Legal
Privacy Policy
1. Who we are
Tasmin (“Tasmin”, “we”, “us”, “our”) provides an AI-powered marketing platform for online shops. Tasmin drafts and schedules marketing content — email, social posts, blog articles and search/listing copy — in the merchant’s brand voice, which the merchant reviews and approves before anything is published.
Tasmin is operated by Tasmin Teoranta, a company registered in Ireland under number 821803, with its registered office at 55 Parnell Street, Waterford, X91 X278, Ireland. You can contact us at any time at hello@tasmin.ai, or our privacy contact at privacy@tasmin.ai.
1A. Our two roles: controller and processor
Tasmin handles two different kinds of personal data, and our role under the GDPR differs for each. This distinction matters, so we state it plainly:
- Your account data — we are the controller. For the personal data of the merchant and their team (your account and login identity, contact email, billing and plan details, brand-voice settings, and how you use the app), Tasmin decides why and how it is processed. This Privacy Policy governs that data.
- Your customers’ data — we are the processor. When Tasmin handles the personal data of your shoppers — for example, the email addresses, names and order information used to run your email marketing — we act on your documented instructions, as your processor. You are the controller of that data; you decide what is collected and why. Our handling of it is governed by our Data Processing Agreement (which meets Article 28 GDPR), not only by this Policy.
In short: this Policy is the main document for your own account data; the Data Processing Agreement is the main document for your customers’ data that we process on your behalf.
2. The data we collect
We collect only what we need to run the service:
- Account data — you sign in to Tasmin through Shopify (OAuth); Tasmin does not create or store a separate Tasmin password. We hold your store domain, contact email and billing/plan details. Card payments are handled through Shopify’s billing; we do not store full card numbers.
- Store & connected-platform data — when you connect your Shopify store and marketing accounts, we access the data needed to do the work you ask for: products, collections, orders and customer contact details (for email), and data from your connected Pinterest, Instagram/Facebook and Google accounts.
- Your customers’ contact & marketing data — where you use Tasmin’s email features, we process your subscribers’ email addresses and names, their marketing-consent status, and engagement signals (such as opens, clicks, bounces and unsubscribes) so we can send and manage email on your behalf. We process this as your processor (see Section 1A).
- Content & settings — your brand-voice answers, the drafts Tasmin generates, your approvals/edits, schedules and preferences.
- Usage & technical data — log data, device/browser information, and basic, aggregated analytics about how the app is used, to keep it secure and improve it.
2A. What Tasmin does not collect
Two things are worth stating plainly, because marketing tools of this kind commonly do them and Tasmin does not:
- No storefront tracking of your shoppers. Tasmin does not run a tracking pixel or any other script on your storefront, does not record which products or pages your shoppers browse, and sets no cookie or browser storage on your storefront. There is no setting that turns this on. What Tasmin knows about your customers comes from your Shopify data (orders, contact details, marketing consent) and from how they engage with the emails you send.
- No cross-site or advertising tracking, and no sale of data. Tasmin does not build advertising profiles, does not track people across other websites, and does not sell personal data to anyone.
2B. If you joined our waiting list
You do not need a Tasmin account to appear in this policy. If you gave us your email address through the sign-up form on this website to hear about Tasmin, that list is our own data and we are the controller of it — it is not connected to any merchant’s store, and it is handled separately from everything else described here.
- What we hold: your email address, and the basic context of the sign-up — the page you signed up from, the country your request came from, your browser’s user-agent string, and the date. Nothing else. We do not ask for a name, and there is no profile behind it.
- What we use it for: telling you about Tasmin — that it has opened, what it does, and how to start. Nothing else. We do not sell it, share it for anyone else’s marketing, or use it to build advertising profiles.
- Our legal basis: your consent, given when you asked to be added. You can withdraw it at any time, and every email we send you carries a one-click unsubscribe. Withdrawing does not affect anything we sent before.
- How long we keep it: 365 days from sign-up, after which it is deleted automatically. If you have not heard something from us worth acting on within a year, holding your address any longer serves us and not you.
- Deleting it sooner: email privacy@tasmin.ai and ask, and we will erase your address — that is your right under Article 17. It is removed from both places we hold it: the store behind the sign-up form and our own copy. Unsubscribing stops the emails; asking us to erase removes the record.
3. How we use your data
- To provide the service: generate, schedule and (on your approval) publish content.
- To connect to the platforms you authorise and act on your behalf.
- To send transactional and (with consent where required) marketing communications.
- To provide support, secure the service, prevent abuse, and meet legal obligations.
- To improve and develop features, using aggregated or de-identified data where possible.
Legal bases (where GDPR applies) for the data we control: performance of our contract with you; your consent, where we ask for it (which you may withdraw); our legitimate interests in running, securing and improving the service; and compliance with legal obligations. Where Tasmin processes your customers’ personal data, we do so on your behalf and on your instructions — you are responsible for the lawful basis and the consent for that data (see the Data Processing Agreement).
4. AI processing
To draft content, relevant inputs (such as your brand-voice settings, product details and prompts) are sent to our AI provider, Anthropic (the Claude API), based in the United States. The service is built to send your store and content data — not your customers' contact details — for generation. Tasmin's account is on Anthropic's Commercial Terms, under which inputs and outputs are not used to train Anthropic's models. Before any prompt leaves Tasmin, an automatic filter removes end-customer contact details (email addresses, phone numbers and postal addresses) from it.
Tasmin drafts; you decide. Blog posts, social posts and emails are queued for your review — nothing in those channels is posted, published or emailed until you approve that specific item, and switching a channel off stops new drafts being written. There is one exception, and only if you buy and switch on the optional SEO Automation add-on: with that add-on enabled, Tasmin will write a search title or description (and a collection description) directly to your store where that field is currently empty, without asking first — filling a blank rather than changing anything you wrote. Anything that would overwrite existing text, and anything Tasmin's own fact-check flags, always goes to your review queue instead, where you approve or reject it and can undo it afterwards. You can turn the add-on off at any time, which stops it.
5. Connected platforms & integrations
When you connect a third-party account, you authorise Tasmin to access and act on it on your behalf, within the scopes you grant — and only for your own accounts. We request only the scopes needed for the features you enable. Your use of those platforms is also governed by their own terms and privacy policies. You can disconnect any integration at any time (see Section 10), which removes the stored access tokens and stops our future access.
Google (Search Console, Analytics, Merchant Center)
If you connect Google, Tasmin accesses the following Google data on your behalf, for your own store. Access is requested incrementally — only the scope for a feature you actually enable is requested:
- Google Search Console (read-only) — the search queries that bring people to your store, and their impressions, clicks, average position and the pages involved. Used to generate SEO and content recommendations and reporting for your store.
- Google Analytics (GA4) (read-only) — traffic and behaviour metrics such as visitor counts, traffic sources and engagement. Used to report on performance and inform suggestions.
- Google Merchant Center / Shopping (Content API) (read-only) — your product-listing data, so Tasmin can read it and report on which of your products are eligible, seen, clicked and competitively priced on Google Shopping. Used only when you enable that feature.
- Basic account email (read-only) — the email of the connected Google account, to identify and manage the connection.
Google API Services Limited Use. Tasmin’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, do not use it for advertising, do not use it to train generalised AI/ML models, and do not transfer it to others except as needed to provide or improve the features you use, with your consent, or as required by law. You can revoke Tasmin’s access at any time by disconnecting Google in Tasmin or from your Google Account permissions.
Meta — Instagram & Facebook
If you connect Meta, Tasmin accesses your connected Facebook Page(s) and Instagram Business account, for your own accounts only, to:
- Publish content on your behalf — posts and carousels to your Instagram Business account and posts to your Facebook Page, after you approve them.
- Read post and account insights — engagement and performance metrics for your posts and accounts, to report on and improve your content.
- Read basic account information — the Pages you manage and the linked Instagram Business account, so Tasmin knows where to publish.
We use Meta data solely to provide these features to you; we do not sell it
and do not use it for advertising. This corresponds to the permissions
pages_show_list, pages_read_engagement, pages_manage_posts,
instagram_basic, instagram_content_publish,
instagram_manage_insights and business_management. You can disconnect
Meta in Tasmin at any time, or remove Tasmin from your Facebook Business Integrations
settings.
Shopify
You sign in to Tasmin through Shopify. Tasmin reads your store data — products, collections, orders and customer contact details — and publishes content such as blog articles and updated listing copy back to your store. This corresponds to the Shopify access you grant when you install the app:
- Products, inventory and publishing —
read_products,write_products,read_inventory,write_inventory,read_publications,write_publications,write_files: to read your catalogue and to write listing copy, image alt text and product media. - Content and navigation —
read_content,write_content,read_online_store_navigation,write_online_store_navigation: to publish blog articles and pages and to manage URL redirects when a handle changes. - Customers and orders —
read_customers,write_customers,read_orders: to build and maintain your marketing list, keep marketing-consent status in step with Shopify, and measure what your marketing earned. - Discounts and shipping —
read_discounts,write_discounts,read_shipping: to create the discount codes you attach to a campaign, and to describe delivery accurately in generated copy. - Store policies and theme settings —
read_legal_policies,read_themes: read-only, to draw facts (such as your delivery and returns policies) and your brand colours into generated copy rather than inventing them. - Storefront events —
read_customer_events,write_pixels: requested in the install grant, but not in use. Tasmin does not run a storefront tracking pixel, does not observe what your shoppers browse, and provides no setting to switch that on. See Section 2A.
If you connect Pinterest, Tasmin accesses your Pinterest account through the Pinterest API to
do the things you ask for — creating pins and boards, and reading basic account and
performance information so we can schedule and report on your content. This corresponds to the
scopes boards:read, boards:write, pins:read,
pins:write and user_accounts:read. We use Pinterest data
solely to provide the service to you. We do not sell Pinterest data, and we
handle it in accordance with the Pinterest Developer Guidelines and the Pinterest Terms of
Service. You can revoke Tasmin’s access at any time from your Pinterest account settings or by
disconnecting Pinterest in Tasmin; on revocation we stop accessing your Pinterest data and
delete or de-identify it in line with Section 8, except where retention is legally required.
6. Sharing & sub-processors
We do not sell your personal data. We share it only with the service providers below, who process it on our behalf to run the service under contracts that require them to protect it and to act only on our instructions. Where they are located outside the EEA, transfers are covered by appropriate safeguards (see Section 7).
- Resend — our live email provider. Sends the marketing and transactional emails you create, and Tasmin’s own service emails; it receives the recipient’s email address, first name and the rendered message, and delivery/bounce events. US-incorporated; sending is configured to an EU region. See §7 on transfers.
- Anthropic (Claude API) — generates content from the inputs you provide (brand voice, product and store data); built to receive your store/content data, not your customers’ contact details (see §4). US-based.
- Railway — cloud hosting for the application, its database and its cache, where your account and store data — and the customer data we process on your behalf — are stored. Operator-stated EU region.
- Cloudflare — hosts and serves the Tasmin website, provides content-delivery and security, and stores images (product photos, social uploads, generated slides) in its R2 object storage. US/global edge network.
- Cloudinary — legacy image storage, retained only to allow deletion of older images; no new images are written to it. US-based.
- The platforms you connect — Shopify, Google, Meta and Pinterest — which receive only what is needed to perform the actions you authorise on your own accounts, under their own terms.
Operational tooling. Two further providers run on an ongoing basis. Slack (Slack Technologies, LLC, a Salesforce company) carries our operator alerts: it receives store identifiers, credit amounts and job or error diagnostics, and your customers’ email addresses are masked before an alert is sent. United States. Voyage AI (Voyage AI Innovations, Inc., a MongoDB company) provides help-search embeddings: it receives our own help-article text and the help or assistant queries you type. United States; Voyage publishes a data-processing agreement, and its training opt-out was exercised on 13 July 2026 — it does not train on or retain submitted content after processing.
Product analytics. We use PostHog (PostHog, Inc.) for product analytics. It has been enabled in production since 28 July 2026. PostHog receives store- and usage-level product events — installs, activation and connection milestones, subscription changes, and per-generation metadata (a feature label, the AI model name and token counts) — together with your store domain, store name, plan and account status. Events are keyed to your store, not to an individual person, and PostHog receives none of your customers’ contact details and none of the content you or Tasmin generate. It runs server-side only: there is no analytics script in the app or on this website, so no cookies are set for it and your browsing is not tracked. PostHog is EU-hosted (Frankfurt region); the provider is US-incorporated. See §7 on international transfers.
Keyword research. A keyword-research provider (DataForSEO) receives search keywords, locale and competitor domains only — not personal data. These providers are US-based unless stated; see §7 on international transfers.
Error monitoring. We use Sentry (Functional Software, Inc.) for application error monitoring. It has been enabled in production since 15 July 2026, for both backend and client-side errors. Sentry receives error diagnostics — stack traces and request/environment context — with a PII scrubber applied before transmission (email masking and named-PII redaction). It is configured for error monitoring only: no session replay and no performance tracing. Sentry is EU-hosted (Frankfurt region); the provider is US-incorporated. See §7 on international transfers.
We may also disclose data where required by law or to protect our rights and our users. We keep an up-to-date register of sub-processors; if it changes we will update this page and, for processing carried out on your behalf, give the notice required by our Data Processing Agreement. Questions about sub-processors: privacy@tasmin.ai.
7. International transfers
Several of our providers are based in, or transfer data to, the United States, outside the European Economic Area — including Resend (our live email provider, which carries recipient contact details), Anthropic, Cloudflare, Cloudinary (legacy image storage only), Sentry (US-incorporated, EU-hosted), PostHog (US-incorporated, EU-hosted), Slack and Voyage AI.
Each of these transfers runs on an approved safeguard. For the US providers we use, that safeguard is the EU-US Data Privacy Framework — we checked each provider's certification as active on the official Data Privacy Framework list, and we have an Article 28 data-processing agreement executed or accepted with each of them; several also carry the European Commission's Standard Contractual Clauses in that agreement as a fallback. Cloudinary — legacy image storage only, no new images are written to it — is additionally covered by the Commission's adequacy decision for Israel. Sentry and PostHog process in the EU (Frankfurt) and Resend's sending is configured to an EU region, so for those the primary picture is intra-EEA processing with the Framework covering corporate access by the US entity.
Certifications can lapse. We re-verify each provider on the official list periodically, and if one ceases to be certified we move that transfer onto Standard Contractual Clauses with any additional measures required, and correct this page. You can ask us for the current safeguard for a specific provider at privacy@tasmin.ai.
8. Data retention & deletion
We keep personal data only as long as needed to provide the service and for legitimate business or legal reasons. In practice:
- Connected-account tokens are retained while the connection is active and are removed immediately when you disconnect that integration or close your account.
- Unconfirmed email sign-ups (where someone started but never confirmed a double opt-in) expire and are swept after 7 days.
- Waiting-list sign-ups (our own prospect list — see Section 2B) are kept for 365 days from sign-up and are then deleted automatically, from both the store behind the sign-up form and our own copy. You can ask us to erase yours sooner at any time.
- A trial that ends without a subscription — if your free trial finishes and you do not choose a plan, the content, settings, brand voice and history you built during the trial are kept for 90 days after your trial ends and are then permanently deleted. Subscribe within that window and everything is still there. You can ask us to delete it sooner at any point — see Section 10 (your right to erasure). The same window is stated in our Trial, Credits, Refunds & Cancellation Policy.
- Store, content and account data is deleted or de-identified after you close
your account, and we honour Shopify’s data-deletion requests
(
customers/redact,shop/redact,customers/data_request). On a verified store-deletion request, your tenant data is fully purged after a short grace window (currently 48 hours, so an accidental uninstall-and-reinstall does not lose your data). - An individual customer redaction (Shopify
customers/redact) anonymises that person’s email and removes their name and identifiers, and deletes the related records we hold (such as abandoned-checkout and back-in-stock entries and inbound messages). - Stored images on our image host are deleted as part of a store-deletion purge, on a best-effort basis. We delete the images attributable to your account; in some cases a generated image may persist temporarily, and we work to remove any that remain.
Alongside those, an automatic clean-up runs on a schedule and deletes older records we no longer need. The main windows it applies are: email send records 180 days (rehearsal-mode records 14 days); email opens, clicks and other engagement events 90 days for the event log and 180 days for the per-recipient click log; abandoned checkouts 90 days; back-in-stock and price-drop requests 180 days if never triggered, 30 days after they are; order history used for segmentation 183 days; customer replies to your emails 365 days; and activity logs 90 days.
Subscriber records themselves are kept while you are a customer and while the subscriber remains on your list — they are removed when the subscriber is deleted, when an individual erasure request is honoured, or when your account is closed and purged. We may retain limited data where the law requires it (for example, for tax or accounting), and aggregated or de-identified data that no longer identifies you may be kept. We also keep an unsubscribe/suppression record, in anonymised form, after an erasure — so that someone who opted out is not emailed again.
9. Security
We use appropriate technical and organisational measures to protect personal data — including encryption in transit for external data transfers (TLS), with internal service-to-service traffic carried on an isolated private network; encryption of connected-account access tokens at rest (AES-256-GCM), access controls, tenant isolation, and reputable hosting providers. Because sign-in is via Shopify, Tasmin holds no merchant password. No method of transmission or storage is perfectly secure, but we work to protect your data and to respond promptly to any incident, including notifying you and the relevant authorities where the law requires.
10. Your rights, disconnecting & deletion
Disconnect any integration at any time. Each connected platform (Google, Meta, Pinterest) can be disconnected from within Tasmin, which removes the stored access tokens for that platform and stops any further access. You can also revoke access from the platform’s own settings.
Export your data. You can download a copy of your account data from within Tasmin at any time.
Request deletion of your data. To delete your data, disconnect your integrations and email privacy@tasmin.ai (or close your account in Shopify, which triggers Shopify’s deletion request to us). We will delete or de-identify your personal data as described in Section 8.
Depending on where you live, you may also have the right to access, correct, delete, or receive a copy of your personal data; to restrict or object to certain processing; and to withdraw consent. To exercise any of these, email privacy@tasmin.ai. If your request concerns personal data we process on a merchant’s behalf (for example, you are a shopper of a store that uses Tasmin), we will refer it to that merchant, who is the controller, and assist them in responding. If you are in the EEA or UK and have a concern, you also have the right to complain to your local data protection authority — in Ireland, the Data Protection Commission (dataprotection.ie).
11. Cookies
We keep cookies to a minimum. The Tasmin app uses only strictly necessary cookies — a session cookie to keep you signed in and a security (CSRF) cookie to protect requests. Where our website uses analytics, it is configured to be privacy-friendly and cookieless. We do not currently use advertising or cross-site tracking cookies, so no cookie-consent banner is shown. If that changes, we will ask for your consent to any non-essential cookies before setting them, as required by law.
12. Children
Tasmin is a business tool and is not directed to children. We do not knowingly collect personal data from anyone under 16.
13. Changes to this policy
We may update this policy from time to time. We will post the updated version here and change the “Last updated” date above; significant changes will be communicated where appropriate.
14. Contact
Questions about this policy or your data? Email our privacy contact at privacy@tasmin.ai (or hello@tasmin.ai), or write to Tasmin Teoranta, 55 Parnell Street, Waterford, X91 X278, Ireland. This policy is governed by the laws of Ireland.