Privacy

Privacy Policy

Last updated: 15 June 2026

1. Data Controller

The data controller responsible for the processing of your personal data is the Operator of this Site, hereafter referred to as “Queen Daralis”. Requests related to this Policy can be sent through the Contact page.

2. Scope

This Privacy Policy applies to personal data collected through this website and the services offered on it. It is drafted in accordance with the EU General Data Protection Regulation (Regulation (EU) 2016/679, “GDPR”) and applicable national legislation.

3. Data We Collect

  • Booking & contact data: name, email address, optional Telegram handle, message content, chosen time slot.
  • Custom-request data: the information you voluntarily provide in the custom-request form (request type, budget, deadline, description).
  • Payment data: when a request is approved, payment details are exchanged privately through a third-party provider agreed between you and the Operator. The Site itself does not process, store, or transmit payment credentials.
  • Technical data: IP address, browser type, device type, timestamps, and basic interaction data, used for security, anti-spam, and service reliability.

4. Purposes & Legal Bases

  • Provision of services (booking sessions, processing custom requests, delivering content) — performance of a contract, Art. 6(1)(b) GDPR.
  • Payment processing and accounting — legal obligation, Art. 6(1)(c) GDPR.
  • Security, fraud prevention, anti-spam (including honeypot, time-based checks, and rate limiting) — legitimate interest, Art. 6(1)(f) GDPR.
  • Communication and customer care — performance of a contract or legitimate interest, Art. 6(1)(b) or (f) GDPR.

5. Third-Party Services

To operate the Site and deliver its services, we rely on the following third-party providers. Each provider processes the data indicated below in accordance with its own privacy policy and terms:

  • Resend (Resend, Inc.) — processes the content of request and intake forms (name, contact, preferred availability, message) strictly to deliver the corresponding email to the Operator. For more information, see Resend’s privacy policy.
  • Telegram, Fansly, OnlyFans — subscription content distribution; any data you share on these platforms is governed by their respective privacy policies.
  • Vercel Inc. — the Site is hosted on Vercel’s secure infrastructure. Vercel may process technical data (such as IP addresses and request logs) strictly for the purpose of hosting and delivering the Site.
  • Payment providers — if a session request is approved, a payment provider may be introduced privately between you and the Operator. Such providers are not embedded in the public Site and process your data under their own privacy policies at that stage only.

Where data is transferred outside the European Economic Area, the transfer is covered by Standard Contractual Clauses or another lawful safeguard under Chapter V of the GDPR.

6. Data Retention

  • Booking and custom-request data: retained for the duration of the service relationship and up to 24 months thereafter for customer-care and dispute-resolution purposes.
  • Accounting and payment records: retained for the period required by applicable tax and commercial law (typically 10 years in the EU).
  • Anti-spam and security logs: retained for a maximum of 12 months.

7. Your Rights Under the GDPR

You have the right, under the conditions set out in the GDPR, to:

  • access your personal data (Art. 15);
  • obtain rectification of inaccurate data (Art. 16);
  • request erasure (“right to be forgotten”, Art. 17);
  • obtain restriction of processing (Art. 18);
  • data portability (Art. 20);
  • object to processing based on legitimate interest (Art. 21);
  • withdraw consent at any time, where processing is based on consent (Art. 7);
  • lodge a complaint with your local supervisory authority (Art. 77).

To exercise any of these rights, please use the Contact page. We respond within thirty (30) days.

8. Cookies & Similar Technologies

The Site uses only strictly necessary, first-party cookies required for navigation, security, and core functionality. We do not deploy advertising, analytics, profiling, or cross-site tracking cookies.

Age confirmation cookie. This website uses a strictly necessary first-party cookie named age_gate_verified to remember that you have confirmed you are of legal age to access the site. This cookie is used only for that purpose, is not used for analytics, advertising, profiling, or tracking, and expires automatically after 30 days.

The Site does not embed any third-party scheduling or payment widget. Should we introduce additional cookies in the future (for example, analytics or marketing tools), we will update this Policy and, where required by law, provide a consent mechanism before any non-essential cookies are placed.

9. Security

We implement technical and organizational measures designed to protect personal data against unauthorized access, alteration, disclosure, or destruction. Any payment exchange arranged after approval is handled over encrypted channels by the payment provider chosen at that stage.

10. Minors

The Site and all services are strictly reserved for adults aged 18 or older. We do not knowingly collect personal data from minors. Any data inadvertently collected from a minor will be deleted upon notification.

11. Changes to This Policy

This Policy may be updated to reflect changes in our practices or legal obligations. The “Last updated” date at the top of this page reflects the latest revision.