1. Information We Collect
1.1 Information You Provide
- Account Information: Name, email address, password, company name, job title, and role designation
- Profile Information: LinkedIn profile data (when you connect your LinkedIn account)
- Content: Marketing materials, images, videos, PDFs, and other content you upload to our platform
- Communications: Messages, feedback, and support requests you send to us
1.2 Information Collected Automatically
- Usage Data: Pages visited, features used, content viewed and shared, time spent on platform
- Device Information: IP address, browser type, operating system, device identifiers
- Analytics Data: Content performance metrics, engagement statistics, sharing patterns
- Cookies and Tracking Technologies: Session data, preferences, and authentication tokens
1.3 Information from Third Parties
- LinkedIn: When you authorize LinkedIn integration, we receive your LinkedIn profile information, connection data, and posting permissions through OAuth
- Google: When you use Google Single Sign-On (SSO), we receive basic profile information from your Google account
2. How We Use Your Information
We use collected information to:
- Provide, maintain, and improve our Services
- Create and manage user accounts with role-based permissions
- Enable LinkedIn posting and content sharing functionality
- Generate analytics, leaderboards, and performance insights
- Send weekly content recommendations
- Process invitations and onboard new team members
- Provide customer support and respond to inquiries
- Send administrative messages, updates, and security alerts
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations and enforce our Terms of Service
3. How We Share Your Information
3.1 Within Your Organization
- Content, usage data, and performance metrics are visible to users within your organization based on role permissions
- Admins have access to team analytics and user activity data
- Leaderboards display user engagement metrics to team members
3.2 Third-Party Service Providers
We share information with trusted service providers who assist us in operating our platform:
- Firebase (Google): Authentication, database, and hosting services
- LinkedIn: Social media integration and OAuth authentication
- Analytics Providers: Usage analytics and performance monitoring
- Cloud Storage: Secure content storage and delivery
3.3 Legal Requirements
We may disclose information when required by law, subpoena, court order, or to:
- Comply with legal processes
- Protect our rights, property, or safety
- Investigate fraud or security issues
- Enforce our Terms of Service
3.4 Business Transfers
If Shimmer is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
4. Data Security
We implement industry-standard security measures to protect your information:
- Encryption of data in transit and at rest
- Secure OAuth token management with automatic refresh
- Role-based access controls and permission management
- Regular security audits and monitoring
- Secure Firebase Authentication infrastructure
However, no method of transmission or storage is 100% secure. We cannot guarantee absolute security of your information.
5. Your Rights and Choices
Depending on your location, you may have the following rights:
5.1 Access and Portability
- Request access to your personal information
- Request a copy of your data in a portable format
5.2 Correction and Deletion
- Update or correct inaccurate information
- Request deletion of your personal information (subject to legal retention requirements)
5.3 Opt-Out Rights
- Disconnect LinkedIn integration at any time
- Opt out of non-essential communications
- Disable cookies through browser settings (may affect functionality)
5.4 California Residents (CCPA)
California residents have additional rights including the right to know what personal information is collected, to delete personal information, and to opt-out of the sale of personal information. We do not sell personal information.
5.5 European Residents (GDPR)
EU/EEA residents have rights including access, rectification, erasure, restriction of processing, data portability, and objection to processing.
To exercise these rights, contact us at [support@tryshimmer.com].
6. Data Retention
We retain your information for as long as:
- Your account remains active
- Necessary to provide Services
- Required to comply with legal obligations
- Needed to resolve disputes and enforce agreements
Content you delete may remain in backups for up to 90 days before permanent deletion.
7. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for international transfers, including:
- Standard Contractual Clauses approved by the European Commission
- Compliance with applicable data protection frameworks
8. Third-Party Links and Services
Our Services may contain links to third-party websites or integrate with third-party services (such as LinkedIn). We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.
9. Children's Privacy
Our Services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If we discover we have collected information from a child, we will delete it promptly.
10. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Authenticate users and maintain sessions
- Remember preferences and settings
- Analyze usage patterns and improve Services
- Provide personalized content recommendations
You can control cookies through your browser settings, but disabling cookies may limit functionality.
Types of Cookies We Use:
- Essential Cookies: Required for authentication and core functionality
- Analytics Cookies: Help us understand how users interact with our Services
- Preference Cookies: Remember your settings and choices
11. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of material changes by:
- Posting the updated policy on our website with a new "Last Updated" date
- Sending email notification to registered users
- Displaying a prominent notice within the Services
Your continued use of our Services after changes constitutes acceptance of the updated policy.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Shimmer
Email: [support@tryshimmer.com]
Address: 41 W Highway 14 #1090, Spearfish, South Dakota, 57783
For GDPR-related inquiries, contact our Data Protection Officer at [support@tryshimmer.com].