Privacy Policy
Effective date: May 27, 2025 · Last updated: May 27, 2025
1. Who We Are
Egret Studios LLC ("we," "us," or "our") is a Limited Liability Company organized under the laws of the State of New Mexico (Entity ID: 0008028271), located at 1209 Mountain Road PL NE, Ste N, Albuquerque, NM 87110, United States. We operate egretstudios.com (the "Site"), a digital marketplace for creative tools, scripts, assets, and other digital products for independent creators and digital artists.
This Privacy Policy describes the types of personal information we collect from visitors and registered users of the Site, how we use and protect that information, with whom we share it, and the choices you have regarding your personal data. By using the Site you consent to the practices described in this Policy.
2. Information We Collect
We collect information in the following ways:
a. Information you provide directly
- Account information: When you register, we collect your name, email address, and any profile information you choose to provide. Account authentication is handled by Clerk.
- Purchase information: When you complete a purchase, we record the products purchased, variant selected (if applicable), order amount, currency, and transaction status. Payment card details are handled entirely by Stripe and are never transmitted to or stored on our servers.
- Support messages: If you contact us through the Site's support form, we collect your name, email address, subject, and message content.
- Reviews: If you submit a product review, we collect your rating, review text, and the display name associated with your account.
b. Information collected automatically
- Server logs: Our hosting provider (Vercel) collects standard server access logs including your IP address, browser type, operating system, referring URL, pages visited, and the date and time of your requests. This data is used for security, performance monitoring, and troubleshooting.
- Preferences: Your theme preference (light or dark mode) is stored in your browser's local storage and is never transmitted to our servers.
3. How We Use Your Information
We use the personal information we collect for the following purposes:
- To create and manage your account and authenticate your identity.
- To process your purchases, generate order records, and provide access to your purchased downloads.
- To send transactional emails, including order confirmations and support replies, via Resend.
- To notify you of important changes to the Site, your account, or these policies.
- To moderate user-submitted content such as product reviews.
- To respond to your support requests and inquiries.
- To detect, prevent, and investigate fraud, security incidents, and abuse.
- To improve the performance, functionality, and content of the Site.
- To comply with our legal obligations.
We do not sell, rent, or trade your personal information to any third party for marketing, advertising, or any other commercial purpose.
4. Third-Party Service Providers
We engage the following third-party services to operate the Site. Each provider is contractually obligated to use your data only as necessary to perform services on our behalf and is subject to its own privacy policy:
- Clerk — Authentication and user session management. Clerk stores your email address and profile information on its infrastructure.
- Stripe — Payment processing. Stripe receives your payment card information and billing details directly and governs their use under Stripe's Privacy Policy.
- Cloudinary — Secure storage and delivery of product files and images. Cloudinary may store uploaded files on its global CDN infrastructure.
- Resend — Transactional email delivery. Resend processes your email address to send order confirmations and support replies on our behalf.
- Vercel — Hosting and serverless infrastructure. Vercel may collect standard server access log data.
- Neon — Managed PostgreSQL database. Neon stores your account and order records on its hosted database infrastructure.
5. Cookies and Tracking
The Site uses only the cookies and browser storage mechanisms that are strictly necessary for operation. Authentication sessions are managed by Clerk and rely on secure, HttpOnly session cookies. We do not use third-party advertising cookies, tracking pixels, analytics beacons, or behavioral profiling technologies. No data is shared with advertising networks.
6. Data Retention
We retain your personal data for as long as your account is active or as is reasonably necessary to provide you with the services you have purchased, to comply with our legal obligations, to resolve disputes, and to enforce our agreements. Order records are retained for a minimum of seven (7) years in compliance with standard accounting and tax record-keeping requirements. When your data is no longer required, we will delete or anonymize it in a secure manner.
7. Data Security
We implement reasonable and appropriate technical and organizational measures to protect your personal information against unauthorized access, loss, alteration, or disclosure. These measures include encrypted data transmission (HTTPS/TLS), server-side signed file access (no direct public file URLs), Stripe-managed payment processing (PCI-DSS compliant), and restricted database access controls. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
8. Your Rights and Choices
Depending on your jurisdiction, you may have the following rights with respect to your personal data:
- Access: Request a copy of the personal data we hold about you.
- Rectification: Request correction of inaccurate or incomplete data.
- Erasure: Request deletion of your personal data, subject to our legal retention obligations.
- Restriction: Request that we restrict the processing of your data in certain circumstances.
- Portability: Request your data in a structured, machine-readable format.
- Objection: Object to processing of your data under certain legal bases.
To exercise any of these rights, contact us at legal@egretstudios.com. We will respond to verified requests within 30 days.
9. Children's Privacy
The Site is not directed to children under the age of 13, and we do not knowingly collect personal information from children under 13. If you believe that a child under 13 has provided us with personal information without appropriate consent, please contact us immediately at legal@egretstudios.com and we will take steps to delete such information promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other operational factors. When we make material changes, we will update the "Last updated" date at the top of this page. Your continued use of the Site after changes are posted constitutes your acknowledgment and acceptance of the updated Policy. We encourage you to review this page periodically.
11. Contact
For questions, concerns, or requests regarding your personal data or this Privacy Policy:
Egret Studios LLC
1209 Mountain Road PL NE, Ste N
Albuquerque, NM 87110
United States
Email: legal@egretstudios.com