Privacy Policy

Last Updated: January 1, 2026

1. Introduction

MV Thrive (“Company”, “we”, “us”, or “our”) respects your privacy and is committed to protecting your personal data in accordance with applicable data protection laws, including the General Data Protection Regulation (EU) 2016/679 (“GDPR”).

This Privacy Policy explains how we collect, use, process, store, and safeguard personal data when you:

  • Visit our websites;
  • Purchase digital products;
  • Access ThriveflixU or Core Portal;
  • Subscribe to memberships or recurring services;
  • Communicate with us;
  • Interact with our digital platforms.

By using our services, you acknowledge and agree to the practices described in this Privacy Policy.

2. Data Controller

The Data Controller responsible for your personal data is:

MV Thrive
Portugal
Email: support@mvthrive.com

3. Categories of Personal Data Collected

We may collect and process the following categories of personal data:

3.1 Information You Provide Directly

When you:

  • Make a purchase
  • Subscribe to a membership
  • Create an account
  • Contact support
  • Subscribe to communications

We may collect:

  • Full name
  • Email address
  • Billing details
  • Purchase history
  • Account credentials
  • Subscription status

3.2 Information Collected Automatically

When you access our websites or platforms (including ThriveflixU and Core Portal), we may collect:

  • IP address
  • Device and browser information
  • Login timestamps
  • Access logs
  • Pages visited
  • Platform interaction data
  • Email engagement metrics (opens, clicks)

This data is used for:

  • Platform functionality
  • Security monitoring
  • Fraud detection
  • Performance optimization

3.3 Cookies & Tracking Technologies

We may use:

  • Essential cookies
  • Performance and analytics cookies
  • Security-related cookies
  • Advertising or marketing tracking technologies (where applicable)

Users may manage cookie preferences through browser settings.

4. How We Use Your Data

We process personal data for the following purposes:

  • Deliver digital products and memberships
  • Provide access to ThriveflixU and Core Portal
  • Manage subscriptions and recurring billing
  • Process payments via authorized third-party processors
  • Send transactional communications
  • Send marketing communications (where consent is given)
  • Improve platform functionality and user experience
  • Monitor login behavior to detect account sharing, abuse, or security risks
  • Prevent fraud and detect chargeback abuse
  • Enforce contractual rights
  • Defend against legal claims
  • Comply with tax and regulatory obligations

We do not sell personal data.

5. Legal Basis for Processing (GDPR – Article 6)

If you are located in the European Union, we process your data based on:

5.1 Contractual Necessity (Art. 6(1)(b))

To:

  • Deliver purchased products
  • Provide account access
  • Manage subscriptions

5.2 Legitimate Interest (Art. 6(1)(f))

To:

  • Protect platform integrity
  • Prevent fraud and abuse
  • Detect chargeback manipulation
  • Monitor abnormal access behavior
  • Enforce contractual rights
  • Defend against legal claims

Where required, we conduct balancing assessments to ensure your rights are not overridden.

5.3 Consent (Art. 6(1)(a))

For:

  • Marketing communications
  • Optional cookies or advertising technologies

5.4 Legal Obligation (Art. 6(1)(c))

To:

  • Comply with tax, accounting, and regulatory requirements

6. Sharing of Personal Data

We may share personal data with trusted third-party service providers acting as data processors, including but not limited to:

  • ThriveCart (payment processing)
  • Stripe / PayPal (where applicable)
  • Kit (email marketing services)
  • Hostinger (hosting services)
  • Thrive Themes / Thrive Apprentice (platform infrastructure)

These providers process data on our behalf under appropriate contractual safeguards.

We do not sell or rent personal data to third parties.

7. International Data Transfers

Some service providers may process data outside the European Economic Area (EEA).

Where applicable, we rely on appropriate safeguards, including:

  • Standard Contractual Clauses (SCCs)
  • Adequacy decisions
  • Contractual data protection mechanisms

Where required, such transfers rely on safeguards recognized under Articles 44–49 of the GDPR.

8. Data Retention

We retain personal data only as long as necessary for:

  • Providing services
  • Managing subscriptions
  • Enforcing contractual rights
  • Complying with tax and accounting obligations
  • Resolving disputes
  • Defending against legal claims

Data related to transactions, billing, chargebacks, fraud investigations, or disputes may be retained beyond account closure where necessary for compliance or legal defense.

Inactive accounts may be anonymized or deleted after a reasonable period, subject to legal retention requirements.

9. Security Measures

We implement appropriate technical and organizational measures, including:

  • SSL/TLS encryption
  • Secure authentication systems
  • Access control restrictions
  • Monitoring for abnormal login behavior
  • Fraud detection systems

However, no digital platform can guarantee absolute security.

Users are responsible for safeguarding their login credentials.

10. Your Rights Under GDPR

If you are located in the EU, you have the right to:

  • Access your personal data
  • Request rectification
  • Request erasure
  • Restrict processing
  • Object to processing
  • Withdraw consent
  • Request data portability

Requests may be submitted to: support@mvthrive.com

We may request identity verification before processing data requests.

You also have the right to lodge a complaint with your local supervisory authority.

11. Business Users

If you purchase products for business or professional purposes, certain consumer protections may not apply.

However, GDPR rights regarding personal data remain applicable.

12. Children’s Privacy

Our products are intended to be purchased by individuals aged 18 or older.

We do not knowingly collect personal data directly from children.

If we become aware that personal data has been collected from a minor without proper authorization, we will take appropriate steps to delete such data.

13. Third-Party Links

Our platforms may contain links to third-party websites.

We are not responsible for the privacy practices of external websites.

14. Changes to This Privacy Policy

We reserve the right to update this Privacy Policy at any time.

Updates will be published with a revised “Last Updated” date.

 Continued use of our services after updates constitutes acknowledgment of the revised policy.