My UGC Shop

Privacy Policy

Operated by Open Claw Assistance LLC · Last updated September 17, 2026

1. Scope

This policy covers myugcshop.com, the My UGC Shop app, and the storefronts we host for merchants. It explains what we collect, why, who we share it with, and the choices you have. The data controller is Open Claw Assistance LLC (support@openclawassistance.com).

2. What we collect

Platform users (merchants and creators):

  • Account data: name and email, handled through our sign-in provider. If you sign in with Google, we receive your name, email, and avatar from Google; we never see your password.
  • Billing data: subscription status and invoices via Stripe. Card numbers are entered on Stripe's pages and never touch our servers.
  • Workspace content: your shops, products, scripts, videos, calendars, and settings.
  • Connected keys: API credentials you add (for example retail ordering or AI media credentials) are stored encrypted and used only to act on your instructions.
  • Connected creator accounts, when the integration is available and you authorize it: creator profile, granted permissions, showcase products, regional affiliate marketplace information, and creator-attributed affiliate orders, commissions, saved links, and sample-application statuses.
  • Usage and diagnostics: logs, feature usage counts, and error reports.

Storefront shoppers (a merchant's customers):

  • Order data: name, email, shipping address, and phone collected at checkout, processed so the merchant can fulfill the order.
  • Newsletter signups: the email you submit on a storefront, stored in that merchant's contact book.
  • Payment data goes directly to Stripe; we receive order confirmation and status, not card numbers.

3. How we use information

  • To provide the Service: generate shops and content, render storefronts, process orders, schedule posts.
  • To operate AI features: prompts derived from your workspace content are sent to our AI providers to generate your content; we do not sell this data or use it to train our own models.
  • To bill subscriptions, prevent abuse, debug problems, and provide support.
  • To send service emails (receipts, security notices, product updates you can opt out of).

4. Who we share it with

We share data only with the processors that run the Service: our hosting and content delivery provider, our managed database provider, our authentication provider, Stripe (payments), our AI model providers (text, image, and video generation), our social publishing infrastructure provider, our retail data and order placement provider (where you connect it), and our error monitoring service. Each receives only what its function requires. We do not sell personal information. We may disclose information if required by law or to protect the Service and its users. A current list of subprocessors is available to subscribers on request.

Storefront order data is shared with the merchant who operates the shop you bought from; their handling of it is governed by their own policies.

Connected creator accounts and AI features

TikTok Affiliate remains unavailable pending platform approval and final validation. Once available, its features will depend on your account's eligibility and the permissions you grant. Creator authorization is separate from permission to publish videos or attach shopping tags.

If you request personalized product recommendations, selected product information and limited context, such as names of products in your showcase or earning history, are sent to our text-generation processor. The recommendation prompt does not include your creator access tokens or individual affiliate order records. If you choose to create content, the selected product facts, images, and prompts are also processed by the media-generation services used for that feature.

Media used for generation and resulting content may be stored at shareable URLs that anyone holding the URL can access. A hidden product in your workspace is not a private-access guarantee for its media files. Only submit material you are entitled to use, and review generated claims and content before publishing. Processor details are available in the signed-in Help page or from support before using the feature.

Processing locations and retention depend on the services involved; we do not represent that all processing occurs only in the United States. Our statement that we do not train our own models is not a blanket statement about every external provider's data policies.

Disconnecting removes our stored creator credentials and the linked affiliate-history, recommendation, and saved-link records. It stops further synchronization. Separately imported workspace products, generated content, and operational audit records are not automatically deleted by disconnecting. Request deletion of those items through Settings or support. An account-deletion request also stops further creator access; removal of remaining content, applicable backup copies, and records subject to legal retention is handled through the verified deletion process, not by claiming that every copy disappears instantly.

Marketplace information and privacy

Where Marketplace participation is available, we collect private creator or business profile information, legal and display names, adult and U.S. eligibility confirmations, social and portfolio links you provide, campaign applications, submitted content links, and qualification evidence. We also keep accepted agreement versions, referral and verified purchase or refund records, commission calculations, payment reports, moderated questions, disputes, and operational audit records.

We use this information to operate campaigns, review qualifications, attribute eligible purchases, explain payment obligations, investigate discrepancies, and prevent abuse. Marketplace businesses cannot browse the creator population or access creators' private social profiles, portfolios, or submission lists. Authorized staff review that evidence. A business responsible for a qualified payment can access the necessary legal payee identity, applicable accepted agreement, and its own payment obligation and settlement records. Public social or video links remain subject to the visibility of the service where they were posted.

Businesses pay creators directly outside Marketplace. Do not enter bank credentials, Social Security numbers, government-ID images, or payment routing instructions in profile, question, dispute, or evidence text fields. Required payee and tax details must be exchanged through the business's approved secure process, not ordinary Marketplace messages.

Following an eligible Marketplace link may set a signed referral cookie for up to 30 days. The click record does not include a visitor name, email, IP address, or fingerprint. If you subsequently create an eligible account, the referral may be linked to that account and its qualifying subscription payments, including renewals under the accepted campaign terms. We do not create new Marketplace referral tracking when your browser sends Do Not Track or Global Privacy Control, or you use our tracking opt-out. Without that tracking, a purchase may not be credited to a creator. Removing a cookie does not erase an already established agreement or payment record.

For supported external-checkout campaigns, an opaque referral reference is passed to the business's verified checkout and payment provider to associate an eligible purchase with the promotion. The reference does not contain the creator's name, social profile, payment destination, or your authentication cookie. The business and payment provider handle checkout information under their own privacy notices.

Closing a Marketplace profile removes optional social and portfolio evidence and stops new participation. Agreement, payment, dispute, and audit records needed to establish or settle obligations, prevent fraud, or meet legal requirements may remain. Existing claims are not canceled by account closure. You can export available records in Marketplace and contact support@openclawassistance.com for a verified access, correction, or deletion request, including after account closure.

5. Cookies

We use cookies for authentication and preferences. First-party referral and signup-source cookies can remember a referral or campaign for up to 30 days so we can credit referrals and understand where account signups originate. We do not run third-party advertising trackers on the platform.

When you follow a storefront campaign link, a signed first-party cookie can remember that shop and post for seven days so the merchant can compare promotion with resulting orders. It contains no name or email, is used only for that shop, and is neither set nor used when your browser sends Do Not Track or Global Privacy Control. You can remove it using your browser controls. Ordinary storefront visit counts remain cookieless.

Public guides also use first-party counters for article loads, engaged reading, and main-action clicks. These counters do not set additional cookies or attach your name, email, account identifier, or IP address to the event record. Request limiting is handled separately. Guide counters are skipped when your browser sends Do Not Track or Global Privacy Control. Our internal content report combines these counts with existing signup-source records in aggregate; it does not track you across other websites.

6. Retention and security

We keep workspace data while your account is active and for a reasonable period afterward for recovery, then delete or anonymize it. Connected API keys are encrypted at rest and deleted when you remove them. All traffic is served over HTTPS. No system is perfectly secure; report concerns to support@openclawassistance.com.

7. Your choices and rights

  • Access, correct, export, or delete your account data: email support@openclawassistance.com and we will act on verified requests within 30 days.
  • Disconnect a social account or remove an API key at any time from Connections.
  • Shoppers can ask the merchant, or us, to remove their contact details from a shop's contact book.
  • Depending on where you live (for example the EU/EEA, UK, or California) you may have additional statutory rights; we honor verified requests under those laws.

8. Children

The Service is for adults 18 and over. We do not knowingly collect data from children. If you believe a child has provided us data, contact us and we will delete it.

9. Changes and contact

We will update this policy as the Service evolves and change the date above; material changes will be announced in the app or by email. Contact: support@openclawassistance.com, Open Claw Assistance LLC, 30 N Gould St, Sheridan, WY 82801, USA.