Protectstar Inc. is represented by Chris Bohn, CEO
Registration
Registered with the Florida Department of State, Division of Corporations.
Document Number
P04000160889
State of Incorporation
Florida
Entity Type
Florida Profit Corporation
Status
Active
Date Filed
November 30, 2004
Effective Date
December 1, 2004
Tax
U.S. FEI / EIN
20-1940022
Protectstar Inc. does not have a German or European VAT identification number.
Registered Agent
For formal service of process only (public Florida record): Risc Control Management Inc. 4281 Express Lane, Suite L3604 Sarasota, FL 34249, USA
For customer support, privacy requests, press inquiries, or general business communication, please contact Protectstar Inc. directly.
No Professional Advice
The content on our websites is provided for general information about cybersecurity, privacy, data erasure, software, digital security, and Protectstar products.
Website content does not constitute legal, forensic, regulatory, medical, financial, tax, or other professional advice. You should not rely on website content as a substitute for advice from qualified professionals in your jurisdiction, industry, or specific situation.
Product Information
We make reasonable efforts to keep product descriptions, availability, pricing, screenshots, technical specifications, certifications, awards, compatibility information, and other website content accurate and current.
However, products, features, prices, promotions, third-party platform availability, technical requirements, subscription models, app store availability, and documentation may change without prior notice.
If a product is offered through an app store, marketplace, payment provider, reseller, or other third-party platform, additional terms and policies of that platform may apply.
External Links
Our websites may contain links to third-party websites, app stores, social networks, payment providers, documentation, press articles, certification bodies, partner websites, or other external resources.
We do not control those third-party websites or services and are not responsible for their content, availability, security, privacy practices, or terms. Visiting third-party websites or using third-party services is at your own risk and subject to the applicable third party's policies.
Intellectual Property
All content on our websites, including text, graphics, logos, icons, images, screenshots, videos, software names, product names, documentation, designs, layouts, source code elements, downloads, and other materials, is owned by Protectstar Inc. or used with permission, unless otherwise stated.
Protectstar, iShredder, Deep Detective, Camera Guard, Micro Guard, Antivirus AI, Firewall AI, Anti Spy, Extended AES, and related names, logos, and product identifiers may be trademarks, service marks, trade names, or protected product identifiers of Protectstar Inc.
All other trademarks, service marks, product names, company names, logos, and brand identifiers are the property of their respective owners.
You may not copy, modify, distribute, reproduce, publish, sell, license, create derivative works from, or otherwise use our content or marks without prior written permission, except where permitted by applicable law.
Copyright and Intellectual Property Complaints
If you believe that content on our websites infringes your intellectual property rights, please contact us at and include:
your name and contact information;
identification of the copyrighted work, trademark, or other right you claim is infringed;
the URL or other precise location of the allegedly infringing material;
a description of why you believe the material infringes your rights;
a statement that the information you provide is accurate; and
your physical or electronic signature.
Accessibility
Protectstar aims to make its websites and online services accessible and usable. If you experience accessibility barriers or need assistance accessing information, please contact us at . Include the page URL, the issue you encountered, and the browser, operating system, or assistive technology you used, if applicable.
Export Control and Sanctions Compliance
Protectstar products and services may be subject to U.S. export control, sanctions, and trade compliance laws and regulations, including rules administered by the U.S. Department of Commerce Bureau of Industry and Security and the U.S. Department of the Treasury Office of Foreign Assets Control.
You may not access, download, purchase, use, export, re-export, transfer, or provide Protectstar products or services in violation of applicable export control or sanctions laws, including to prohibited destinations, prohibited end users, or for prohibited end uses.
By accessing or using Protectstar products or services, you represent that you are not located in, under the control of, or acting on behalf of a person, entity, region, or country subject to applicable restrictions that prohibit the transaction.
Forward-Looking Statements
Our websites may contain forward-looking statements about future features, product plans, technology, certifications, availability, integrations, or business strategy. These statements are not guarantees and may change without notice.
Changes to This Legal Notice
We may update this Legal Notice from time to time. The current version is available on this page and is effective as of the "Last Updated" date above.
The Essentials
Privacy in 60 seconds.
The full Privacy Notice follows below. Here's what matters most — at a glance.
No data sale
We don't sell personal information and don't share it for cross-context behavioral advertising.
Consent-based analytics
Google Analytics runs only after you agree — in a minimal, privacy-conscious configuration.
Necessary cookies only
Technically necessary cookies without consent. Everything else needs your explicit agreement.
Your privacy rights
Access, correct, delete, withdraw — full rights under GDPR, CCPA, and other applicable laws.
No advertising profiles
We don't build ad profiles, don't track across sites, and don't engage in data brokerage.
Direct contact
Privacy questions? Reach us at — real humans, real answers.
Privacy Notice
In detail.
47 sections in 11 parts. Navigate via the menu on the left or scroll through.
Part I · Foundations
01
Overview
Protectstar Inc. respects privacy and designs its websites, products, and services with data minimization in mind.
This Privacy Notice explains how we collect, use, disclose, retain, and protect personal information in connection with our websites, online shop, MY.PROTECTSTAR account functions, newsletter, support, business communications, product downloads, and related online services.
This notice is intended for visitors and customers worldwide. Depending on your location, additional rights may apply under local privacy laws.
02
Who We Are
Protectstar Inc. 4281 Express Lane, Suite L3604 Sarasota, FL 34249, USA Phone: +1 561 246 3351 Email: Web: www.protectstar.com
For privacy-related requests, you may also contact .
Protectstar Inc. is the controller or responsible business for the personal information described in this Privacy Notice, unless a product-specific notice or third-party platform notice states otherwise.
03
Scope
This Privacy Notice applies to personal information processed through:
our main website;
our online shop;
MY.PROTECTSTAR account functions;
newsletter signup forms;
support and contact forms;
business, reseller, press, and customer communications;
website downloads and product information pages; and
related web-based services.
This Privacy Notice does not replace product-specific privacy notices, app disclosures, app store notices, end user license agreements, or third-party platform policies.
For app-specific information, please also review the applicable product privacy notice, app disclosure, app store privacy label, end user license agreement, and product documentation.
Part II · Personal Information & Legal Bases
04
Personal Information We Collect
In brief
What you give us directly, limited technical information collected automatically, and occasional information from service providers — all tied to a specific purpose.
Information You Provide Directly
We may collect information you provide directly, such as:
name;
email address;
phone number;
billing address;
shipping address, if applicable;
company or organization name;
job title or role;
country, state, or region;
account registration information;
login credentials;
order information;
license information;
support requests;
messages, comments, and attachments you send us;
newsletter signup information;
reseller, business, government, or press inquiry details; and
any other information you choose to provide.
Information Collected Automatically
When you use our websites or online services, we may automatically collect limited technical information, such as:
IP address;
date and time of access;
browser type and version;
operating system;
device type;
referring URL;
pages visited;
files requested or downloaded;
language settings;
approximate location derived from IP address;
error logs;
security logs;
session identifiers;
fraud-prevention signals; and
other technical information necessary to operate, secure, and improve our services.
Information From Third Parties
We may receive limited information from third parties, such as:
Shopify;
Shopify Payments;
Shop Pay;
payment processors;
app stores;
Kit;
Google Analytics, if analytics consent was provided where consent is required;
license and account systems;
support providers;
fraud-prevention and security providers;
business partners;
resellers;
public sources; and
users who refer, forward, or share information with us.
05
Categories of Personal Information
For transparency, the categories of personal information we may process include:
Contact details, billing information, order information
Commercial information
Products purchased, licenses, subscription status, transaction history, support history
Internet or electronic network activity
Website visits, downloads, browser information, security logs, interaction data
Approximate location
Approximate location derived from IP address
Professional or business information
Company name, job title, reseller or business inquiry details
Account credentials
Login information and authentication-related data
Communications
Support messages, contact form submissions, email correspondence, attachments
Inferences
Limited inferences necessary for security, fraud prevention, language selection, support, analytics, or service improvement
We do not intentionally collect Social Security numbers, driver's license numbers, government identification numbers, precise geolocation, biometric identifiers, health information, racial or ethnic origin, religious beliefs, union membership, sexual orientation, or similar highly sensitive information through our websites.
06
Sensitive Personal Information
In brief
Only when strictly necessary — for account security, payments, fraud prevention, or legal compliance. Never for advertising or profiling.
Some information may be considered sensitive under certain privacy laws, such as account login credentials or payment-related information processed through checkout providers.
We use sensitive personal information only for purposes reasonably necessary to provide our services, maintain account security, process transactions, prevent fraud, comply with law, or protect our rights.
We do not use sensitive personal information to infer characteristics about you.
We do not knowingly collect sensitive personal information for advertising, profiling, sale, data brokerage, or cross-context behavioral advertising.
07
How We Use Personal Information
We may use personal information for the following purposes:
to operate and secure our websites;
to create and manage user accounts;
to process orders and payments;
to provide digital products, licenses, downloads, updates, and product access;
to manage product activations and license status;
to provide customer support;
to respond to inquiries;
to send transactional and service-related messages;
to send newsletters and marketing communications if you subscribe;
to process newsletter unsubscribes;
to perform consent-based website analytics;
to prevent fraud, abuse, spam, and unauthorized access;
to detect and respond to security incidents;
to troubleshoot errors and improve service reliability;
to maintain business records;
to comply with legal, tax, accounting, regulatory, and contractual obligations;
to enforce our rights, terms, and policies;
to respond to lawful requests from public authorities;
to support business, reseller, press, and partner communications;
to improve our websites, services, and user experience; and
to protect the rights, safety, and security of Protectstar, our users, and others.
08
Legal Bases (EEA, UK, Switzerland)
In brief
Contract, legal obligation, legitimate interest, consent, vital interests, or defense of legal claims — depending on purpose and context.
If you are located in the European Economic Area, the United Kingdom, or Switzerland, we process personal data on the following legal bases, where applicable:
performance of a contract or steps prior to entering into a contract, including orders, licenses, accounts, product access, and support;
compliance with legal obligations, including tax, accounting, recordkeeping, consumer protection, and regulatory requirements;
legitimate interests, including IT security, fraud prevention, service reliability, customer communication, business operations, legal defense, and improvement of our services;
consent, including newsletter subscriptions and analytics cookies or similar technologies;
protection of vital interests, where strictly necessary; and
establishment, exercise, or defense of legal claims.
Where processing is based on consent, you may withdraw your consent at any time with effect for the future.
Part III · Website & Analytics
09
Website Logs and Security
When you visit our websites, we process technical log data to deliver the site, maintain security, prevent abuse, diagnose errors, and protect our infrastructure.
Website logs may include:
IP address;
date and time of access;
requested pages or files;
browser and device information;
operating system;
referrer information;
language settings;
error messages; and
security events.
Website logs are generally retained for a limited period, typically up to 30 days, unless longer retention is necessary for security, fraud prevention, incident investigation, legal compliance, or defense of legal claims.
10
Cookies and Similar Technologies
In brief
Technically necessary cookies without consent. Google Analytics only after you agree. Never for targeted advertising or cross-context behavioral ads.
Our websites may use cookies, local storage, session storage, and similar technologies. We use two categories of technologies:
Technically Necessary Technologies
These technologies are necessary to operate our websites, shop, checkout, account functions, support functions, security features, and privacy preferences. They may be used to:
maintain website functionality;
remember language or region settings;
secure forms;
protect against fraud and abuse;
manage login sessions;
operate account functions;
support cart and checkout functionality;
process payments;
maintain privacy and consent preferences; and
ensure technical reliability.
Our shop and checkout may use cookies and similar technologies provided by Shopify, Shopify Payments, Shop Pay, or payment-related service providers to operate the store, process payments, prevent fraud, maintain security, and complete transactions.
Analytics Technologies
We use Google Analytics 4 in a minimal, consent-based configuration to understand how visitors use our website and to improve our content, usability, performance, and reliability.
Google Analytics is loaded only after you have consented to analytics technologies, where consent is required. If you do not consent, Google Analytics is not used for your visit.
Analytics cookies may include:
Cookie
Purpose
Max Lifetime
_ga
Distinguishes one visitor from another in a pseudonymous manner
up to 90 days
_ga_<container-id>
Persists session state for Google Analytics 4
up to 90 days
We configure analytics cookies to expire no later than 90 days and not to be renewed on each page load.
We do not use cookies or similar technologies to sell personal information, share personal information for cross-context behavioral advertising, create advertising profiles, or deliver targeted advertising.
You can change or withdraw your analytics consent at any time through our . The Cookie Settings page itself is not measured with Google Analytics.
11
Google Analytics 4
In brief
We use Google Analytics 4 only after your consent — with no ad features, no Google Signals, no Ads linking, no User-ID, and minimal retention.
We use Google Analytics 4 in a minimal, privacy-conscious configuration.
Provider for users in the European Economic Area, the United Kingdom, and Switzerland:
Google Ireland Limited Gordon House, Barrow Street Dublin 4, Ireland
Google services may also involve:
Google LLC 1600 Amphitheatre Parkway Mountain View, CA 94043, USA
Google Analytics helps us understand, in aggregated and pseudonymous form, how visitors use our website. We use this information to improve website content, navigation, performance, reliability, and user experience.
Processed Data
Google Analytics may process information such as:
pages viewed;
date and time of access;
referring website or source;
browser type and version;
operating system;
device type;
language settings;
approximate location derived from technical information;
interactions with website content;
session information;
pseudonymous cookie identifiers; and
technical event data.
We do not send names, email addresses, phone numbers, postal addresses, license keys, customer numbers, payment data, support messages, or other directly identifying information to Google Analytics.
Our Google Analytics Configuration
Our Google Analytics configuration is limited as follows:
Google Analytics 4 only;
no Universal Analytics;
no Google Ads integration;
no Google Ads linking;
no advertising integrations;
no Google Signals;
no advertising features;
no advertising personalization signals;
no remarketing;
no targeted advertising;
no use of Google Analytics data for ad profiles;
no User-ID feature;
no custom dimensions containing personally identifying information;
user-level and event-level data retention set to 2 months;
reset of user data on new activity disabled;
analytics cookies configured to expire no later than 90 days;
analytics cookies not renewed on each page load;
Google Analytics loaded only after analytics consent, where consent is required; and
the Cookie Settings page itself is excluded from Google Analytics measurement.
IP Addresses
Google Analytics 4 does not log or store individual IP addresses from EU users. For EU-based traffic, Google states that IP addresses are used only to derive coarse location information before being discarded.
Legal Basis
For users in jurisdictions where consent is required, the legal basis for Google Analytics is your consent. For users in the European Economic Area, Germany, the United Kingdom, or Switzerland, the legal basis is consent under applicable privacy and cookie laws, including Art. 6(1)(a) GDPR where applicable and, in Germany, Section 25(1) TDDDG for access to or storage of information on your device.
Withdrawing Consent
You can withdraw or change your analytics consent at any time through our . Withdrawing consent does not affect the lawfulness of processing based on consent before withdrawal.
No Ads, No Data Brokerage, No Sale, No Advertising Sharing
In brief
We do not sell personal information, do not share it for cross-context behavioral advertising, and do not engage in targeted advertising or data brokerage.
We do not use ads integrations on our main website.
We do not use Google Analytics for advertising, remarketing, Google Signals, Google Ads audiences, advertising personalization, or targeted advertising.
We do not sell personal information.
We do not share personal information for cross-context behavioral advertising.
We do not use personal information for targeted advertising.
We do not act as a data broker.
We do not authorize service providers to use personal information for their own advertising, resale, or data brokerage purposes.
Because we do not sell personal information, share personal information for cross-context behavioral advertising, or use personal information for targeted advertising, we do not maintain a "Do Not Sell or Share My Personal Information" opt-out link.
We may still disclose personal information to service providers, processors, contractors, payment providers, checkout providers, hosting providers, analytics providers, security providers, and other operational partners when necessary to operate our business, provide services, process transactions, understand website performance, comply with law, or protect our rights.
Part IV · Shop, Accounts & Support
13
Shopify, Shopify Payments, and Shop Pay
In brief
Our shop runs on Shopify. Payments are processed by Shopify Payments and Shop Pay. Depending on the activity, they act as processors or as independent controllers.
Our online shop is operated through Shopify.
We use Shopify, Shopify Payments, and Shop Pay to operate our store, process transactions, support checkout, manage orders, prevent fraud, and provide a secure purchasing experience.
Depending on how you interact with our shop, Shopify, Shopify Payments, and Shop Pay may process information such as:
name;
email address;
billing address;
shipping address, if applicable;
payment-related information;
order details;
transaction details;
device and browser information;
merchant-site activity related to checkout or purchase;
fraud-prevention signals;
customer account or checkout preferences; and
privacy preferences.
We do not store full credit card numbers when payment information is processed directly by Shopify Payments, Shop Pay, card networks, banks, or other payment service providers.
Shopify, Shopify Payments, and Shop Pay may process personal information as our service provider or processor for certain merchant-related functions. Shopify may also process certain information independently where required for its own services, legal obligations, fraud prevention, security, platform integrity, or Shop/Shop Pay functions.
If your privacy request relates to a purchase from our shop, you may contact us at or .
If your request relates specifically to your Shop Pay account, Shop account, or Shopify-controlled consumer profile, you may also need to contact Shopify directly through Shopify's privacy controls.
14
Shop, Orders, Payments, and Digital Products
When you purchase products, licenses, upgrades, subscriptions, or digital content, we process information necessary to complete the transaction. This may include:
name;
email address;
billing address;
shipping address, if applicable;
order number;
product purchased;
license information;
payment status;
transaction metadata;
tax information;
fraud-prevention information;
account information; and
customer support information.
We use this information to:
process orders;
deliver digital products;
provide licenses and activation;
manage subscriptions or renewals;
prevent fraud;
provide support;
comply with tax and accounting obligations;
maintain business records; and
enforce our rights and terms.
Order, payment, tax, accounting, and licensing records may be retained for as long as required or permitted by applicable law.
15
MY.PROTECTSTAR Account
If you create or use a MY.PROTECTSTAR account, we process information needed to operate and secure your account. This may include:
name;
email address;
login credentials;
customer ID;
license keys;
product assignments;
activation status;
purchase history;
account settings;
security events;
support history; and
technical information necessary for account and license management.
We use this information to:
create and manage your account;
authenticate you;
manage licenses;
provide product access;
provide support;
prevent unauthorized access;
detect abuse or fraud;
maintain security; and
comply with legal and contractual obligations.
16
Support and Contact Requests
When you contact us for support or submit a contact form, we process the information necessary to respond. This may include:
name;
email address;
phone number;
product name;
license information;
order number;
operating system;
device or app version;
error descriptions;
screenshots or attachments you provide;
message contents;
support history; and
technical metadata.
Please do not send us passwords, private keys, recovery codes, confidential files, health information, financial account credentials, or other sensitive information unless we specifically request it and it is necessary for your support case.
Part V · Communications
17
Newsletter
In brief
Subscribe any time. Unsubscribe any time — via the link in every email, or by contacting us directly.
If you subscribe to our newsletter, we process your email address and related subscription information to send you cybersecurity, privacy, product, update, company, educational, and promotional content.
Newsletter data may include:
email address;
signup date and time;
signup source;
IP address at signup;
confirmation status;
subscription preferences;
unsubscribe status;
delivery information; and
email engagement information, such as opens or clicks, if enabled and legally permitted.
Where required or appropriate, we may use a confirmation process to verify newsletter subscriptions.
You can unsubscribe from marketing emails at any time by using the unsubscribe link in our emails or by contacting us at or .
We may retain your email address in a suppression list after you unsubscribe to ensure that we do not send you further marketing emails.
Transactional or service-related emails, such as order confirmations, account notices, product security notices, license information, and support communications, may still be sent where necessary to provide services or communicate about your account, purchase, license, or product.
18
Newsletter Service Provider: Kit
We use Kit to manage and send newsletters.
Provider:
Kit, Inc. 750 West Bannock Street #761 Boise, Idaho 83701-0761, USA
Kit helps us manage newsletter signups, email delivery, unsubscribe requests, subscription preferences, suppression lists, and related technical functions.
Kit may process newsletter subscriber data on our behalf, including:
email address;
subscription status;
signup source;
confirmation information;
delivery information;
unsubscribe information; and
engagement information, if enabled.
We do not authorize Kit to sell newsletter subscriber personal information, share newsletter subscriber personal information for cross-context behavioral advertising, or use newsletter subscriber personal information for data brokerage.
19
Commercial Email Compliance
Our marketing emails are intended to comply with applicable commercial email rules. Marketing emails will include:
accurate sender information;
a valid mailing address;
a clear way to unsubscribe; and
no deceptive subject lines.
We process unsubscribe requests as required by applicable law.
20
Business, Reseller, Government, and Press Inquiries
If you contact us as a business customer, reseller, government agency, enterprise customer, journalist, analyst, researcher, or partner, we may process business contact information. This may include:
name;
business email address;
phone number;
company or organization;
job title;
country or state;
inquiry details;
proposal or project information;
communication history; and
related business records.
We use this information to communicate with you, evaluate opportunities, prepare offers, provide support, manage business relationships, respond to press inquiries, and maintain records.
21
Reviews, Testimonials, and Public Content
If you provide a review, testimonial, quote, case study, or public feedback, we may use it with your permission or as permitted by the platform on which you submitted it.
We may display limited information such as your name, initials, company, role, product used, review text, or public rating, depending on the context and permission granted.
Part VI · Apps & Third-Party Platforms
22
App Stores and Third-Party Platforms
Protectstar products may be available through third-party platforms such as Google Play, Apple App Store, Mac App Store, Shopify, payment providers, marketplaces, or resellers.
Those platforms process personal information under their own privacy policies and terms. We may receive limited information from those platforms, such as purchase status, transaction identifiers, app store account information, aggregate analytics, refund status, or license-related data.
We are not responsible for the privacy practices of third-party platforms.
23
App-Specific Privacy Practices
Many Protectstar products are designed to minimize data collection and process security functions locally on your device.
However, app-specific data practices may differ depending on product, platform, operating system, license model, app store, feature, and user settings.
For app-specific information, please review the applicable product privacy notice, app disclosure, app store privacy label, end user license agreement, and product documentation.
Part VII · Data Handling & Security
24
Aggregated, De-Identified, or Anonymous Information
We may process aggregated, de-identified, or anonymous information for security, analytics, business reporting, product improvement, research, or operational purposes.
Where information is truly anonymous or de-identified under applicable law, it is not treated as personal information.
We do not attempt to re-identify information that has been de-identified, except where permitted or required by law, such as to test and maintain de-identification safeguards.
25
How We Disclose Personal Information
In brief
Only where necessary to service providers, processors, payment and shop providers, authorities where required by law, or with your consent — each with appropriate safeguards.
We may disclose personal information to the following categories of recipients when necessary for the purposes described in this Privacy Notice:
hosting and infrastructure providers;
security and fraud-prevention providers;
Shopify;
Shopify Payments;
Shop Pay;
payment processors;
card networks and banks;
app stores and marketplaces;
Kit;
Google Analytics, if you consent to analytics where consent is required;
customer support providers;
email delivery providers;
diagnostics providers, if enabled and disclosed;
business operations providers;
professional advisors, such as lawyers, accountants, tax advisors, and auditors;
law enforcement, regulators, courts, or public authorities where legally required;
successors or prospective successors in connection with a merger, acquisition, restructuring, financing, bankruptcy, or sale of assets; and
other recipients with your direction or consent.
We require service providers and contractors to process personal information only for permitted business purposes and subject to appropriate confidentiality and security obligations.
We do not disclose personal information for sale, data brokerage, cross-context behavioral advertising, or targeted advertising.
26
International Processing and Transfers
In brief
Protectstar is U.S.-based. International transfers use safeguards such as Standard Contractual Clauses, adequacy decisions, or recognized privacy frameworks.
Protectstar Inc. is based in the United States.
If you access our services from outside the United States, your information may be processed in the United States and in other countries where we or our service providers operate.
Service providers such as Shopify, Shopify Payments, Shop Pay, Kit, Google Analytics, hosting providers, security providers, support providers, and payment-related providers may process personal information in countries other than your country of residence.
Privacy laws in those countries may differ from the laws of your location.
Where required by applicable law, we use appropriate safeguards for international transfers of personal information. These safeguards may include:
standard contractual clauses;
data processing agreements;
adequacy decisions;
certifications under recognized data privacy frameworks, where applicable;
contractual, technical, and organizational safeguards;
necessity for performance of a contract;
consent, where legally appropriate; or
other transfer mechanisms permitted by applicable law.
Service providers such as Shopify, Kit, and Google may maintain their own international transfer mechanisms, privacy programs, and data processing terms.
27
Retention
In brief
As short as possible, as long as legally required — typical periods range from 30 days to 10 years.
We retain personal information only as long as reasonably necessary for the purposes described in this Privacy Notice, unless a longer period is required or permitted by law.
Typical retention periods include:
Website logs: usually up to 30 days, unless needed longer for security, fraud prevention, incident investigation, or legal reasons.
Google Analytics user-level and event-level data: 2 months.
Google Analytics cookies: up to 90 days.
Cookie and consent preferences: until you change your preferences or until the applicable preference record expires.
Account information: for as long as your account exists and as needed for account security, license management, support, legal compliance, or dispute resolution.
Order, license, payment, tax, and accounting records: for as long as needed to complete transactions and comply with tax, accounting, audit, and legal obligations, typically up to 7 to 10 years depending on applicable law.
Support communications: for as long as needed to resolve the request and maintain reasonable business records.
Newsletter data: until you unsubscribe, withdraw consent, or the newsletter is discontinued; suppression records may be retained to honor your opt-out.
Business communications: for as long as needed to manage the relationship and maintain business records.
Legal and compliance records: for as long as necessary to comply with law, enforce rights, resolve disputes, or respond to legal process.
When personal information is no longer needed, we delete, de-identify, anonymize, or securely retain it in accordance with applicable law and our business needs.
28
Security
We use reasonable technical, administrative, and organizational safeguards designed to protect personal information against unauthorized access, disclosure, alteration, destruction, loss, misuse, and abuse.
These safeguards may include:
encryption in transit;
access controls;
authentication measures;
security monitoring;
least-privilege access;
logging of security events;
fraud detection;
secure development and maintenance practices;
vendor review;
contractual confidentiality obligations; and
internal security procedures.
No website, online service, software system, or transmission method can be guaranteed to be completely secure.
29
Data Breach Notification
If we discover a security incident involving personal information, we will investigate and take appropriate action.
Where required by applicable law, we will notify affected individuals, regulators, or other parties.
Part VIII · Minors & Choices
30
Children's Privacy
In brief
Our services aren't directed to children under 13. We don't knowingly collect their information.
Our websites and online services are not directed to children under 13.
We do not knowingly collect personal information from children under 13. If we learn that we have collected personal information from a child under 13 without appropriate parental consent, we will take reasonable steps to delete that information.
Where a higher age threshold applies under local law, we do not knowingly collect personal information from children below that threshold without legally required consent.
Parents or guardians may contact us at .
31
Your Privacy Choices
You may have choices regarding your personal information, including:
accessing or updating account information;
unsubscribing from newsletters;
granting, refusing, changing, or withdrawing analytics consent;
requesting deletion of certain information;
requesting correction of inaccurate information;
limiting certain communications;
managing browser cookies;
using privacy controls provided by app stores, Shopify, Shop Pay, or other third-party platforms;
contacting us with a privacy request.
You can manage analytics consent through our .
To submit a privacy request, contact us at . Alternatively, contact us at .
Please include enough information for us to verify and process your request.
Part IX · Your Rights
32
Rights for Users in the EEA, United Kingdom, and Switzerland
In brief
Full GDPR rights: access, rectification, erasure, restriction, portability, objection, withdrawal, and the right to complain to a supervisory authority.
If you are located in the European Economic Area, the United Kingdom, or Switzerland, you may have the following rights, subject to applicable law:
Access
Know what personal data we process about you.
Rectification
Correct inaccurate personal data.
Erasure
Request deletion of personal data.
Restriction
Restrict processing in certain cases.
Portability
Receive your data in a common format.
Objection
Object to legitimate-interest processing.
Withdrawal
Withdraw consent at any time.
Complaint
Lodge a complaint with a data protection authority.
You also have the right not to be subject to a decision based solely on automated processing that produces legal or similarly significant effects.
To exercise your rights, contact us at . We may need to verify your identity before processing your request.
33
U.S. State Privacy Rights
In brief
Depending on your state, you may have rights to know, access, correct, delete, opt-out of sale/share, limit use of sensitive information, appeal, and not be discriminated against.
Depending on your U.S. state of residence and subject to applicable law, you may have rights such as:
the right to know whether we process personal information about you;
the right to access personal information;
the right to receive a portable copy of certain personal information;
the right to correct inaccurate personal information;
the right to delete personal information;
the right to opt out of the sale of personal information;
the right to opt out of sharing personal information for cross-context behavioral advertising;
the right to opt out of targeted advertising;
the right to opt out of certain profiling;
the right to limit certain uses of sensitive personal information;
the right to appeal a denied privacy request; and
the right not to be discriminated against for exercising privacy rights.
We do not sell personal information, share personal information for cross-context behavioral advertising, or use personal information for targeted advertising.
We will honor applicable privacy rights where required by law. We may also honor certain requests voluntarily, even where not legally required, when reasonable and feasible.
To exercise your rights, contact us at or by phone at +1 561 246 3351.
34
California Privacy Notice
In brief
Supplemental disclosures for California residents under CCPA/CPRA — including categories collected, sources, purposes, disclosures, and your rights.
This section supplements the rest of this Privacy Notice for California residents.
Categories Collected
In the past 12 months, we may have collected the categories of personal information listed in Section 5 above.
Sources
We may collect personal information from:
you;
your device or browser;
your account activity;
support and contact forms;
Shopify;
Shopify Payments;
Shop Pay;
Kit;
Google Analytics, if analytics consent was provided where consent is required;
payment processors;
app stores;
service providers;
resellers or business partners;
public sources; and
security or fraud-prevention providers.
Purposes
We use personal information for the purposes described in this Privacy Notice, including website operation, account management, order processing, license management, support, newsletter delivery, consent-based website analytics, security, fraud prevention, business communication, legal compliance, and recordkeeping.
Disclosure for Business Purposes
In the past 12 months, we may have disclosed personal information for business purposes to:
service providers;
contractors;
Shopify, Shopify Payments, and Shop Pay;
payment processors;
app stores;
Kit;
Google Analytics, if analytics consent was provided where consent is required;
hosting and infrastructure providers;
security providers;
support providers;
professional advisors; and
public authorities where required by law.
Sale or Sharing
We do not sell personal information. We do not share personal information for cross-context behavioral advertising. We do not use personal information for targeted advertising.
We do not maintain a "Do Not Sell or Share My Personal Information" link because we do not engage in those activities.
Sensitive Personal Information
We may process limited sensitive personal information, such as account login credentials or payment-related information processed by payment providers. We use such information only for permitted purposes, such as account access, security, payment processing, fraud prevention, and legal compliance.
We do not use sensitive personal information to infer characteristics about you.
California Rights
California residents may have the right to:
know what personal information we collect, use, disclose, sell, or share;
access personal information;
delete personal information;
correct inaccurate personal information;
opt out of sale or sharing;
limit certain uses of sensitive personal information;
use an authorized agent; and
not be discriminated against for exercising privacy rights.
To exercise these rights, contact us at or by phone at +1 561 246 3351.
We may need to verify your identity before processing certain requests. If you use an authorized agent, we may require proof of authorization and may also require you to verify your identity directly with us.
35
California "Shine the Light"
California residents may request information about certain disclosures of personal information to third parties for their direct marketing purposes.
We do not disclose personal information to third parties for their own direct marketing purposes without your consent.
Requests may be sent to .
36
Nevada Privacy Rights
Nevada residents may have the right to opt out of certain sales of covered information.
We do not currently sell covered information as defined by Nevada privacy law.
Nevada privacy requests may be sent to .
37
Appeals
If you submit a privacy request and we deny it, residents of certain jurisdictions may have the right to appeal.
To appeal a decision, email us at and write "Privacy Appeal" in the subject line. Please explain why you believe the decision should be reviewed.
We will respond to appeals as required by applicable law.
38
Verification of Privacy Requests
To protect your information, we may verify your identity before fulfilling certain privacy requests.
Verification may include matching information you provide with information we maintain, requesting confirmation through your account or email address, or requesting additional information if necessary.
We will use verification information only to verify and process your request.
39
Non-Discrimination
We will not discriminate against you for exercising privacy rights.
However, some information may be necessary to provide certain products, services, accounts, licenses, support, or transactions. If you ask us to delete or restrict information that is necessary to provide a service, we may not be able to continue providing that service.
40
Financial Incentives
We do not offer financial incentives or price or service differences in exchange for personal information.
If we offer a program in the future that qualifies as a financial incentive under applicable privacy law, we will provide the required notice and obtain any required consent.
Part X · Signals & Automation
41
Global Privacy Control and Opt-Out Preference Signals
Because we do not sell personal information, share personal information for cross-context behavioral advertising, or use personal information for targeted advertising, Global Privacy Control signals do not change our sale, sharing, or targeted advertising practices.
We do not use Global Privacy Control signals as a replacement for analytics consent settings. Analytics consent can be managed through our .
If we implement activities that require recognition of opt-out preference signals under applicable law, we will honor legally recognized opt-out preference signals where required.
For our Shopify shop, privacy choices may also be managed through Shopify-supported privacy controls where available.
42
Do Not Track
Some browsers offer "Do Not Track" signals. There is no uniform industry standard for responding to these signals.
We do not currently respond to browser "Do Not Track" signals. We handle Global Privacy Control and other opt-out preference signals as described in this Privacy Notice.
43
Automated Decision-Making and Profiling
In brief
No. We do not use personal information for automated decisions with legal or similarly significant effects, and we do not profile for advertising.
We do not use personal information for automated decisions that produce legal or similarly significant effects.
We do not use personal information collected on our main website for advertising profiling.
Security and fraud-prevention systems may identify suspicious patterns to protect our users, our services, and our infrastructure.
Part XI · Legal Matters & Contact
44
Legal Requests and Compliance
We may disclose personal information if we believe disclosure is necessary to:
comply with law;
respond to lawful requests;
cooperate with law enforcement or regulators;
enforce our terms;
protect our rights;
protect user safety;
investigate fraud or abuse;
prevent security incidents;
resolve disputes; or
protect against legal liability.
45
Business Transfers
If Protectstar Inc. is involved in a merger, acquisition, financing, restructuring, bankruptcy, sale of assets, or similar transaction, personal information may be transferred or disclosed as part of that transaction.
We will handle such information in accordance with this Privacy Notice and applicable law.
46
Changes to This Privacy Notice
We may update this Privacy Notice from time to time.
When we make changes, we will revise the "Last Updated" date above. If changes are material, we may provide additional notice where required by law.
Your continued use of our websites or services after an updated Privacy Notice becomes effective means that the updated notice applies to your use of the services.
47
Contact Us
For questions, privacy requests, support requests, or legal inquiries, contact us at:
Protectstar Inc. 4281 Express Lane, Suite L3604 Sarasota, FL 34249, USA Privacy email: General email: Phone: +1 561 246 3351 Web: www.protectstar.com