Privacy Policy

Effective Date: 13/03/26

1. Data Controller

LÆRM is operated by the LÆRM Collective in Switzerland. We adhere to the Swiss Federal Act on Data Protection (FADP) and the General Data Protection Regulation (GDPR) for our global users.

2. Data We Collect

We collect and process the following categories of data:

  • Account Data: Name, professional email, and artist credentials.
  • Financial Data: Transaction volume, gross/net sales, and payout history (orchestrated via Stripe).
  • Technical & Analytics Data: IP addresses, referrer headers, and session data used to calculate acquisition and conversion metrics.
  • Content Data: Digital assets (films, scripts, media) and metadata hosted via our infrastructure.

3. Purpose of Processing

Your data is processed to:

  • Provide multi-tenant storefront infrastructure and dedicated subdomains.
  • Underwriting: Analyze transaction density to assess eligibility for revenue-based financing and capital access.
  • Facilitate secure asset delivery via Cloudflare R2.
  • Generate performance insights and traffic analytics for creator dashboards.

4. Third-Party Infrastructure

We utilize industry-standard processors to maintain our infrastructure:

ProcessorRole
VercelCloud compute and dynamic domain routing.
CloudflareSecure R2 storage and DNS edge protection.
StripePayment processing and KYC compliance.

5. Data Retention & Security

We retain financial and account data for the duration of your active relationship with LÆRM. Transactional data required for tax and underwriting purposes may be retained for up to 10 years in accordance with Swiss legal obligations.

6. Your Rights

Under GDPR/FADP, you have the right to access, rectify, or delete your data. Furthermore, you have the right to object to automated processing used for financial underwriting. To exercise these rights, contact our privacy officer at the address below.

7. Contact

Privacy Officer — LÆRM Collective
legal@laerm.space