At CardsMyLegend (“we”, “our”, or “us”), operated by MyLegend Inc. (“Data Controller”), we respect your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit or make a purchase from CardsMyLegend.com (the “Site”).
This policy applies to information collected through our Shopify-powered store and related services.
By accessing or using our Site, you acknowledge that you have read, understood and agree to this Privacy Policy.
1. Information We Collect
a) Automatic Information (Website Usage)
When you visit our Site, we may automatically collect certain information, including:
• IP address
• Browser type and device information
• Pages visited, referring URLs, and interactions
• Cookies, pixels, tags, and similar tracking technologies
Purpose:
To operate and optimize our Shopify store, analyze performance, improve user experience, and support marketing and advertising efforts.
b) Order Information
When you place or attempt to place an order, we collect:
• Name
• Billing and shipping address
• Email address
• Phone number
• Payment information (processed securely via Shopify Payments, PayPal, Stripe, or other providers)
Purpose:
To process transactions, fulfill orders, provide confirmations, detect fraud, and comply with legal obligations.
c) Customer Support
When you contact us, we may collect:
• Name and contact details
• Order information
• Messages, attachments, and communications
Purpose:
To provide support, resolve issues, and improve our services.
d) Shopify & Third-Party Apps
Our store is hosted on Shopify Inc., which provides the e-commerce platform we use. Shopify and integrated apps may collect and process personal data on our behalf, including:
• Order and transaction data
• Device and browsing information
• Analytics and usage data
These third parties process your information in accordance with their own privacy policies.
2. How We Use Your Information
We use your information to:
• Process and fulfill orders
• Communicate with you about orders, support, or inquiries
• Provide and improve our products and services
• Personalize your experience
• Prevent fraud and unauthorized activity
• Comply with legal obligations
• Send marketing communications (only with your consent where required)
3. Sharing Your Information
We may share your personal information with trusted third parties, including:
• Shopify Inc. (store platform and infrastructure)
• Payment processors (Shopify Payments, PayPal, Stripe)
• Shipping and logistics providers
• Marketing, analytics, and advertising partners (e.g., Google, Meta)
• Customer support and IT service providers
These parties only receive the information necessary to perform their functions.
We may also disclose your information:
• To comply with legal obligations
• To enforce our terms and protect our rights
• In connection with a business transfer (e.g., merger or acquisition)
We do not sell your personal information. However, certain data sharing for advertising purposes may be considered “sharing” under applicable laws.
4. Cookies & Tracking Technologies
We use cookies and similar technologies to:
• Enable essential site functionality
• Remember user preferences
• Analyze traffic and usage
• Deliver personalized advertising
Types of cookies we use:
• Essential cookies
• Analytics cookies
• Marketing/advertising cookies
Where required by law, we obtain your consent before using non-essential cookies.
You can manage cookie preferences through your browser settings or via our cookie banner.
5. Advertising & Analytics
We use third-party services such as:
• Google Analytics
• Meta (Facebook/Instagram) Ads
• Other advertising platforms
These services may use cookies, pixels, and similar technologies to collect information about your activity across websites.
You can opt out of targeted advertising:
• https://adssettings.google.com
• https://www.facebook.com/adpreferences
• http://optout.aboutads.info
6. Legal Basis (GDPR – EEA Users)
If you are located in the European Economic Area (EEA), we process your personal data based on:
• Your consent
• Performance of a contract
• Legal obligations
• Legitimate business interests (e.g., fraud prevention, analytics)
7. Data Retention
We retain personal information only as long as necessary to:
• Fulfill orders and provide services
• Comply with legal, tax, and accounting obligations (typically up to 6 years)
• Resolve disputes and enforce agreements
8. Your Rights
Depending on your location, you may have the right to:
• Access your personal data
• Correct inaccurate information
• Request deletion of your data
• Restrict or object to processing
• Withdraw consent
• Request data portability
To exercise your rights, contact: orders@cardsmylegend.com
9. California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have the right to:
• Know what personal information we collect and how we use it
• Request access to specific personal information we hold about you
• Request deletion of your personal information
• Opt out of the “sale” or “sharing” of personal information
• Not be discriminated against for exercising your rights
To exercise these rights, contact us at: orders@cardsmylegend.com
We do not sell personal information. However, we may share certain data with advertising partners, which may be considered “sharing” under California law. You may opt out of such sharing at any time by contacting us at orders@cardsmylegend.com.
We will not discriminate against you for exercising any of your privacy rights.
10. Data Transfers
Your information may be transferred to and processed in countries outside your jurisdiction, including the United States and Canada.
Where required, we use appropriate safeguards such as Standard Contractual Clauses.
11. Security
We implement appropriate technical and organizational safeguards, including encryption and secure Shopify infrastructure.
However, no method of transmission over the Internet is 100% secure.
In the event of a data breach, we will comply with applicable notification laws.
To the fullest extent permitted by law, we disclaim liability for any unauthorized access, loss, or misuse of personal data beyond our reasonable control.
12. Children’s Privacy
Our Site is not intended for individuals under the age of 13, and we do not knowingly collect personal data from children.
If we become aware that such data has been collected, we will delete it. If you believe a child has provided us with personal information, please contact us at orders@cardsmylegend.com.
13. Third-Party Payments
Payments are processed through third-party providers (e.g., Shopify Payments, PayPal, Stripe). These providers process your data according to their own privacy policies.
14. Do Not Track
Our Site does not currently respond to “Do Not Track” browser signals due to lack of a consistent industry standard.
15. Governing Law
This Privacy Policy shall be governed by and interpreted in accordance with the laws of Ontario, Canada, without regard to conflict of law principles.
16. Changes to This Policy
We may update this Privacy Policy periodically. Updates will be posted on this page with a revised date.
17. Contact Us
If you have questions or wish to exercise your rights:
Email: orders@cardsmylegend.com
Website: CardsMyLegend.com
Company: MyLegend Inc.
Ontario, Canada
Last updated: 2026-04-12