This Privacy Policy ("Policy") describes how PURPLEIT ("we", "us", "our") collects, uses, stores, and protects information obtained from users ("you") of the PURPLEIT software, website, and all associated services (collectively, "the Service"). By accessing or using the Service, you acknowledge that you have read and understood this Policy and consent to the data practices described herein. If you do not agree, you must not use the Service.
Data We Collect
In the course of providing the Service, PURPLEIT collects the following categories of data:
- Account Information — username, email address, and any other information voluntarily provided during registration.
- Hardware Identification Data (HWID) — a unique fingerprint generated from your device's hardware components, collected at the time of license activation for the purpose of binding your license to a single device and preventing unauthorized use.
- Payment Information — transaction identifiers, subscription plan details, and payment status. Full payment card details are processed exclusively by our third-party payment processor and are never stored by PURPLEIT.
- Technical Data — IP address, browser type, operating system version, and approximate geographic location derived from your IP address, collected automatically when you access the website or use the Software.
- Usage Data — session timestamps, feature interactions, and error logs generated during your use of the Software, collected for the purposes of stability monitoring and abuse detection.
- Communications — any messages, support requests, or forum posts you submit to PURPLEIT through official channels.
We do not knowingly collect data from individuals under the age of 18. If we become aware that a minor has provided personal data, we will delete it promptly.
How We Use Your Data
The data we collect is used exclusively for the following purposes:
- License Management — to activate, validate, and enforce your software license, including HWID binding and subscription status verification.
- Account Administration — to create and manage your account, authenticate your identity, and communicate with you regarding your subscription.
- Payment Processing — to process transactions, verify payment status, and manage billing cycles through our third-party payment processor.
- Security & Abuse Prevention — to detect, investigate, and prevent unauthorized access, account sharing, HWID manipulation, fraud, chargebacks, and other violations of our Terms of Service.
- Service Improvement — to monitor Software stability, diagnose technical issues, and improve performance based on aggregated usage patterns.
- Legal Compliance — to comply with applicable laws, regulations, and lawful requests from competent authorities.
- Enforcement — to enforce our Terms of Service and defend our legal rights in disputes or legal proceedings.
We do not use your data for advertising, marketing to third parties, or any purpose not listed above without your explicit prior consent.
Hardware ID (HWID) Data
Given the nature of our Software, HWID collection warrants specific disclosure:
- HWID data is collected solely to enforce the single-device license restriction and to detect unauthorized use, account sharing, or hardware spoofing attempts.
- HWID data is stored in encrypted form on our secure servers and is accessible only to authorized PURPLEIT staff for the purposes of license validation and abuse investigation.
- HWID data is not sold, licensed, or disclosed to any third party except as required by law or as necessary to prevent fraud.
- HWID data is retained for the duration of your account's existence and for a period of up to two (2) years following account termination, for the purpose of enforcing ban decisions and preventing re-registration by terminated users.
- Attempting to manipulate, spoof, or falsify HWID data constitutes fraud and may be reported to relevant authorities.
Data Sharing & Third Parties
PURPLEIT does not sell, rent, or trade your personal data. We may share data with third parties only in the following strictly limited circumstances:
- Payment Processors — we share necessary transaction data with our payment processor(s) to facilitate purchases. These processors operate under their own privacy policies and are independently responsible for PCI DSS compliance.
- Fraud Prevention Services — in the event of fraudulent chargebacks or payment disputes, we may share relevant account and transaction data with fraud prevention databases and payment networks.
- Legal Obligations — we may disclose data when required to do so by applicable law, court order, governmental authority, or to protect the rights, property, or safety of PURPLEIT, its users, or the public.
- Business Transfers — in the event of a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity, subject to equivalent privacy protections.
Any third party receiving your data is contractually bound to use it solely for the purpose for which it was shared and to maintain appropriate security standards.
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes described in this Policy:
- Active Accounts — all account and usage data is retained for the duration of your active account.
- Terminated Accounts — following account termination, we retain identifying data (including HWID, IP address, and account identifiers) for up to two (2) years to enforce ban decisions and prevent circumvention.
- Payment Records — transaction records are retained for a minimum of five (5) years as required by applicable financial regulations.
- Support Communications — messages and support tickets are retained for up to one (1) year after the matter is resolved.
- Legal Hold — data subject to a legal dispute, investigation, or regulatory requirement will be retained until the matter is fully resolved, regardless of the above timelines.
Upon expiration of the applicable retention period, data is securely deleted or anonymized so that it can no longer be associated with an individual.
Data Security
PURPLEIT implements technical and organizational measures designed to protect your data against unauthorized access, loss, alteration, or disclosure:
- Sensitive data, including HWID fingerprints and account credentials, is stored in encrypted form using industry-standard encryption protocols.
- Access to personal data is restricted to authorized PURPLEIT personnel on a strict need-to-know basis.
- Our systems are regularly monitored for vulnerabilities and unauthorized access attempts.
- Payment data is processed exclusively by PCI DSS-compliant third-party processors; PURPLEIT does not store raw payment card information.
However, no method of data transmission or storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security and are not liable for unauthorized access resulting from circumstances beyond our reasonable control. In the event of a data breach that is likely to affect your rights, we will notify you as required by applicable law.
Cookies & Tracking
The PURPLEIT website may use cookies and similar tracking technologies for the following purposes:
- Essential Cookies — required for the website to function correctly, including session authentication and security tokens. These cannot be disabled.
- Analytics Cookies — used to understand how visitors interact with the website in aggregate, without identifying individuals. These may be disabled by adjusting your browser settings.
We do not use advertising cookies, third-party tracking pixels, or behavioral profiling technologies. You may control cookie preferences through your browser settings; however, disabling essential cookies may impair your ability to use certain features of the Service.
Your Rights
Depending on your jurisdiction, you may have certain rights regarding your personal data. These may include:
- Right of Access — the right to request a copy of the personal data we hold about you.
- Right of Rectification — the right to request correction of inaccurate or incomplete data.
- Right of Erasure — the right to request deletion of your personal data, subject to our legal and contractual retention obligations. Note that data retained for ban enforcement purposes may not be eligible for erasure.
- Right to Restriction — the right to request that we restrict the processing of your data in certain circumstances.
- Right to Data Portability — the right to receive your data in a structured, machine-readable format where technically feasible.
- Right to Object — the right to object to processing of your data for purposes other than those strictly necessary to provide the Service.
To exercise any of these rights, submit a request through the official PURPLEIT forum support channel. We will respond within 30 days. We may require identity verification before processing any request. We reserve the right to deny requests where fulfillment would compromise the security of the Service, violate applicable law, or conflict with our legitimate interest in preventing fraud and enforcing bans.
International Data Transfers
PURPLEIT may store and process your data on servers located in jurisdictions outside your country of residence. By using the Service, you consent to the transfer of your data to such jurisdictions, which may have different data protection laws than your home country.
- Where required by applicable law, we implement appropriate safeguards for international data transfers, such as standard contractual clauses or equivalent mechanisms.
- If you are located in the European Economic Area (EEA), Brazil, or another jurisdiction with specific data transfer requirements, we will comply with applicable legal frameworks governing such transfers.
Children's Privacy
The Service is not directed at individuals under the age of 18. We do not knowingly collect, process, or store personal data from minors. If you believe that a minor has provided us with personal data without appropriate consent, please contact us immediately through our official support channel and we will take steps to delete such data promptly. Access to the Service by minors is strictly prohibited under our Terms of Service.
Changes to This Policy
PURPLEIT reserves the right to modify this Privacy Policy at any time. Changes will be published on this page with an updated effective date. Where changes are material, we will make reasonable efforts to notify users through the official forum or website. Your continued use of the Service following any update constitutes your acceptance of the revised Policy. It is your responsibility to review this Policy periodically. If you do not agree with any changes, you must discontinue use of the Service.
Contact
For any questions, concerns, or requests regarding this Privacy Policy or the handling of your personal data, contact PURPLEIT exclusively through official channels:
- Official Forum: purpleit.xyz/forum
- Support threads in the designated support category on the forum.
We do not accept privacy-related communications through unofficial channels, third-party platforms, or direct messages to individual staff members. Such communications will be disregarded and do not constitute valid notice to PURPLEIT.