Privacy policy
How Divi Cake handles your data, in plain language. Short version: we collect the minimum we need to run the service, we never sell it, and you can ask us to delete it at any time.
Who we are
Divi Cake sells Divi plugins, publishes Divi tutorials, and takes on Divi development and SEO work. The site is run by Karobar Solutions LLC, Wyoming, USA.
This page explains what we collect when you read the blog, buy a plugin or hire us, and how we look after it.
What we collect
We collect the minimum we need to run the service. Reading the blog needs nothing at all.
- Purchase details — your name, email and billing address when you buy a licence.
- Payment information — handled by Stripe on its own secure page. We never see or store your full card number.
- Licence activity — which plugin version a site is running, so update checks work.
- Enquiries — whatever you send us through the contact form or by email.
- Child Theme Generator entries — the details you type into the generator and the email address we send the theme to.
- Comments — the name, email and comment you submit under a post. Your email is never published.
- Usage basics — standard technical data such as which pages are visited, used in aggregate to see what is worth writing more of.
What we do with it
Three things, and nothing beyond them without asking you first.
- Deliver what you bought, and keep updates flowing to your sites.
- Answer you when you get in touch about a plugin or a project.
- Understand, in aggregate, which pages and plugins are useful.
We do not sell your data, and we do not share it with anyone who is not helping us run the service.
Marketing email
We keep our mailing list in FluentCRM, on our own WordPress site. Generating a child theme adds you to it, as the generator form says. Buying a licence sends you emails about that purchase and the product's updates.
Every marketing email carries a one-click unsubscribe, and unsubscribing never affects your licence, your updates or your support.
Cookies
One cookie keeps you signed in: storefront_session, set when you log in to your account. Your cart is kept in your own browser's storage, not in a cookie, and never leaves your device until you check out.
Google Analytics and PostHog set their own cookies to count visits, as described under Analytics. Cloudflare Turnstile, the spam check on our forms, may set a cookie to remember that you passed it.
Analytics
We use Google Analytics and PostHog to see which pages people read and how they move through the site, in aggregate. We do not use them to advertise to you.
Google Analytics is run by Google, which may use the data it collects under its own policies, including across other sites that use it. PostHog measures our site only.
Who else sees your data
Only the services we need to operate, and only the part of your data they need to do their job.
- Stripe — takes payments and holds card details.
- Our WordPress site at app.divicake.com, hosted by Cloudways — runs checkout (FluentCart), your account, the Child Theme Generator and our mailing list (FluentCRM).
- SendGrid — delivers email from our WordPress site: receipts, licence keys and the child theme.
- Cloudflare — serves this site and its downloads, stores contact-form messages and submitted comments, emails contact messages to our inbox, and runs Turnstile, the spam check on our forms.
- Basecamp — where we read new comments before they are published.
- Google Analytics and PostHog — measure site usage in aggregate.
- YouTube — plays the client review videos. Nothing loads from YouTube until you press play, and the player then comes from YouTube's privacy-enhanced domain (youtube-nocookie.com).
How long we keep it
Purchase and tax records for as long as the law requires. Support conversations for as long as they are useful for supporting you. Analytics in aggregate, where it is no longer tied to you.
Your rights
You can ask us what we hold about you, ask us to correct it, or ask us to delete it. Email us and we will action it — there is no form to fill in.
Deleting your data may end an active licence, because the licence is tied to the record. We will tell you if that applies before doing anything.
If you are in the EU or UK, you also have the right to complain to your data protection authority.
Security
The site runs over HTTPS and card details never touch our servers. No system is perfectly secure, so if something does go wrong that affects you, we will tell you rather than hope you do not notice.
Changes to this policy
We will update this page as the products and the tools behind them change. The date at the top always reflects the current version.
Questions about this page? Email our team and we will answer plainly.