Privacy Policy

Last Updated: November 9, 2024

1. Introduction

Welcome to PlusSales ("we," "our," or "us"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you partner with our CRO agency and proprietary experimentation platform for Shopify stores.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, and business information
  • Store Data: Shopify store domain, products, and store settings
  • Google Account Data: When you connect Google Analytics, we access your email and GA4 property information

2.2 Automatically Collected Information

  • Usage Data: How you interact with our service
  • Analytics Data: CRO experiment results, conversion rates, and performance metrics
  • Technical Data: IP address, browser type, device information, and cookies

2.3 Google Analytics Integration

When you connect Google Analytics 4 (GA4) to PlusSales, we access:

  • Your Google email address and profile information
  • List of GA4 properties you have access to
  • Read-only analytics data from your selected GA4 property
  • OAuth tokens to maintain the connection

We use the Google Analytics Readonly Scope which provides read-only access to your analytics data. We never modify your GA4 data or settings.

3. How We Use Your Information

We use the collected information to:

  • Provide and maintain our CRO agency services and experimentation platform
  • Display analytics insights from your GA4 property
  • Optimize your store's performance through managed experimentation
  • Send you service-related communications
  • Improve and personalize our service
  • Comply with legal obligations

4. Data Sharing and Disclosure

We do not sell your personal information. We may share your data with:

  • Shopify: As required to operate our Shopify app
  • Service Providers: Hosting (Vercel), database (Supabase), and analytics services
  • Legal Requirements: When required by law or to protect our rights

5. Google API Services User Data Policy

PlusSales's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically:

  • We only request the minimum permissions necessary (analytics.readonly)
  • We use Google user data solely to provide analytics insights within PlusSales
  • We do not transfer Google user data to third parties except as necessary to provide our service
  • We do not use Google user data for serving advertisements
  • We store OAuth tokens securely and encrypted

6. Data Security

We implement appropriate technical and organizational measures to protect your data, including:

  • Encryption of data in transit (HTTPS/TLS)
  • Secure storage of OAuth tokens
  • Regular security audits
  • Access controls and authentication

7. Data Retention

We retain your data for as long as your account is active or as needed to provide services. You can request deletion of your data at any time by contacting us.

8. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data
  • Revoke Google Analytics access at any time
  • Opt-out of marketing communications
  • Export your data

9. Revoking Access

You can revoke PlusSales's access to your Google Analytics data at any time by:

  • Visiting your Google Account Permissions
  • Finding PlusSales in the list of apps
  • Clicking "Remove Access"

10. Cookies and Tracking

We use cookies and similar technologies to maintain your session, remember your preferences, and analyze usage patterns. You can control cookies through your browser settings.

11. Children's Privacy

Our service is not intended for users under 13 years of age. We do not knowingly collect information from children under 13.

12. International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last Updated" date.

14. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

  • Email: support@yotoia.com
  • Website: https://yotoia4.vercel.app

15. GDPR Compliance (For EU Users)

If you are located in the European Economic Area (EEA), you have additional rights under GDPR:

  • Right to be informed about data processing
  • Right to access your data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing

To exercise these rights, please contact us at support@yotoia.com.