Logimu API — Privacy Policy
Last updated 23 July 2026
This Privacy Policy explains how CP Development d.o.o. ("Logimu", "we", "us"), the provider of the Logimu developer console at api.logimu.com and the Logimu API (the "Services"), collects and uses information about you when you create an account and use the Services. It applies to the self-service API and Console. It does not describe the product data the Services return, which is observed, publicly available marketplace data about products, not personal data about you.
1. Information we collect
- Account information: the email address you register with and a securely hashed form of your password. We never store your password in plain text.
- API keys: we store only a hashed form of your API key, plus a short non-secret prefix so you can recognise it.
- Usage data: API calls, endpoints and marketplaces used, credits consumed and remaining, timestamps, and the IP address of requests. We use this to meter and operate the Services, enforce rate limits, prevent abuse, and for security and audit.
- Query inputs: the search terms, ASINs, or identifiers you send to the API in order to return a result. These are logged for metering, abuse-prevention, and debugging.
- Payment information: when you buy credits, payment is processed by PayPal (or another provider shown in the Console). We do not receive or store your card details. We receive confirmation of the transaction and the amount so we can credit your account.
2. How we use your information
- to provide, meter, and operate the Services and authenticate your account;
- to send transactional and account emails (for example, a welcome email with your API key, and notifications about your account or credits);
- to prevent, detect, and investigate abuse, fraud, and security incidents, and to enforce our Terms;
- to maintain and improve the Services and comply with legal and accounting obligations.
We do not sell your personal information, and we do not share it with third parties except as described below or as required by law. We do not use your query inputs or usage data to build advertising profiles.
3. Third-party services
We rely on a small number of providers to run the Services: PayPal for payment processing; our own or EU-based email infrastructure to deliver account emails; and hosting and infrastructure providers on which the Services run. These providers process information only as needed to perform their function. The marketplace product data returned by the Services is obtained from publicly available sources and does not contain your personal data.
4. Data retention
We retain account information for as long as your account is active. Usage and audit logs are retained for up to twenty-four (24) months for security, billing, and compliance. If you delete your account, we delete or anonymise your account and associated personal data within ninety (90) days, except where we must retain certain records (for example, invoices and payment records) to meet legal or accounting obligations.
5. Your rights
Depending on where you live, you may have the right to access, correct, port, or delete your personal data, to object to or restrict certain processing, and to withdraw consent. To exercise these rights, contact support@logimu.com. We respond within thirty (30) days. You also have the right to lodge a complaint with a supervisory authority.
European Economic Area / UK (GDPR): our legal bases for processing are the performance of our contract with you (to provide the Services), our legitimate interests (to secure, operate, and improve the Services and prevent abuse), your consent (where asked), and compliance with legal obligations. Where data is transferred outside the EEA, we rely on appropriate safeguards such as the European Commission's standard contractual clauses.
California residents (CCPA/CPRA): we do not sell or share personal information as those terms are defined. You may request access to or deletion of your personal information and will not be discriminated against for exercising these rights.
6. Security
We protect your information with encryption in transit (HTTPS), hashed passwords and hashed API keys, access controls, and rate limiting. No method of transmission or storage is completely secure, but we take reasonable measures appropriate to the sensitivity of the data.
7. Cookies
The Console uses a single session cookie for authentication (HttpOnly, Secure). We do not use third-party advertising or tracking cookies in the Console. Our public marketing website may use privacy-respecting analytics; see the notice on that site.
8. Data breach notification
If we become aware of a data breach that affects your personal data and is likely to result in a risk to your rights, we will notify you and any competent supervisory authority as required by applicable law and without undue delay.
9. Changes to this policy
We may update this policy from time to time. For material changes we will notify account holders by email at least thirty (30) days in advance. Continued use of the Services after the notice period constitutes acceptance of the updated policy.
10. Contact
Questions or requests about this policy or your data can be sent to CP Development d.o.o. at support@logimu.com. See also our Terms of Service.