Privacy Policy
Effective date: September 19, 2025
At Easy Make (peelnship.com), we respect your privacy and aim to process only the minimum data required to run the service. We do not sell, rent, or share your personal data with third parties for marketing purposes. Any information obtained while operating the service is used solely to provide the features you request and instruct us to perform.
Who We Are
Easy Make is software for custom product sellers. For this website (peelnship.com) and our web application, we act as a data controller or processor depending on the applicable laws and your use of the product.
Scope
This policy applies to: (i) the public website peelnship.com; and (ii) the Easy Make web application if you create an account and configure integrations. We strive to align with international privacy standards, including U.S. requirements (such as CCPA/CPRA for California residents) and core GDPR principles.
What We Don’t Do
- We do not sell or “share” personal data as defined by the CPRA.
- We do not use your data outside the scope of providing the service features you ask us to perform.
- We do not store or process information about your customers, transactions, or orders for our own purposes. If you connect external shops/marketplaces, any processing of such data happens strictly to execute your instructions— without profiling and without advertising use.
Data We May Process
We follow the principle of data minimization. By default, on the public website we do not collect personal data that directly identifies you. Limited technical processing may include:
- Technical request metadata (IP address, User‑Agent, URL, timestamp) — solely for security, error diagnostics, and basic traffic analytics without identifying individuals.
- Account (optional): if you register, we may process your email and organization name to provide access. These data are used only for authentication, product communications, and support.
- Integrations: when you connect external services (e.g., shops), the data required for synchronization are processed transitively and only to perform your tasks. We do not use these data outside the service.
Cookies and Third‑Party Services
We aim to avoid non‑essential cookies and third‑party tracking. Certain vendors (e.g., CDNs for static files/fonts) may receive your IP address and User‑Agent while serving resources. We keep such vendors limited and use them only as needed for performance and stability. If we enable analytics (e.g., GA4/Umami), we will update this section and provide opt‑out options.
Legal Bases (GDPR)
- Contract performance — providing account access and features as instructed by you.
- Legitimate interests — maintaining security, preventing abuse, diagnostics, and improvements.
- Legal obligations — complying with law and responding to regulators/courts.
Retention and Deletion
- Duration: data are retained only as long as necessary to provide the service and ensure security.
- Account deletion: upon account deletion, all related information is automatically removed from our active systems within 30 days and is not recoverable. Backups (if applicable) are rotated on a cycle within the same period.
Security
- Encryption of personal information at rest and in transit (TLS) where applicable.
- Least‑privilege access, environment isolation, and access logging.
- Regular updates of servers and components to current versions to address vulnerabilities.
- Monitoring and response — we take all reasonable measures to prevent intrusions. If you suspect a security issue, please email us at hello@peelnship.com.
Data Sharing and International Transfers
We may use vetted subprocessors (hosting, CDNs, email services) strictly to provide the service. Any sharing is limited to what’s necessary and governed by data processing agreements and standard transfer mechanisms (e.g., SCCs) where required. A list of subprocessors is available upon request.
Your Rights
Depending on your jurisdiction, you may have rights of access, correction, deletion, restriction, portability, objection, and the right to lodge a complaint with a regulator. California residents (CCPA/CPRA) also have the right to know, delete, and opt out of any “sale”/“sharing” of personal data — which we do not conduct.
Children
Our sites and services are not directed to children under 13 (COPPA). We do not knowingly collect children’s data.
Contact
For privacy and security inquiries, contact us at hello@peelnship.com. We will respond.
Changes to This Policy
We may update this policy from time to time. The current version is always available on this page. Material changes will be accompanied by appropriate notice.