Privacy Policy

Effective 16 August 2026

This Privacy Policy explains how PluginizeLab (“PluginizeLab”, “we”, “us”, or “our”) collects, uses, and shares personal information when you visit pluginizelab.com (the “Site”) or install and use any of our WordPress plugins (each, a “Plugin”). PluginizeLab is an independent software studio founded and run by Md. Aminur Islam.

Two things are worth stating up front, because they shape everything below. The Site has no accounts and no checkout; it does run Google Analytics, and it has a contact form, both described below. The Plugins run entirely on your own server and send us nothing at all.

1. Information We Collect

Information you provide to us. The Site has no account system and no shopping cart, so the only information you can give us is what you type into a form. Our contact form asks for your name, email address, subject, optionally how you found us and which plugin you are asking about, and your message. The newsletter form asks for your email address. Nothing else on the Site collects input from you.

Information collected automatically. The Site is a static website hosted on Cloudflare Pages. As with any web host, our host processes standard request data - IP address, browser and device type, requested URL, referring URL, and timestamp - in server logs, in order to deliver pages and protect against abuse. We do not use log data for marketing, do not build visitor profiles, and have no mechanism for recognising a returning visitor.

2. Cookies, Analytics, and Advertising

Analytics. The Site uses Google Analytics 4 to understand which pages people find useful. Its script is loaded from Google on every page, and it sets cookies in your browser (named _ga and _ga_*) that give your browser a random identifier so repeat visits can be counted as one visitor. Through it, Google processes your IP address, approximate location derived from it, browser and device type, the pages you view, how you arrived, and how long you stay. We see only aggregate reports; we do not upload any other data to Google, do not use Google Signals or advertising features, and do not use analytics data to try to identify you. Google’s handling of that data is governed by its own privacy policy. You can opt out for every site with Google’s browser add-on, or block the script with any content blocker - the Site works exactly the same either way.

Anti-spam. Our contact form uses Cloudflare Turnstile to tell people from bots. It loads a script from Cloudflare and checks your browser in the background, without asking you to solve a puzzle; Cloudflare processes your IP address and browser characteristics to score the request. It runs only on the contact page.

Advertising. There is none. We run no advertising trackers, no remarketing pixels, and no Meta, LinkedIn, or TikTok pixels of any kind. We sell nothing, so there is nothing to retarget you with.

Fonts are self-hosted on our own domain, so loading a page does not report your visit to a font vendor.

Two local, non-tracking behaviours are worth naming. Your light/dark/system appearance choice is saved in your browser’s local storage under theme; it never leaves your browser and does not identify you. Documentation search runs entirely in your browser against a pre-built index, so your queries are never sent to a server and are never logged.

3. Account and License Data

There is none. Our plugins have no user accounts, no licence keys, no activation server, and there is no login on this Site. Nothing about your installation is registered with us.

4. Payments

We take no payments. Every PluginizeLab plugin is free and open source, distributed through WordPress.org, with no paid tier, subscription, or upsell. We operate no payment processor and hold no billing information whatsoever.

5. Plugin Data

Your site’s data. Everything our plugins touch - posts, users, settings, and, in the case of StoreSuite, products, orders, customers, coupons and analytics - is read from and written to your own WordPress database, on your own hosting. It is processed locally within your site. We never receive it and have no technical means of accessing it.

Telemetry and usage data. Our plugins collect no telemetry. There is no usage reporting SDK, no version check, no install tracking, and no phone-home of any kind.

AI generation (StoreSuite only). This is the one place data leaves your server, so please read it carefully. StoreSuite’s AI features are built on the WordPress core AI Client and Connectors API, and you bring your own provider and your own API keys. When you use a generate action, the input involved - your hint, product title, selected categories, an existing description, or an image prompt - is sent from your server directly to the AI provider you configured in WordPress, authenticated with your credentials.

Consequently, that data is handled under your provider’s privacy policy and retention terms, not ours; review them before enabling AI on real customer or product data. Your API keys are stored by WordPress on your server, and StoreSuite transmits them only to the provider you selected. No AI request is routed through us, and we see none of it. If no provider is configured, no request is made and the AI controls hide themselves. Generated images are held server-side in a short-lived transient for preview, and are written to your media library only when you choose to insert them.

Access control. Our plugins gate their screens on standard WordPress capabilities - StoreSuite’s dashboard, for example, requires manage_woocommerce, normally held by administrators and shop managers. Deciding who holds those capabilities on your site is your responsibility as the site operator.

6. Communications

Contact form. What you submit is delivered by email to us and stored on our own installation, which we operate. We use it to answer you and for nothing else: we do not add you to a mailing list from it, and we do not sell, rent, or share it. Ask us at the address in section 14 and we will delete the message.

Newsletter. If you subscribe to release updates, we use your email address only to send those updates. We do not sell, rent, or share it. Every message includes an unsubscribe link, and unsubscribing removes the address.

7. Support Access and Logs

Support happens in public, on each plugin’s own WordPress.org support forum. We do not request, and will never ask for, your site credentials. If you voluntarily share screenshots, logs, or error output in a support thread, remove customer data and API keys first - those threads are publicly visible.

8. Sharing Your Information

We do not sell personal data. The third parties involved are our host, Cloudflare, which processes server logs as described in section 1 and runs the Turnstile check on our contact form; Google, which processes analytics data as described in section 2; and legal authorities, where we are legally required to respond. Contact form submissions go to our own installation and are not shared onward. Your AI provider is not on this list, because we never send anything to them - your server does, under your own account.

9. International Data Transfers

Our host operates globally, so the limited data described above may be processed in the United States or elsewhere, under that provider’s own safeguards.

10. Your Rights

Depending on where you live, you may have rights under the GDPR, UK GDPR, or CCPA/CPRA to access, correct, delete, or object to the processing of your personal data. Because we hold almost nothing, most such requests resolve quickly. Contact us at the address below to exercise them.

For data inside your own site, you are the data controller and we are not a processor, because that data never reaches us. Requests from your users or customers are handled through WordPress’s (and, where relevant, WooCommerce’s) built-in privacy tools, exactly as they would be without our plugins installed.

11. Data Retention

Server logs are retained by our host for a short period under their standard policy. Google Analytics data is retained for the period configured on the property, after which Google deletes the user-level records. Contact form submissions are kept as long as the conversation is useful and deleted on request. We retain nothing else, because we collect nothing else.

12. Minors

Our plugins are developer and business tools, and are not intended for individuals under the age of 18. We do not knowingly collect their information.

13. Changes to This Policy

We may update this policy from time to time. Material changes are reflected in the effective date at the top of this page.

14. Contact Us

For questions about this policy, please contact us at hello@pluginizelab.com. For questions about a plugin itself, that plugin’s WordPress.org support forum is usually the better place - the answer there helps everyone.