A privacy policy is in the works and will be put out for display ASAP.
A privacy policy is in the works and will be put out for display ASAP.
I did that ages ago, before everyone was storing user data; these days I'd definitely suggest incorporating and getting public liability insurance, just in case a GDPR accident happens.
Best of luck, I hope you're more successful with this than I was with my adventure. :)
Obviously, if this gets traction, it will be worth incorporating, getting insurance, accounting and legal services, etc, but if you do all of that before putting anything on the market, you're not going to get anywhere unless you're already wealthier than most people.
Likewise insurance.
Also, quick Google immediately found that Australia has an equivalent to GDPR in the form of the Privacy Act (1988).
And GDPR has, by design, extra-territorial effect: https://gdpr.eu/companies-outside-of-europe/
(Extra-territorial rules may seem unreasonable, but they are the flip-side to the internet not recognising national borders: everywhere gets to say you're operating in their jurisdiction).
Yeah, but they have no jurisdiction.
Millions of EU citizens use WeChat, which is obligated by Chinese law to collect information not allowed by the GDPR, and the EU have not and will not be able to enforce an "extra-territorial effect" against Tencent.
Personally, I wouldn't use something (let alone provide my credit card details) by a party that deliberately hides who they are.
What can be the reason for this approach?
A solo developer, busy building the product is one feasible explanation.
I'm not saying you should blindly trust the site, but acting as though this is somehow inexplicable is a tad unfair.