet transmission can be guaranteed to be completely secure.

You are responsible for keeping your account credentials confidential.

18. User Rights Under GDPR

Where GDPR applies, users may have the following rights:

  • Right of access.
  • Right to rectification.
  • Right to erasure.
  • Right to restriction of processing.
  • Right to object to processing.
  • Right to data portability.
  • Right to withdraw consent where processing is based on consent.
  • Right to lodge a complaint with a competent data protection authority.

These rights may be subject to limitations where Diginz must retain data for legal obligations, accounting, fraud prevention, chargeback defense, dispute handling, legal claims, security or other legitimate purposes.

19. Rights Under Turkish Data Protection Principles

Where Turkish data protection rules apply, users may have rights regarding:

  • Learning whether personal data is processed.
  • Requesting information about processing.
  • Learning the purpose of processing.
  • Learning third parties to whom data is transferred.
  • Requesting correction of incomplete or inaccurate data.
  • Requesting deletion or destruction where applicable.
  • Objecting to certain processing results.
  • Requesting compensation where legally applicable.
  • Requests may be subject to legal limitations and verification requirements.

20. How to Exercise Your Rights

To exercise your data protection rights, contact us at:

Email: hi@diginz.com

We may request information to verify your identity before processing your request.

This is necessary to protect user accounts and prevent unauthorized access to personal data.

We will respond to valid requests within the timeframe required by applicable law.

21. Account Deletion

Users may request account deletion by contacting Diginz.

Account deletion does not automatically delete all records.

Diginz may retain certain data where necessary for:

  • Legal obligations.
  • Tax and accounting records.
  • Payment records.
  • Fraud prevention.
  • Chargeback defense.
  • Dispute resolution.
  • Security investigations.
  • Legal claims.
  • Regulatory requests.
  • Order history and supplier records.

22. Automated Tools and Risk Checks

Diginz and its service providers may use automated tools to detect suspicious activity, payment risk, abuse, spam, bot behavior, unauthorized access, duplicate accounts or policy violations.

These tools may affect payment review, account restrictions, support handling or order processing.

Where required by applicable law, users may request human review of significant automated decisions.

23. Children’s Data

Diginz is not intended for users under the age of 18.

We do not knowingly collect personal data from children.

If we become aware that a child has provided personal data without valid legal basis, we may delete the data and restrict the account.

24. Legal Requests and Law Enforcement

Diginz may disclose personal data to courts, regulators, law enforcement authorities, payment providers, legal advisors or other competent parties where disclosure is required or permitted by law.

We may also disclose data where necessary to:

  • Protect our rights.
  • Investigate fraud.
  • Prevent abuse.
  • Defend chargebacks.
  • Respond to legal claims.
  • Comply with court orders.
  • Cooperate with lawful investigations.
  • Enforce our Terms of Use.

25. Changes to This Policy

Diginz may update this GDPR / Data Protection Policy from time to time.

Updated versions will be posted on the Platform with a revised “Last Updated” date.

Continued use of Diginz after updates means that you acknowledge the updated Policy.

26. Contact

If you have questions about this Policy, personal data processing, security logs, privacy rights or data protection requests, you may contact us at:

Diginz

Website: https://diginz.com

Email: hi@diginz.com

Phone: +49 1515 1567312

Important Notice

This GDPR / Data Protection Policy is intended to explain how Diginz handles personal data in connection with its digital social media services, payment flows, account system, order system, support channels and security operations. It does not limit mandatory rights that users may have under applicable data protection laws.