Last Updated: [01/07/2025]
ThemePlugin.xyz ("we," "us," or "our") operates a digital marketplace connecting buyers and creators of WordPress themes, plugins, and digital assets. This Privacy Policy explains how we collect, use, share, and protect your information when you use our marketplace, purchase/sell products, or interact with our services. By accessing ThemePlugin.xyz, you agree to these terms.
Account details (name, email, username)
Billing address, payment information (via Stripe/PayPal)
Purchase history, downloads, license keys
IP address, device data, browser type
Business/personal identification details
Tax information (VAT/EIN), payment account details
Product sales data, earnings reports
Identity verification documents (for payouts)
Usage data via cookies (pages visited, search queries)
Analytics from Google, Hotjar, or similar tools
Transaction timestamps and support interactions
We share information with:
Creators: Buyers’ email and purchase details for product delivery/support
Payment Processors: Stripe, PayPal (for transaction processing)
Tax Authorities: Creator tax IDs for compliance (e.g., 1099 forms)
Service Providers: Cloud hosting (AWS), analytics tools, support software
Legal Compliance: When required by law or court order
Note: Creators are independent data controllers for buyer data shared with them. They must comply with privacy laws.
We use:
Essential Cookies: Login sessions, shopping cart
Analytics Cookies: Google Analytics, Meta Pixel
Advertising Cookies: Retargeting ads (opt-out via Ad Settings)
Manage preferences via our Cookie Consent Tool.
Data may be transferred globally under GDPR safeguards (e.g., Standard Contractual Clauses). EU users may contact our EU representative: eu-rep@themeplugin.xyz.
You may:
Access, correct, or delete personal data
Export your data (GDPR/CCPA portability)
Opt out of marketing emails
Restrict processing or object to automated decisions
Withdraw consent (where applicable)
Submit requests: privacy-request@themeplugin.xyz
Buyer data: 3 years post-last transaction (tax compliance)
Creator data: 5 years (financial/tax records)
Inactive accounts: Deleted after 1 years
SSL encryption for all data transfers
Regular security audits and vulnerability scans
PCI-DSS compliance for payment processing
Two-factor authentication (2FA) for creator accounts
Services are not directed to users under 16. We delete underage accounts upon verification.
Updates will be posted here with a new "Last Updated" date. Material changes will be notified via email.
Data Protection Officer:
Email: dpo@themeplugin.xyz
Mail: [Your Physical Address]
EU/UK Representative:
[Name/Address] | eu-rep@themeplugin.xyz
For Buyers: Buyer Terms
For Creators: Creator Agreement
Refunds: Refund Policy
CCPA/GDPR: "Do Not Sell My Data" link in footer
Cookie Banner: Granular consent options
Creator Requirements: Mandatory privacy policies for all sellers
Payout Transparency: Detailed earnings/tax reports for creators