Introduction

Effective Date: January 15, 2025

Last Updated: January 15, 2025

Quick Summary

This Privacy Policy describes how Mifan Studio Partners Gateway ("we," "our," or "us") collects, uses, and shares your personal information when you use our Shopify app and related services. We are committed to protecting your privacy and ensuring transparency about our data practices.

By using our services, you agree to the collection and use of information in accordance with this policy. We will not use or share your information with anyone except as described in this Privacy Policy.

Information We Collect

1. Information You Provide Directly

  • Account Information: Name, email address, phone number, and business details when you create an account
  • Communication Data: Messages, feedback, and support requests you send to us
  • Payment Information: Billing details and transaction information (processed securely through third-party payment processors)
  • API Keys and Configuration: Technical configuration data you provide to connect our services

2. Information We Collect Automatically

  • Usage Data: How you interact with our app, features used, and performance metrics
  • Device Information: Browser type, operating system, IP address, and device identifiers
  • Log Data: Server logs, error reports, and system activity
  • Cookies and Tracking: Web cookies and similar technologies for functionality and analytics

3. Shopify Integration Data

Shopify Store Data

When you install our app, we may access certain data from your Shopify store as permitted by the app permissions you grant, including:

  • Store information and settings
  • Product data and inventory
  • Order information and customer data
  • Analytics and performance metrics
  • App configuration and usage data

How We Use Your Information

1. Service Provision

  • Provide, maintain, and improve our app and services
  • Process transactions and manage your account
  • Sync data between systems and platforms
  • Generate analytics and performance reports

2. Communication

  • Send you service-related notifications and updates
  • Respond to your inquiries and provide customer support
  • Send marketing communications (with your consent)
  • Notify you about important changes to our services

3. Legal and Security

  • Comply with legal obligations and respond to legal requests
  • Detect, prevent, and address fraud and security issues
  • Enforce our terms of service and protect our rights
  • Conduct internal analytics and research

Information Sharing and Disclosure

We Do Not Sell Your Data

We do not sell, rent, or trade your personal information to third parties for their commercial purposes.

We may share your information in the following circumstances:

  • Service Providers: With trusted third-party vendors who help us operate our services (hosting, analytics, payment processing)
  • API Integrations: With platforms you choose to connect (GitHub, email services, etc.)
  • Legal Requirements: When required by law, court order, or governmental authority
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • Consent: When you explicitly consent to sharing with specific third parties

Third-Party Services We Use

  • Shopify Platform: For app hosting and store integration
  • GitHub API: For project management features
  • Email Services: For transactional and marketing communications
  • Analytics Providers: For usage analytics and performance monitoring
  • Cloud Hosting: For secure data storage and processing

Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction.

Security Measures Include:

  • Encryption: Data encryption in transit and at rest
  • Access Controls: Strict access controls and authentication requirements
  • Regular Audits: Security assessments and vulnerability testing
  • Secure Infrastructure: Secure cloud hosting and backup systems
  • Staff Training: Regular security training for our team members

Important Security Note

While we strive to protect your personal information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.

Your Rights and Choices

You have the following rights regarding your personal information:

  • Access: Request access to your personal information
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your personal information
  • Portability: Request transfer of your data to another service
  • Objection: Object to certain types of data processing
  • Restriction: Request restriction of data processing

How to Exercise Your Rights:

  • Contact us at [email protected]
  • Use the account settings in our app
  • Follow unsubscribe links in our emails
  • Submit a request through our support system

Response Time

We will respond to your requests within 30 days. For complex requests, we may extend this period and will notify you accordingly.

Data Retention

We retain your personal information for as long as necessary to provide our services and fulfill the purposes outlined in this policy.

Retention Periods:

  • Account Data: Until you delete your account or request deletion
  • Transaction Records: 7 years for tax and legal compliance
  • Support Communications: 3 years for quality assurance
  • Analytics Data: Aggregated data may be retained indefinitely
  • Legal Hold: Longer retention if required by legal obligations

International Data Transfers

Our services may involve transferring your data to countries outside your residence. We ensure appropriate safeguards are in place for such transfers.

Safeguards Include:

  • Standard Contractual Clauses (SCCs)
  • Adequacy decisions by relevant authorities
  • Certification schemes and codes of conduct
  • Your explicit consent when required

Children's Privacy

Age Restriction

Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. We will take steps to remove such information from our systems.

Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons.

When We Update:

  • We will post the updated policy on this page
  • We will update the "Last Updated" date
  • For significant changes, we will provide additional notice
  • Continued use of our services constitutes acceptance of changes

GDPR and CCPA Compliance

For EU Residents (GDPR):

  • Legal basis for processing personal data
  • Right to withdraw consent at any time
  • Right to lodge a complaint with supervisory authorities
  • Data Protection Officer contact information

For California Residents (CCPA):

  • Right to know about personal information collected
  • Right to delete personal information
  • Right to opt-out of sale of personal information
  • Right to non-discrimination for exercising CCPA rights