Privacy Policy
Datenschutzerklärung gemäß DSGVO / GDPR
Last Updated: May 11, 2026
1. Controller / Verantwortlicher (Art. 13 DSGVO)
The controller responsible for data processing on this platform is:
Kevin Meerts
Goethestraße 1
59379 Selm, Germany
E-Mail: support@nexus-streams.com
2. Data We Collect
We collect the minimum data necessary to operate the platform:
- Account Data: Username, email address, and hashed password (stored using bcrypt — never plain text).
- Profile Data: Display name, avatar image, channel bio, and social links you voluntarily provide.
- Technical Data: IP address (temporarily for rate-limiting and abuse prevention), browser user-agent.
- Stream Data: Stream titles, categories, viewer counts, and VOD recordings (if VOD recording is enabled by the streamer).
- Chat Data: Chat messages are stored for moderation purposes.
3. Legal Basis for Processing (Art. 6 DSGVO)
- Art. 6(1)(b) DSGVO — Contract fulfillment: Processing your account data is necessary to provide the streaming service you registered for.
- Art. 6(1)(c) DSGVO — Legal obligation: We may retain certain data if required by applicable law.
- Art. 6(1)(f) DSGVO — Legitimate interests: IP logging for security and abuse prevention, viewer statistics for streamers.
4. Data Retention Periods
- Account Data: Retained for as long as your account exists. Deleted within 30 days of an account deletion request.
- IP Addresses: Temporarily stored for up to 7 days for security purposes, then automatically deleted.
- Chat Logs: Retained for moderation purposes for up to 90 days.
- VODs: Retained until deleted by the streamer or upon account deletion.
5. Cookies
We use session cookies necessary for authentication (login state). No tracking cookies are used by us directly.
6. Data Sharing and Third Parties
We do not sell your personal data. Data is shared only in the following cases:
- Legal requirement: When required by law, court order, or to protect user safety.
7. Your Rights (Art. 15–22 DSGVO)
You have the following rights regarding your personal data:
- Art. 15 — Right of access: You may request a copy of all data we hold about you.
- Art. 16 — Right to rectification: You may correct inaccurate data via your profile settings.
- Art. 17 — Right to erasure ("right to be forgotten"): You may delete your account at any time. Full deletion requests: support@nexus-streams.com
- Art. 18 — Right to restriction of processing: You may request we limit how we use your data.
- Art. 20 — Right to data portability: You may request your data in a machine-readable format.
- Art. 21 — Right to object: You may object to processing based on legitimate interests (Art. 6(1)(f)).
- Art. 7(3) — Right to withdraw consent: Where processing is based on consent, you may withdraw it at any time.
To exercise any of these rights, contact: support@nexus-streams.com
8. Right to Lodge a Complaint (Art. 77 DSGVO)
You have the right to lodge a complaint with the competent data protection supervisory authority.
The responsible authority for North Rhine-Westphalia (NRW) is:
Landesbeauftragte für Datenschutz und Informationsfreiheit NRW (LDI NRW)
Kavalleriestraße 2–4, 40213 Düsseldorf
Website: www.ldi.nrw.de
9. Data Security
This website uses HTTPS (TLS encryption) for all data transmission. Passwords are stored exclusively as bcrypt hashes. We implement technical and organizational measures to protect your data against unauthorized access, loss, or manipulation.
Two-Factor Authentication (2FA): Nexus-Streams supports two-factor authentication via TOTP authenticator apps (e.g. Google Authenticator, Aegis, Authy). When enabled, a time-based one-time code is required at login in addition to your password. We also provide emergency backup keys that allow account recovery if access to your authenticator device is lost. We strongly recommend enabling 2FA to protect your account and stream credentials.
Last updated: May 2026