1. Information We Collect

Directly Provided Data

  • Account Registration: Full name, email, password, phone number

  • Purchases: Billing/shipping addresses, payment details (processed via PCI-compliant gateways), tax IDs (if applicable)

  • User Content: Product reviews, survey responses, customer service chats

  • Gift Recipients: Only delivery information (never used for marketing)

Automatically Collected Data

  • Device Information: IP address, browser type, operating system

  • Usage Data: Pages visited, clickstream patterns, cart activity

  • Location Data: Country/region (derived from IP or shipping selections)

  • Cookies: Session, persistent, and third-party cookies (see Section 5

2. Legal Bases for Processing (GDPR Compliance)

We process your data based on:

  1. Contractual Necessity (order fulfillment)
  2. Legitimate Interest (fraud prevention, site optimization)
  3. Consent (marketing emails, non-essential cookies)
  4. Legal Obligation (tax compliance, fraud investigations)

3. How We Use Your Information

Purpose Data Used Legal Basis
Process orders Payment details, contact info Contractual
Fraud prevention IP, device info Legitimate Interest
Email marketing (if opted-in) Email, purchase history Consent
Site improvements Cookies, usage data Legitimate Interest

4. Data Sharing & Third Parties

We never sell your personal data. We only share it when necessary to operate our business or comply with the law:

  • Service Providers:
    We share limited data with trusted providers such as:
    – Payment processors (e.g., Stripe, PayPal, Shop Pay, American Express, VISA, Mastercard, Google Pay)
    – Shipping carriers (e.g., FedEx, USPS)
    – Analytics platforms (e.g., Google Analytics)

  • Legal Requirements:
    We may disclose information if required by law or law enforcement authorities.

  • Business Transfers:
    In the event of a merger, acquisition, or sale of assets, customer data may be transferred as part of that transaction.

5. Cookie Policy

Essential Cookies

  • Shopify session cookies (checkout functionality)
  • Currency/language preferences

Analytical Cookies

  • Google Analytics (anonymized IPs)

Marketing Cookies

  • Facebook Pixel (only with consent)

Manage Cookies:

  • Browser controls (Chrome, Firefox, Safari guides linked).

6. Data Retention

We only keep your personal data for as long as necessary to provide our services and meet legal requirements. Here's how we handle different types of data:

  • Order Information: We keep order records for 7 years to comply with tax and accounting laws.

  • Customer Accounts: Your account remains active unless you request its deletion.

  • Marketing Preferences: We retain your email preferences until you unsubscribe or opt out.

  • Backup Data: Our system backups are securely encrypted and automatically deleted after 90 days.

If you’d like to request deletion of your personal data, please contact us at: info@musysic.com

7. Your Rights

You have the right to control your personal data. Here's how you can exercise your rights:

  • Access & Portability: You can request a copy of your personal data in a portable format (CSV).

  • Correction: You can update your personal details anytime by logging into your account.

  • Erasure: You may request deletion of your data at any time ("right to be forgotten").

  • Restriction: You can ask us to limit data processing while any dispute or issue is being resolved.

  • Withdraw Consent: You can unsubscribe from marketing emails using the link at the bottom of any email we send.

For California Residents (CCPA):

  • You can opt out of the "sale" of personal data — although we do not sell any personal information.

  • You are protected from any discrimination for exercising your rights.

To exercise any of these rights, contact us at info@musysic.com or use the contact form on our website.

8. Children's Privacy

  • Age Limit: No services for users under 16

  • Parental Controls: Contact us to delete minor's data

9. Security Measures

We take data security seriously and have both technical and organizational safeguards in place:

  • Technical Measures: We use AES-256 encryption and conduct regular penetration testing to protect your data.
  • Organizational Measures: Our staff receives regular training, and we maintain strict access controls.
  • Incident Response: In the event of a data breach, we follow a 72-hour notification policy in line with legal requirements.

10. Third-Party Links:

Our website may include links to third-party platforms (e.g., YouTube, Meta). We are not responsible for their privacy practices.

11. Policy Updates

We may update this Privacy Policy from time to time. If we make any significant changes, we’ll notify you through a banner on our website. A record of past versions is available upon request.

12. Contact Information

Data Protection Officer: Musysic
Attn: Privacy Team
Email: info@musysic.com
Phone: 410-788-2323

Address: 1815 Whitehead Rd, Gwynn Oak, MD 21207

Last Updated Date : June 13, 2025