Privacy Policy

Last updated: 8 June 2023

Tiny Goliath (“Company” or “we”) who operates the www.tinygoliath.io website (“Site(s)” or “Website(s)”), develops the software, applications, themes and plugins for the Shopify Stores (the “App(s)” or “Theme(s)”) as well as providing licenses to them via the Shopify App Store and any related services.

Your privacy is important to us. It is our policy to respect your privacy regarding any information and personal data we may collect from you during our cooperation, through our website, as well as other sites we own and operate. As we care about the protection of your personal data, we have prepared the following information about the processing of your personal data, which complies with Regulation (EU) No. 2016/679 of the European Parliament and of the Council on the General Data Protection Regulation (“GDPR”) and with the California Consumer Privacy Act of 2018 (“CCPA”), respectively.

This Privacy Policy explains how we collect, use, process and disclose information and personal data we obtain from and about our clients and customers, users of the Apps and Themese, including information we collect when you visit our websites. It also tells you about your rights and choices with respect to your information, and how you can contact us if you have any questions or concerns in connection therewith.

Collection and use of your personal data 

Controller of your personal data

The controller is generally a person who, alone or together with others, determines the purpose of collection and decides how the personal data will be processed.

The Company is a controller of personal data. ‍

How do we collect personal data

We obtain your personal data directly from you. This is primarily done via filled in forms, installation of Apps or Themes, mutual communication, or agreements. Also, we can obtain personal data from third parties we cooperate with, who are entitled to access and process your personal data. We may also collect your personal data from publicly accessible sources and registers as well as social media or other online platforms.

What personal data do we process?

Contact and personal data

We process your basic identification data, such as your name and/or business name, address, and VAT or ID number. We may also process your telephone number and/or e-mail address, if they have been provided.

Log data

When you visit our website or use our App, our servers may automatically log the standard data that are provided by your web browser. This may include your computer's Internet Protocol (IP) address, your browser type and version, the pages you visit, the time and date of a visit, the time spent on each page, and other details.

Billing information

We may also collect data regarding invoicing details, billing conditions, payments received (and our payment processors and providers) with billing details.

Information from our mutual conversations

We may also collect and process data regarding mutual communication such as information derived from e-mails, phone calls, contact forms as well as the content of our communications.

Installation and settings data

We collect and process installation data and settings, such as the date of installation, personal App settings, and the Shopify API key for the purpose of improving our services and Apps and your access to them.

Legal basis and purposes for processing personal data

We process your personal data lawfully, fairly and in a transparent manner. We collect and process information about you only when we have a legal basis for doing so.

The legal basis depends on the services you use and the way you use them. We collect your information only if:

  • it is necessary for the performance of an agreement by and between us, or to take steps at your request before entering into such an agreement (for example, when we provide you with services you have requested from us);
  • it satisfies a legitimate interest (which is not overridden by your data protection interests), such as for conducting research and development, to market and promote our services, and to protect our legal rights and interests;
  • you grant us consent to do so for a specific purpose (for example, you might grant consent to receiving our newsletter); or
  • we need to process your data in order to comply with a legal obligation.

If you provide us with your consent to use your information for a specific purpose, you have the right to change your mind at any time (however, this will not affect any processing that has already taken place).

We do not keep your personal data for any longer than is necessary. While we retain this data, we protect it within commercially acceptable means so as to prevent any loss or theft, as well as protection from any unauthorised access, disclosure, copying, use or modification. That said, we advise that no method of electronic transmission or storage is 100% secure and cannot guarantee absolute data security. If necessary, we may retain your personal data so that we can remain compliant with a legal obligation.

Personal data retention

If you grant us consent to having your personal data processed, you are entitled to withdraw it any time. However, we would like to inform you that in the case you choose to withdraw your consent, it might be necessary to keep some of your data for the purposes of maintaining compliance with our legal obligations. Please note that we may also keep the data if our legitimate interest entitles us to do so.

Please note that we are not obliged to delete all of your personal data if you cancel the subscription or uninstall our App. We may still keep the data which are obtained during the installation of the App, such as your store URL, email address, and your first and last name, for the purposes of maintaining compliance with our legal obligations.

Cookies

We use cookies to collect information about you and your activities on our site. A cookie is a small piece of data analytics that our website stores on your computer, and accesses it each time you visit, so we can understand how you use our site. This helps us better to serve you content that is based on the personal preferences you have specified. 

We also use cookies to secure a better user experience and personalised content for you. In addition, cookies for marketing purposes, analyzing a visitor’s activity on a website or during communication with the third parties. You may set up cookie processing options via your web browser and you can grant consent to processing the marketing cookies via a cookie bar.

You may also choose to use our website without cookies. In such a case we would not be able to collect any information about you or about your activity on the website. Moreover, if you disable the cookies, the website or App may not display correctly.

The collected cookies are processed by the Company or other processors:

  • the Google Analytics services provided by the Google Inc. company. Collected cookies are processed in compliance with Google Inc. Privacy Policy, which you can find at https://policies.google.com/privacy

For more information about cookies, and how to disable cookies, visit http://www.allaboutcookies.org.

Behavioural advertising

We may use your personal data to provide you with targeted advertisements or marketing communications we believe may be of interest to you. For more information about how targeted advertising works, you can visit the Network Advertising Initiative’s (“NAI”) educational page at http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work.

You can opt out of targeted advertising by:

Meta - https://www.facebook.com/settings/?tab=ads

Google - https://www.google.com/settings/ads/anonymous

Bing - https://advertise.bingads.microsoft.com/en-us/resources/policies/personalized-ads

Additionally, you can opt out of some of these services by visiting the Digital Advertising Alliance’s opt-out portal at: http://optout.aboutads.info/.

Do not track

Please note that we do not alter our Site’s data collection and use practices when we see a Do Not Track signal from your browser.

Disclosure and transfer of personal data to third parties

We may disclose personal data to:

  • third-party service providers (data processors) for the purpose of enabling them to provide their services, including (without limitation) IT service providers; data storage; hosting and server providers; CRM providers; ad networks; analytics; error loggers; debt collectors; maintenance or problem-solving providers; marketing or advertising providers; professional advisors and payment systems operators; and
  • our employees, contractors and/or related entities.

We do not transfer your data to any international organisations. However, we are entitled to transfer some of your personal data outside of the European Economic Area (EEA) via some entities we cooperate with. This transfer is made only if it complies with the terms and conditions of the legal provisions for such transfer. 

Your rights

If you are a European resident, you have the right to access personal data we hold about you and to ask that your personal data be corrected, updated, or deleted. If you would like to exercise this right, please contact us at privacy@tinygoliath.io

Additionally, if you are a European resident we note that we are processing your information in order to fulfill contracts we might have with you (for example if you use our apps or themes), or otherwise to pursue our legitimate business interests. Additionally, please note that your information will be transferred outside of Europe, including to Australia, Canada and the United States.

If we receive personal data about you from a third party, we will protect it as set out in this Privacy Policy. If you are a third party providing personal data about somebody else, you represent and warrant that you have such person's consent to provide the personal data to us.

Automated individual decision-making

Automated decision-making refers to a decision which is taken solely on the basis of the automated processing of your personal data. This means processing using, for example, software codes or algorithms, which does not require any human intervention. 

We will not make any decisions which are based solely on automated processing that would have legal consequences concerning the data subject or that may similarly significantly affect the data subject.

Changes

At our discretion, we may change our Privacy Policy to reflect current acceptable practices. Your continued use of this site, apps or themes after any changes have been made to this Privacy Policy will be regarded as acceptance of our practices in connection with privacy and personal data.

Contact us

For more information about our privacy practices, if you have questions, or if you would like to make a complaint, please contact us by e-mail at privacy@tinygoliath.io