Privacy Policy

This policy describes how ShapKit ("the Operator") may collect and use information when you use this website and related services. Customize it for your entity and stack.

Template sample text only. Replace with counsel-reviewed policies before production use. Contact details, jurisdiction, and data practices must match your deployment.

Scope

This policy applies to the marketing site, authenticated dashboard, and APIs operated under the ShapKit brand by the Operator. If you fork ShapKit for your own product, you are responsible for publishing a policy that matches your legal entity and subprocessors.

Information we may collect

Depending on configuration, we may process account identifiers (email, name), organization membership, billing and license status, support tickets, usage and audit logs, and technical data (IP address, browser type, device signals). Payment card data is handled by your configured payment providers, not stored in full by default ShapKit templates.

How we use information

We use data to provide authentication, deliver purchased source and licenses, operate credits and AI features, process payments, send transactional email, prevent abuse, and improve reliability. Marketing analytics or optional AI features should be disclosed here when you enable them.

Sharing and subprocessors

We may share data with infrastructure hosts (for example Cloudflare), payment processors (for example Stripe), email providers, and error monitoring tools you configure. We do not sell personal information. List your actual vendors and regions before going live.

Retention and security

We retain data as long as needed for the purposes above and as required by law. Template deployments should define backup, deletion, and breach procedures. Apply reasonable access controls, encryption in transit, and least-privilege admin access in your environment.

Your choices and rights

Depending on your location, you may have rights to access, correct, delete, or export personal data, and to object to certain processing. Contact the Operator using the support channel you publish on your site. We will respond within timelines required by applicable law once your process is defined.