Privacy policy

Last updated: 5 October 2026

Feed Goat is a profit and cash-flow dashboard for online stores, built and run by T.vP Studios (Echt, the Netherlands; KvK 98736434). It connects to the services a store already uses — such as Shopify, Google Ads, payment providers, fulfilment partners and the bank — and turns their data into profit figures, advice and tasks. This page explains which data we read, why, who helps us process it, how long we keep it and what rights you have.

1. Who is responsible

For the data of our own stores, T.vP Studios is the controller. When another business uses the dashboard for its own stores, that business is the controller of its data and T.vP Studios acts as its processor: we only process that data to run the dashboard for them. Every account belongs to its own organisation, and organisations can never see each other's data — this is enforced in the database itself (row-level security), not only in the app.

2. Data we access

Your account

  • Email address and login data, used to sign you in (password or a one-time login link).
  • Settings you choose, such as targets, thresholds, salary rules and team members you invite.

Google Ads

  • Read-only performance data of the ad accounts you connect: campaigns, costs, clicks, conversions, countries, budgets and settings, and change history. It reaches us through a Google Ads script you install yourself or through the Google Ads API with your permission.
  • Keyword ideas and search volumes (Keyword Planner), when that feature is enabled.
  • We never create, change or delete anything in your Google Ads accounts.

Shopify

  • Read-only order, refund, product, collection and payout data of the stores you connect, including the reason staff write with a refund. We store order numbers, amounts, products, dates and the customer's country — not customer names, email addresses, phone numbers or street addresses.
  • We never write to your Shopify stores.

Payments, bank and suppliers

  • Balances, fees, payouts and disputes from payment providers you connect (such as Shopify Payments, Mollie and PayPal).
  • Account balances and transactions from your business bank account (such as Revolut Business), read-only.
  • Purchase costs per order from fulfilment partners or invoices you upload, and bookkeeping and cash-flow figures you send us.

Usage and technical data

  • Basic server logs (time, page, error messages) to keep the service running and secure. We do not use advertising or tracking cookies.
  • A few small browser settings (for example the store you last selected, or sound on/off) are kept in a cookie or local storage on your device.

3. How we use the data

  • To calculate revenue, costs, profit, margins, ROAS/POAS, refunds and cash flow per store, country, product and campaign.
  • To give advice and create tasks, for example which campaigns to scale or pause, which products to re-price, and where refunds come from.
  • To run the built-in AI assistant and daily analysis, which read your dashboard figures to answer your questions.
  • To monitor data quality and warn you when a connection stops working.

We do not sell your data, do not use it for advertising and do not use it for any purpose other than providing the dashboard to you. Only when you explicitly switch on “share learnings” do anonymous, aggregated lessons (never store names, figures that identify you, or customer data) help improve advice for other users.

4. Use of Google data

Our use of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements. Google data is used only to provide and improve the user-facing features of the dashboard, is not transferred to others except as needed to run those features (see the providers below), as required by law, or as part of a merger with notice to you, and is never used for advertising, sold, or read by people unless you ask us to (for example for support), it is needed for security, or the law requires it. Google data is not used to train general AI models.

5. Service providers (sub-processors)

  • Supabase — database, login and encrypted storage of connection keys (servers in the EU, West Europe).
  • Vercel — hosting of the web application (EU region, Dublin).
  • Anthropic — the AI model behind the assistant and analyses; data sent to it is not used to train its models.
  • GitHub — source code hosting (contains no customer data).
  • The services you connect yourself (Shopify, Google, payment providers, your bank, fulfilment partners) process data under their own terms.

Where a provider processes data outside the EEA, this is covered by the EU standard contractual clauses or an adequacy decision.

6. Storage and security

  • All traffic is encrypted (HTTPS). Data is stored in the EU.
  • Keys and secrets for connected services are stored encrypted in a vault, are never shown in the app and are never written to logs.
  • Connections are read-only wherever the provider allows it.
  • Access to the production systems is limited to the owners of T.vP Studios and protected with personal accounts.

7. Retention and deletion

  • We keep your data as long as your account and connections are active, because profit history is part of the service.
  • When you disconnect a service, we stop reading from it; you can ask us to delete the data already imported.
  • When you close your account, we delete your organisation's data within 30 days, except what we must keep by law.
  • Server logs are kept for a short period only (normally no longer than 30 days).

8. Your rights

Under the GDPR you can ask to see, correct, export or delete your personal data, object to or restrict its processing, and withdraw permission you gave (for example by disconnecting Google in your Google account settings). Send your request to info@tvp-studios.com; we answer within one month. You can also file a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) or the authority in your own country.

9. Changes

We may update this policy when the dashboard or the law changes. The date at the top always shows the latest version; for important changes we let account holders know in advance.

Contact