Privacy Policy
We collect user data. The Ti Project LLC (“Ti Project,” “we,” “us”) collects personal information when you visit tiproject.com, create an account, place an order, upload artwork, apply as an affiliate or seller, or contact us. This page explains what we collect, why, who processes it, how long we keep it, and how to ask us to delete it.
Last updated: August 15, 2026.
Contact
Questions, complaints, or privacy requests (access, correction, deletion / “forget me”): email info@TiProject.com or write The Ti Project LLC, 3939 Royal Dr NW, Ste 236, Kennesaw GA 30144, United States.
What we collect
We collect personal information in these categories:
- Account and contact data — name, email, phone, shipping and billing addresses, Shopify customer ID, affiliate or seller tags.
- Order and payment data — products, quantities, custom configuration, invoices, and payment tokens processed by Shopify and our payment processors. We do not store full card numbers on our servers.
- User uploads and design files — artwork, print files, cropped images, listing renders, and related metadata you submit through configurators, the seller artwork library, affiliate custom products, or mobile upload sessions.
- Device and usage data — browser type, IP address, approximate location derived from IP, cookies, pages viewed, and similar analytics signals.
- Support and messaging data — emails to info@TiProject.com, contact-form messages, chat transcripts, and social DMs you send us.
- Seller / partner data — Etsy shop identifiers and OAuth tokens (when you connect a shop), promo codes, W-9 status (we ask for a W-9 before payout; tax forms are handled as records, not marketing lists), and commission notes.
How we use AI and automated systems
We use AI and large-language-model (LLM) systems in parts of our stack. Those systems may process personal information or user-provided content for:
- Customer support drafting and triage;
- Internal CRM agents (lead handling, order notes, security or marketing swarms);
- Personalization helpers (for example, parsing Etsy personalization text — currently a local heuristic, with LLM libraries present for fallback or future use);
- Engineering and operations tooling (including Cursor) when staff work on tickets that contain customer data.
AI providers that may process data on our behalf include xAI (Grok) for internal agents, Cursor for internal engineering assistance, and, where enabled, Google Gemini or Anthropic Claude. We do not use customer data to train public foundation models as a product feature. We do not make fully automated decisions that have a legal or similarly significant effect on you. Shopify may use limited automated fraud checks (for example, short-lived IP or card blacklists).
Third-party processors
We share personal information with service providers who process it for us. Named categories and current processors:
- Commerce / hosting of the store — Shopify (storefront, checkout, customer accounts, selling plans / subscriptions). Shopify privacy.
- Application hosting — Railway (API gateway); Cloudflare (CDN, Pages for configurator widgets, R2 object storage for customer artwork uploads).
- Payments — Shopify Payments, as configured on an order.
- Email and notifications — Shopify transactional email; our own mailbox at info@TiProject.com.
- Analytics and advertising — Google Analytics; Shopify Audiences; Meta (Facebook/Instagram), Pinterest, and X where ads or pixels are active. See opt-out links below.
- Reviews — Judge.me (product review widgets and store ratings).
- Seller marketplaces — Etsy, when a seller connects their shop so we can pull orders or push tracking.
- AI providers — xAI, Cursor, and (if enabled) Google or Anthropic, as described above.
- Chat — Shopify Inbox on the storefront.
We may also disclose information to comply with law, respond to lawful requests, or protect our rights, customers, or the public.
User uploads, deletion, and retention
Print files and design assets live in a private Cloudflare R2 bucket. Objects are written without public-read ACLs. Fulfillment and previews use the API gateway or other authenticated paths — not a public bucket URL.
Hard delete vs soft delete. We do not soft-delete customer artwork as a product feature. When you or we delete an artwork from the seller library, or when a forget-subject request is executed, the object is hard-deleted from R2. Database rows that only pointed at the file are removed or anonymized.
Retention windows (operational; not a legal hold schedule):
- Contact-form messages — retained up to 365 days, then eligible for purge.
- Order records — kept for fulfillment, warranty/refinish, tax, and accounting. A forget-subject request anonymizes order personal fields (email, name, shipping address) rather than destroying production history.
- Artwork / uploads — kept while the account or related open orders need them; hard-deleted on seller delete or executed forget-subject. Production snapshots tied to shipped orders may be retained for reprint/warranty until those obligations end, then deleted per the forget-subject runbook.
- Etsy OAuth tokens — deleted when the customer record is deleted (cascade) or the shop is disconnected.
To request deletion of your uploads and personal data, email info@TiProject.com with the subject “Privacy — forget me” and the email or Shopify account you used and we will perform the deleting procedure. We will say if a legal retention duty blocks a specific record from deletion.
Your rights (DSAR)
Depending on where you live (including EEA/UK GDPR and California CCPA/CPRA), you may have the right to access, correct, port, or delete personal information, and to opt out of certain sharing for advertising. Email info@TiProject.com. We will not require you to create a new account solely to exercise these rights. Authorized agents may contact us at the same address.
Forget-subject execution anonymizes orders, deletes contact messages, deletes customer/seller rows (which revokes stored Etsy tokens), and hard-deletes known R2 artwork keys. Shopify Admin, Etsy, and off-platform spreadsheets are completed from the same runbook so this policy and the DSAR process do not contradict each other.
Cookies and advertising
We use functional, analytics, and advertising cookies. You can accept all or decline non-essential cookies in our banner. Blocking cookies may limit parts of the site.
- Google Analytics opt-out: https://tools.google.com/dlpage/gaoptout
- Facebook ads: https://www.facebook.com/settings/?tab=ads
- Google ads: https://www.google.com/settings/ads/anonymous
- Industry opt-out: https://optout.aboutads.info/
We do not change collection practices based on browser “Do Not Track” signals because there is no consistent industry standard for them.
Subscriptions
If you subscribe to a paid seller plan, it auto-renews monthly at the price shown at checkout until you cancel. Cancel from the same dashboard Subscription tab (Manage or cancel) using the Shopify customer account you used to subscribe — the path is not longer than signup. Shopify sends a receipt for each charge; treat that as the pre-renewal notice unless we add a separate in-app reminder.
Children
Our store and seller tools are directed at adults and businesses. We do not knowingly collect personal information from children under 13 (or under 16 in the EEA where that is the standard).
Changes
We may update this policy to reflect operational, legal, or product changes. The “Last updated” date at the top will change when we do. Material changes that affect how we use personal information will be posted on this page.
Complaints
Email or write us using the contact details above. You may also lodge a complaint with your local data protection authority.