Privacy Policy

Last updated: March 9, 2026

This Privacy Policy explains how MirandaMedia Group, s.r.o. ("we", "us", or "the Company"), the operator of Discury ("the Service"), collects, uses, and protects your personal data when you use our website and services.

1. Data Controller

The data controller responsible for your personal data is:

2. Data We Collect

We collect the following categories of personal data:

  • Account data: email address and password hash when you create an account.
  • Usage data: pages visited, features used, timestamps, and general interaction patterns with the Service.
  • Device and technical data: IP address, browser type, operating system, and device identifiers collected automatically through cookies and similar technologies.
  • Payment data: if you subscribe to a paid plan, payment processing is handled by our third-party payment provider. We do not store your full credit card number.

3. How We Use Your Data

We process your personal data for the following purposes:

  • To provide, operate, and maintain the Service.
  • To manage your account and authenticate your identity.
  • To communicate with you about your account, updates, and support requests.
  • To analyze usage patterns and improve the Service.
  • To comply with legal obligations.

4. Legal Basis for Processing

We process your personal data based on the following legal grounds under the GDPR:

  • Performance of a contract: processing necessary to provide the Service you signed up for.
  • Legitimate interest: analytics and service improvement that do not override your rights.
  • Consent: where you have given explicit consent, such as for marketing communications.
  • Legal obligation: where processing is required by law.

5. Public Data Processing

Discury analyzes publicly available Reddit posts and comments to generate market intelligence reports. This data is already publicly accessible and is processed in aggregated, anonymized form. We do not collect, store, or process private Reddit messages or non-public user data.

6. Cookies and Analytics

We use the following cookies and tracking technologies:

  • Essential cookies: required for authentication and basic Service functionality.
  • Analytics cookies: we use Google Analytics to understand how visitors interact with our website. Google Analytics collects anonymized usage data. You can opt out by using a browser extension or adjusting your cookie preferences.

7. Third-Party Services

We share data with the following categories of third-party service providers, solely for the purposes described above:

  • Hosting providers: for infrastructure and data storage.
  • Analytics providers: Google Analytics for usage insights.
  • Payment processors: for handling subscription payments securely.
  • Email service providers: for transactional communications (account verification, password resets).

We do not sell your personal data to third parties.

8. Data Retention

We retain your personal data for as long as your account is active or as needed to provide the Service. If you delete your account, we will remove your personal data within 30 days, except where retention is required by law.

9. Your Rights

Under the GDPR, you have the following rights:

  • Right of access: request a copy of your personal data.
  • Right to rectification: correct inaccurate or incomplete data.
  • Right to erasure: request deletion of your personal data.
  • Right to restriction: request that we limit the processing of your data.
  • Right to data portability: receive your data in a structured, machine-readable format.
  • Right to object: object to processing based on legitimate interest.
  • Right to withdraw consent: where processing is based on consent, you may withdraw it at any time.

To exercise any of these rights, please contact us at support@discury.io.

10. Data Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include encryption of data in transit, secure password hashing, and regular security reviews.

11. International Transfers

Your data may be processed on servers located within the European Economic Area (EEA). If data is transferred outside the EEA, we ensure appropriate safeguards are in place in accordance with GDPR requirements.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this page periodically.

13. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at: