Privacy Policy Checkout Designer

Date of Last Revision: August 19, 2023

This Privacy Policy discloses the privacy practices for Excyted UG with respect to the website located at checkout-designer.vercel.app (collectively, the “Website”) and Checkout Designer “the App” which provides customizable offers during checkout “the Service” to merchants who use Shopify to power their stores.
This Privacy Policy describes how personal information is collected, used, and shared when you visit the Website or install or use the App in connection with your Shopify-supported store. Your privacy is important to us. It is Excyted’s policy to respect your privacy regarding any information we may collect from you.

Personal Information the App collects

When you install the App, we are automatically able to access certain types of information from your Shopify account:

  • View Shopify account data
  • Manage the files you uploaded
  • Manage your checkout branding settings

Which data we collect or need to have the app function as desired for the client will be shown when the app is installed.
We collect personal information directly from the relevant individual, through your Shopify account, or using the following technologies:
“Cookies” are data files that are placed on your device or computer and often include an anonymous unique identifier. For more information about cookies, and how to disable cookies, visit http://www.allaboutcookies.org. “Log files” track actions occurring on the Site, and collect data including your IP address, browser type, Internet service provider, referring/exit pages, and date/time stamps.
“Web beacons,” “tags,” and “pixels” are electronic files used to record information about how you browse the Site.

‍How Do We Use Your Personal Information?

We use the personal information we collect from you in order to provide the Service and to operate the App. Additionally, we use this personal information to: communicate with you; optimize or improve the App; and provide you with information or advertising relating to our products or services.

Sharing Your Personal Information

We do not rent or sell your personally identifiable information (such as name, business name and email) to third parties for their marketing purposes. We may share your information with third parties to provide products and services you have requested, when we have your consent, or as described in this Privacy Policy. We may also share your Personal Information to comply with applicable laws and regulations, to respond to a subpoena, search warrant or other lawful request for information we receive, or to otherwise protect our rights.

Data Retention

When you use the app, the app will maintain your Order Information for our records to compile and see trend analysis and analytics for of the app unless and until you ask us to delete this information.

Security of Information

We take security seriously and take numerous precautions to protect the security of Personally Identifiable Information. Unfortunately, no data transmission over the Internet or any wireless network can be guaranteed to be 100% secure. As a result, while we employ commercially reasonable security measures to protect data and seek to partner with companies which do the same, we cannot guarantee the security of any information transmitted to or from the Website or the Service, and are not responsible for the actions of any third parties that may receive any such information.

Security Incident Response Policy

When a security incident or data breach would happen we approach this as follows:

  1. Identify the breach. Founder & lead engineer are notified under checkout-designer@excyted.com within 24h
  2. Fix the breach to prevent further data to be exposed within 72h
  3. Collect evidence and assess what went wrong. Update our security measure to prevent similar and other incidents from happening.

Escalation path: any security policy will immediately be notified to the founder of the app under checkout-designer@excyted.io. If code updates are required, the lead engineer will be engaged within 12 hours.

Access Log to Personal Data

We keep a log of access to personal data at all times. This helps us to assess whether security controls are working effectively.

Changes

We may update this privacy policy from time to time in order to reflect, for example, changes to our practices or for other operational, legal or regulatory reasons. Your continued use of our app will be regarded as acceptance of our practices around privacy and personal information. If you have any questions about how we handle user data and personal information, feel free to contact us.

Google Analytics

We use Google Analytics on our website. This is a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland (hereinafter: Google).

The Google Analytics service is used to analyze how our website is used. The legal basis is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the analysis, optimization, and economic operation of our site.

Usage and user-related information, such as IP address, place, time, or frequency of your visits to our website will be transmitted to a Google server in the United States and stored there. However, we use Google Analytics with the so-called anonymization function, whereby Google truncates the IP address within the EU or the EEA before it is transmitted to the US.

The data collected in this way is in turn used by Google to provide us with an evaluation of visits to our website and what visitors do once there. This data can also be used to provide other services related to the use of our website and of the internet in general.

Google states that it will not connect your IP address to other data. In addition, Google provides further information with regard to its data protection practices at

https://www.google.com/intl/de/policies/privacy/partners,

including options you can exercise to prevent such use of your data.

In addition, Google offers an opt-out add-on at

https://tools.google.com/dlpage/gaoptout?hl=en

in addition with further information. This add-on can be installed on the most popular browsers and offers you further control over the data that Google collects when you visit our website. The add-on informs Google Analytics‘ JavaScript (ga.js) that no information about the website visit should be transmitted to Google Analytics. However, this does not prevent information from being transmitted to us or to other web analytics services we may use as detailed herein.

Smartlook

We use the Smartlook analysis software from Smartsupp.com s.r.o., Milady Horakove 13, 602 00 Brno, Czech Republic as part of our legitimate interest in a technically flawless online offer and its economically efficient design and optimization in accordance with Art. 6 Para. 1 lit. f GDPR.

This tool records movements on the monitored pages in so-called heat maps and recordings. This allows us to recognize how visitors use the app, where they click, how far they scroll and what they enter in fields. This allows us to make our app better and more customer-friendly and to help individual customers with problems by analyzing their recordings. We also collect user data from Shopify, device screen size, device type, browser information, country accessed from and preferred language.

You can find Smartlook's privacy policy here: https://help.smartlook.com/en/articles/3244452-privacy

‍Contact Us

For more information about our privacy practices, if you have questions, or if you would like to make a complaint, please contact us:
Email: checkout-designer@excyted.io
Mail using the details provided below:
Excyted UG,
Volksdorfer Damm 272
22395 Hamburg
Germany