English · Policies

Privacy Policy

What we collect, why, who we share it with, and how to use your rights.

Effective 2026년 10월 13일 또는 글로벌 결제(Stripe) 개시일 중 늦은 날 (published 2026년 10월 6일)
Controller: AZET LLC, 6545 Market Ave N Ste 100, Canton, OH 44721, USA · Operating office: 602, 66 Sinho sam-ro, Gangseo-gu, Busan 46759, Republic of Korea · help@paydream.io

1. Who we are

AZET LLC ("AZET", "we") operates PayDream (paydream.io) and is the controller of the personal data described here. Buyers and creators in Korea are also covered by our Korean 개인정보 처리방침; where it gives you more protection, it applies.

2. What we collect

WhoDataSource
MembersEmail, name, mobile number, password (stored only as a one-way hash), email verification timeYou, at sign-up
Buyers (members and guests)Name, email, mobile number, order history, payment status, payment method type and card brand with a masked number, receipt link, billing country and address used for tax, answers to the Creator's checkout questions, refund requests, reviews. For subscriptions: a payment method reference held by StripeYou, Stripe
CreatorsStore name, identity verification result (name, date of birth, mobile number, a one-way hash of the Korean connecting-information code), business details if registered, payout bank account (encrypted), API and webhook settingsYou, identity verification provider
EveryoneIP address, device and browser information, pages visited, login and security logs, cookies (section 8)Automatically

We do not receive or store full card numbers; they go directly to Stripe. We do not collect government ID numbers from buyers.

3. Why we use it (and legal bases)

  • To sell and deliver your order — process payment, deliver files and keys, send receipts, handle refunds and chargebacks, and provide support (performance of a contract).
  • To calculate and remit tax and keep transaction records (legal obligation).
  • To pay creators — calculate earnings and send payouts (performance of a contract).
  • To prevent fraud and abuse and secure the service, including rate limits and verification codes (legitimate interests).
  • To understand how the site is used through analytics (legitimate interests, or consent where the law requires it).

We do not sell your personal information and do not share it for cross-context behavioural advertising.

4. Who we share it with

RecipientPurpose
The Creator of the product you buyName, email and the order details needed to provide the product or service, answer questions and handle refunds
Stripe, Inc. (USA)Payment processing, saved payment methods for subscriptions, refunds, fraud prevention, tax calculation
Cloudflare, Inc. (USA)Hosting, databases and file storage, email delivery, security
Wise (Wise US Inc. and group companies)Sending payouts to creators' bank accounts
주식회사 코리아포트원 (Korea)Creator mobile identity verification
솔라피 주식회사 (Korea)Verification codes by SMS for guest checkout and order lookup
Google LLC (Google Analytics) and Microsoft Corporation (Clarity) (USA)Website usage analytics
AuthoritiesWhen required by law, or to protect rights and safety

5. International transfers

AZET LLC is a US company and our main service providers (Stripe, Cloudflare, Google, Microsoft, Wise) process data in the United States and other countries. When we transfer personal data from the EU, EEA, UK or Korea, we rely on the providers' Standard Contractual Clauses or equivalent safeguards and, for Korea, on disclosure in this policy and the Korean policy as permitted by the Personal Information Protection Act.

6. How long we keep it

  • Account data: until you delete your account. Creator data (identity, payout account, business details): until the creator contract ends and all payouts are settled.
  • Orders, payments, refunds and tax records: 5 years (Korean e-commerce law and tax rules), or longer if a tax authority requires.
  • Complaint and dispute records: 3 years. Login and security logs: 3 months. Verification codes: minutes, stored only as hashes.

7. Your rights

You can ask to access, correct, delete or export your data, object to or restrict processing, and withdraw consent. Residents of California have the right to know, delete and correct personal information and not to be discriminated against for exercising these rights. EU/EEA/UK residents may also complain to their data protection authority. Email help@paydream.io; we answer within 30 days (sooner where the law requires). You can delete a member account yourself in account settings. Records we must keep by law (section 6) are kept separately until the period ends.

8. Cookies

We use a secure session cookie (__Host-pd_s) to keep you logged in and a non-personal display cookie (pd_in). Our analytics tools (Google Analytics, Microsoft Clarity) set their own cookies to measure site usage. You can block or delete cookies in your browser; logging in and checkout need the session cookie.

9. Security

All traffic is encrypted (HTTPS). Passwords are stored as one-way hashes (PBKDF2); payout account numbers and subscription payment references are encrypted (AES-GCM); admin access requires two-factor authentication; login and verification attempts are rate-limited.

10. Children

PayDream is not directed to children under 14 (Korea) or 13 (USA), and creators must be at least 14. We do not knowingly collect data from younger children.

11. Changes and contact

We will post changes here and notify members of important changes at least 7 days in advance (30 days for changes that reduce your rights). Privacy contact: Sihwan Oh, Managing Member, AZET LLC · help@paydream.io · +1 330-350-8496.