Privacy Policy

Last Updated: April 1, 2026

MycoStudio ("we," "us," or "our") respects your privacy and is committed to protecting the personal information you share with us. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and online store (the "Service").

Please read this Privacy Policy carefully. By using the Service, you consent to the practices described in this policy.

1. INFORMATION WE COLLECT

1.1 INFORMATION YOU PROVIDE

When you interact with the Service, we may collect information that you voluntarily provide, including:

a) ACCOUNT INFORMATION: Name, email address, and password when you create an account.

b) PURCHASE INFORMATION: Name, email address, billing address, and payment details when you make a purchase. Payment card information is processed directly by our payment processors (Shopify Payments, Stripe) and is NOT stored on our servers.

c) COMMUNICATION DATA: Any information you provide when contacting us via email, contact forms, or social media, including your name, email address, and the content of your message.

d) NEWSLETTER SUBSCRIPTION: Email address if you opt in to receive our newsletter or marketing communications.

1.2 INFORMATION COLLECTED AUTOMATICALLY

When you visit the Service, certain information may be collected automatically:

a) DEVICE INFORMATION: IP address, browser type, operating system, device type, and screen resolution.

b) USAGE DATA: Pages visited, time spent on pages, links clicked, referring URLs, and browsing patterns on the Service.

c) COOKIES AND SIMILAR TECHNOLOGIES: We use cookies, pixels, and similar tracking technologies to collect usage data and improve the Service. See Section 5 for more details.

1.3 INFORMATION FROM THIRD PARTIES

We may receive information about you from third-party services, including:

a) Payment processors (confirmation of successful transactions). b) Analytics providers (aggregated usage statistics). c) Social media platforms (if you interact with us through those platforms).

2. HOW WE USE YOUR INFORMATION

We use the information we collect for the following purposes:

a) ORDER FULFILLMENT: To process and deliver your purchases, send order confirmations, and provide download access to digital products.

b) CUSTOMER SUPPORT: To respond to your inquiries, troubleshoot issues, and provide assistance with your purchases.

c) ACCOUNT MANAGEMENT: To create and manage your account, authenticate your identity, and maintain your purchase history.

d) MARKETING (WITH CONSENT): To send you newsletters, product updates, promotional offers, and other marketing communications, but only if you have opted in to receive them. You may opt out at any time.

e) SERVICE IMPROVEMENT: To analyze usage patterns, improve our website and products, and develop new offerings.

f) SECURITY AND FRAUD PREVENTION: To detect, prevent, and address fraudulent transactions, unauthorized access, and other security issues.

g) LEGAL COMPLIANCE: To comply with applicable laws, regulations, legal processes, or governmental requests.

3. HOW WE SHARE YOUR INFORMATION

We do not sell, rent, or trade your personal information to third parties. We may share your information only in the following circumstances:

3.1 SERVICE PROVIDERS

We share information with trusted third-party service providers who assist us in operating the Service, including:

a) SHOPIFY: Our e-commerce platform that hosts our store and processes orders. Shopify's privacy policy is available at shopify.com/legal/privacy.

b) PAYMENT PROCESSORS: Stripe and Shopify Payments process your payment information securely. We do not have access to your full credit card number. Stripe's privacy policy is available at stripe.com/privacy.

c) EMAIL SERVICE PROVIDERS: We use third-party email services to send transactional emails (order confirmations, download links) and marketing emails (if you have opted in).

d) ANALYTICS PROVIDERS: We use analytics tools (such as Google Analytics) to understand how visitors use the Service. These tools collect data in aggregate form.

3.2 LEGAL REQUIREMENTS

We may disclose your information if required to do so by law, court order, or governmental regulation, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

3.3 BUSINESS TRANSFERS

In the event of a merger, acquisition, or sale of all or a portion of our assets, your information may be transferred as part of that transaction. We will notify you of any such change.

4. DATA SECURITY

We implement reasonable administrative, technical, and physical security measures to protect your personal information from unauthorized access, alteration, disclosure, or destruction.

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee its absolute security.

Security measures we employ include:

a) SSL/TLS encryption for all data transmitted between your browser and our servers. b) PCI-DSS compliant payment processing through our payment providers. c) Access controls limiting employee access to personal data. d) Regular security reviews of our systems and practices.

5. COOKIES AND TRACKING TECHNOLOGIES

5.1 WHAT ARE COOKIES

Cookies are small text files placed on your device when you visit a website. They help us recognize your browser, remember your preferences, and understand how you use the Service.

5.2 TYPES OF COOKIES WE USE

a) ESSENTIAL COOKIES: Required for the Service to function properly. These include cookies for shopping cart functionality, authentication, and security. These cannot be disabled.

b) ANALYTICS COOKIES: Help us understand how visitors interact with the Service by collecting information in aggregate form. This helps us improve our website and user experience.

c) MARKETING COOKIES: Used to track visitors across websites to display relevant advertisements. These are only used if you consent to them.

5.3 MANAGING COOKIES

You can control cookies through your browser settings. Most browsers allow you to refuse cookies, delete existing cookies, or be notified before a cookie is set. Note that disabling certain cookies may affect the functionality of the Service.

For more information about managing cookies, visit allaboutcookies.org.

6. DATA RETENTION

We retain your personal information only for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.

Specific retention periods:

a) ACCOUNT DATA: Retained for as long as your account is active, plus a reasonable period afterward to fulfill legal obligations.

b) PURCHASE RECORDS: Retained for the period required by applicable tax and accounting laws (typically 7 years).

c) MARKETING DATA: Retained until you unsubscribe or request deletion.

d) ANALYTICS DATA: Aggregated analytics data may be retained indefinitely as it does not identify individual users.

e) SUPPORT COMMUNICATIONS: Retained for up to 3 years after the last interaction.

When data is no longer needed, we securely delete or anonymize it.

7. YOUR RIGHTS

Depending on your location, you may have certain rights regarding your personal information. These may include:

a) ACCESS: The right to request a copy of the personal information we hold about you.

b) CORRECTION: The right to request correction of inaccurate or incomplete personal information.

c) DELETION: The right to request deletion of your personal information, subject to certain exceptions (such as legal retention requirements).

d) DATA PORTABILITY: The right to receive your personal information in a structured, commonly used, and machine-readable format.

e) OPT-OUT OF MARKETING: The right to opt out of receiving marketing communications at any time by clicking "unsubscribe" in any marketing email or contacting us directly.

f) WITHDRAW CONSENT: Where processing is based on consent, the right to withdraw consent at any time without affecting the lawfulness of processing carried out before withdrawal.

To exercise any of these rights, please contact us at support@mycosounds.com. We will respond to your request within 30 days (or sooner if required by applicable law).

8. CALIFORNIA PRIVACY RIGHTS (CCPA/CPRA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):

a) RIGHT TO KNOW: You have the right to request that we disclose what categories and specific pieces of personal information we have collected, used, disclosed, and sold about you in the past 12 months.

b) RIGHT TO DELETE: You have the right to request deletion of your personal information, subject to certain exceptions.

c) RIGHT TO OPT OUT OF SALE: We do NOT sell your personal information. If this practice changes in the future, we will provide a "Do Not Sell My Personal Information" link on the Service.

d) RIGHT TO NON-DISCRIMINATION: We will not discriminate against you for exercising your privacy rights. You will not receive different pricing, quality of service, or access for exercising your rights.

e) RIGHT TO CORRECT: You have the right to request correction of inaccurate personal information.

f) RIGHT TO LIMIT USE OF SENSITIVE INFORMATION: You have the right to limit the use and disclosure of sensitive personal information.

To exercise your California privacy rights, contact us at support@mycosounds.com or submit a request through our website. We may need to verify your identity before processing your request.

You may designate an authorized agent to submit a request on your behalf. The agent must provide proof of authorization.

9. EUROPEAN PRIVACY RIGHTS (GDPR)

If you are located in the European Economic Area (EEA), United Kingdom (UK), or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR) and applicable local laws:

9.1 LEGAL BASIS FOR PROCESSING

We process your personal data on the following legal bases:

a) CONTRACT: Processing necessary to fulfill our contract with you (e.g., processing your order and delivering products).

b) CONSENT: Processing based on your specific consent (e.g., sending marketing emails). You may withdraw consent at any time.

c) LEGITIMATE INTEREST: Processing necessary for our legitimate business interests (e.g., fraud prevention, service improvement), balanced against your rights and interests.

d) LEGAL OBLIGATION: Processing necessary to comply with legal requirements.

9.2 YOUR GDPR RIGHTS

In addition to the rights listed in Section 7, you have the right to:

a) RESTRICT PROCESSING: Request that we limit how we use your data in certain circumstances.

b) OBJECT TO PROCESSING: Object to processing based on legitimate interests or for direct marketing purposes.

c) LODGE A COMPLAINT: File a complaint with your local data protection authority if you believe your rights have been violated.

9.3 INTERNATIONAL DATA TRANSFERS

Your information may be transferred to and processed in the United States, where our servers and service providers are located. We ensure appropriate safeguards are in place for international transfers, including standard contractual clauses approved by the European Commission.

10. CHILDREN'S PRIVACY

The Service is not directed to children under the age of 16. We do not knowingly collect personal information from children under 16. If we discover that we have collected personal information from a child under 16, we will delete that information promptly.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@mycosounds.com.

11. DO NOT TRACK SIGNALS

Some browsers offer a "Do Not Track" (DNT) feature that signals websites not to track your browsing activity. There is currently no uniform standard for how companies should respond to DNT signals. We currently do not respond to DNT signals, but we will update this policy if a standard is established.

12. THIRD-PARTY LINKS

The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of those third parties. We encourage you to review the privacy policies of any third-party sites you visit.

13. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. We will post the updated policy on this page with a revised "Last Updated" date.

If we make material changes, we will notify you by email (if you have provided your email address) or by placing a prominent notice on the Service.

Your continued use of the Service after any changes constitutes acceptance of the revised Privacy Policy.

14. CONTACT US

If you have any questions about this Privacy Policy, wish to exercise your privacy rights, or have concerns about how your information is handled, please contact us:

Email: support@mycosounds.com Website: mycosounds.com Data Requests: support@mycosounds.com (subject line: "Privacy Request")

For GDPR-related inquiries, please include "GDPR Request" in the subject line. For CCPA-related inquiries, please include "CCPA Request" in the subject line.

We will respond to all privacy-related requests within 30 days.