Welcome to MCDFL ("we", "our", or "us") — a B2B Print-on-Demand and dropshipping fulfillment provider. This policy explains how we handle data for Merchants and their End-Customers. We act as a Data Processor for your End-Customers' data; you remain the Data Controller.
When you register or integrate your store (Shopify, Etsy, WooCommerce) with us, we collect:
To manufacture and ship products to your buyers, you provide us with:
We do not sell, rent, or trade your data or your End-Customers' data. We only share necessary data with trusted partners:
As a POD seller, you retain all intellectual property rights to artwork and designs you upload. We claim no ownership over your custom designs. Your design files are stored in encrypted cloud buckets and accessed only at the time of printing.
If you or your End-Customers are in the EEA or California, you have the right to access, correct, or delete personal data. As the Data Controller for your buyers, you are responsible for handling their privacy requests. Forward End-Customer deletion requests to us and we will purge their shipping details, retaining only anonymized records required for accounting and tax purposes.
We implement industry-standard SSL/TLS encryption for data in transit and at rest. End-Customer shipping data is retained for a maximum of 6 months after delivery to handle logistics disputes or reprints, after which it is anonymized.
For privacy-related inquiries, data deletion requests, or questions regarding our Data Processing Addendum (DPA), please contact our legal team at [email protected].