Privacy Policy

Last updated 24 April 2025

1. Who we are

m1ndlfow.com is operated by M1NDFLOW LLC (“we,” “us,” “our”).
Contact email: privacy@m1ndlfow.com.

2. Scope

This Policy applies to personal data collected through m1ndlfow.com and any related services or apps we control.

3. What data we collect

We do not intend to collect “special-category” data unless you voluntarily provide it (e.g., in a support request). We ask you not to include such data in free-text fields.
► For children under 13, see § 11 below.

► For the list see bellow

4. How and why we use data

PurposeLegal basis (GDPR Art. 6)Typical retentionProvide & secure the siteContract or legitimate interest12 months log rotationRespond to enquiriesLegitimate interest2 years after ticket closedSend newsletters (opt-in)Consent; users may withdrawuntil you unsubscribeProcess payments & deliver goods / servicesContract7 years (tax)Improve UX & analyticsConsent (non-essential cookies)per cookie tableShow personalised ads (optional)Consent / CCPA “share” opt-outper ad-platform policy

Under the GDPR you must state a lawful basis, and “consent” must be freely given, specific, informed and revocable GDPR.eu.

5. Cookies & similar technologies

We use cookies to (a) make the site work, (b) measure audience size
Non-essential cookies are blocked

6. Analytics and advertising

  • Google Analytics 4 (IP-anonymised)

7. Sharing & international transfers

We never sell personal data. We share it only with:

  1. Service providers (hosting, email, payment, analytics) under written contracts.
  2. Law-enforcement or regulators if legally required.

Where data leaves the EEA/UK we rely on:

  • An EU adequacy decision, or
  • Standard Contractual Clauses plus supplementary safeguards, per CNIL and EU GDPR guidance CNIL.

8. Data retention

We keep personal data no longer than necessary for the purposes listed in § 4, deleting or anonymising afterwards GDPR.eu.

9. Security

We apply industry-standard technical and organisational measures, including HTTPS, encryption at rest, least-privilege access and routine vulnerability scanning, consistent with CNIL’s 2024 security guide CNIL.

10. Your rights (GDPR Arts. 15-22)

You may:

  • Access a copy of your data;
  • Correct inaccuracies;
  • Delete data (“right to be forgotten”);
  • Restrict or object to processing;
  • Port your data to another service;
  • Withdraw consent at any time.

Exercise these rights via privacy@m1ndlfow.com. We will respond within one month CNIL.

11. Children’s privacy

Our site is not directed to children under 13. We do not knowingly collect their data. If you believe we have done so, contact us and we will delete it promptly, as required by COPPA Federal Trade Commission.

12. California & U.S. State-specific disclosures

California residents have the rights to know, delete, correct and opt-out of “sale/share” of personal information.

They may exercise these rights via the “Your Privacy Choices” link in the footer. See § 1798.100-1798.135 CCPA/CPRA

We do not share data for cross-context behavioural advertising unless you opt-in.

13. Updates

We may modify this Policy to reflect legal or business changes. Material changes will be announced on-site and, where appropriate, via email. The “Last updated” date will change accordingly.

14. Contact

Questions or complaints? Email privacy@m1ndlfow.com.

Table 1 – Personal-data categories collected on m1ndlfow.com
Category Examples Source
Identity Data name, username, social-media handle contact forms, account sign-up
Contact Data email, postal address, phone checkout, newsletter
Technical Data IP, device type, browser, language, OS cookies, log files
Usage Data page views, clicks, session duration analytics scripts
Marketing Prefs opt-in / opt-out choices consent banner, emails
Payment Data* card token, billing address Stripe / PayPal / etc.
Table 2 – How and why we use personal data
Purpose Legal basis (GDPR Art. 6) Typical retention
Provide & secure the site Contract or legitimate interest 12 months log rotation
Respond to enquiries Legitimate interest 2 years after ticket closed
Send newsletters (opt-in) Consent; users may withdraw until you unsubscribe
Process payments & deliver goods / services Contract 7 years (tax)
Improve UX & analytics Consent (non-essential cookies) per cookie table
Show personalised ads (optional) Consent / CCPA “share” opt-out per ad-platform policy