Every control below exists today and is exercised by emailing us. A person does it, the same week.
How: email tillysourcing@gmail.com from the address on the store, or from any address at your company's own domain, with the store address.
What happens: we remove the brand, the products, the generated photography and your original logo file, and we release the subdomain so it stops resolving. Orders that have already shipped are kept for as long as tax and consumer law require, and no longer.
How long: same week, and we reply to confirm it is done rather than leaving you to check.
Your orders are already downloadable as CSV from your own dashboard, without asking us and without waiting. Everything else — the brand record, the logo file as you uploaded it, the four generated photographs at full resolution — we send within seven days of an email to the same address.
We can unpublish a store without deleting its order history, so you can still fulfil and refund what is outstanding while the storefront is gone. Ask for this one specifically, because the default for "take it down" is the full delete above.
Order notifications are the only thing we send a store owner, and turning them off is a reply to one. We do not run a marketing list off store owners, so there is no newsletter to unsubscribe from and no drip sequence behind the signup.
Your mark goes to OpenAI's image API to make your four product photographs. That is the only place it goes and the only thing it is used for.
Your name, email and shipping address go to exactly two places: the person embroidering the piece, and the carrier. Your card details never touch our servers — Stripe holds them and we store an identifier, never a number.
To have your buyer record deleted, email tillysourcing@gmail.com with the order number. If the parcel has not shipped we can also just cancel and refund it.
| Data | Why we have it | Where it lives |
|---|---|---|
| Your logo file | To photograph it on the garments and show it on your store | Cloudflare D1, US |
| Brand name, site URL, colours | To build and theme the store | Cloudflare D1, US |
| Your email, if you gave one | Order notifications, and nothing else | Cloudflare D1, US |
| Buyer name, email, address | To make and post the parcel | Cloudflare D1, US |
| Card details | — | Never touches our servers. Stripe holds them. |
Five subprocessors touch any of it — Cloudflare, OpenAI, Stripe, MailerSend and our production partner — and each one is listed with what it gets and why on the trust page. That list is the whole list. If it changes, both pages change.
Last updated 4 September 2026 · tillysourcing@gmail.com · the full trust and security page