This marketing website sets no advertising cookies and runs no cross-site tracking. Inside the Apps, cookies exist only to keep you signed in and to make the embedded admin work inside Shopify. We do not sell data collected through cookies, and we never have.
1. What cookies are
A cookie is a small text file stored on your device by your browser when you visit a website. Similar technologies include local storage and session storage, which hold data in the browser, and pixels or web beacons, which are tiny embedded resources used to record that a page was loaded. This policy covers all of them, and refers to them collectively as "cookies".
Cookies can be first-party (set by the site you are visiting) or third-party (set by another domain whose content is embedded). They can be session cookies, which disappear when you close the browser, or persistent cookies, which remain until they expire or you clear them.
2. Why we use them
We use cookies for a deliberately narrow set of purposes:
- To keep you authenticated while you use an App's admin interface, so you are not asked to sign in on every screen.
- To allow the App to run correctly embedded inside the Shopify admin, which requires session handling across frames.
- To protect against cross-site request forgery and other common attacks.
- To remember basic preferences, such as a chosen language or a dismissed notice.
- Where enabled and consented to, to understand in aggregate which pages of this website are useful.
We do not use cookies to build advertising profiles, to follow you across unrelated websites, or to sell information about you.
3. Categories we use
| Category | Needed? | What it does |
|---|---|---|
| Strictly necessary | Always on | Authentication, session integrity, security and load balancing. The service cannot function without these, so they are set without consent, as the law permits. |
| Functional | Optional | Remembers preferences such as language or a dismissed banner. Switching these off is harmless; you just get the defaults again each visit. |
| Analytics | Consent-based | Aggregate, privacy-respecting page statistics that tell us which pages are read. Set only where you have consented, in regions where consent is required. |
| Advertising | Not used | We set none. No retargeting pixels, no ad network cookies, no cross-context behavioural advertising. |
4. Cookies in detail
The specific cookies you may encounter:
| Name | Type | Purpose | Duration |
|---|---|---|---|
session_id | Strictly necessary | Maintains your authenticated session in the App admin | Session |
csrf_token | Strictly necessary | Protects form submissions against cross-site request forgery | Session |
shopify_app_state | Strictly necessary | Holds OAuth state during install and authentication | Up to 1 hour |
mimi_locale | Functional | Remembers the interface language you selected | Up to 12 months |
mimi_notice | Functional | Remembers that you dismissed an in-app notice | Up to 6 months |
| [analytics cookie name] | Analytics | Aggregate page-view statistics for this website | [duration] |
5. Cookies inside the Apps
Our Apps run embedded in the Shopify admin and on Shopify POS. In that context, cookies and session storage are used only to keep your session valid and to satisfy the security requirements of running inside another application's frame. Shopify also sets its own cookies in the admin, which are governed by Shopify's cookie policy, not ours.
Nothing our Apps store in your browser contains your customers' personal data.
6. Third-party technologies
This website loads two web font services in order to render its typefaces: Fontshare (for General Sans) and Google Fonts (for IBM Plex Mono). Loading a font makes a request to those providers, which necessarily discloses your IP address and browser details to them. They do not set advertising cookies through this use.
If you would prefer no third-party requests at all, the fonts can be self-hosted; contact us if that matters to your organisation and we will tell you the current status.
7. How to control cookies
You have several options:
- Browser settings. Every major browser lets you block or delete cookies, either entirely or per site. Look under Privacy or Security in your browser's settings.
- Private browsing. An incognito or private window discards cookies when you close it.
- Consent controls. Where we present a cookie banner, you can accept or reject the optional categories, and change your choice later from the same control.
Be aware that blocking strictly necessary cookies will break authentication — the App will not be able to keep you signed in, and embedded screens may fail to load. That is a limitation of how browser security works, not a choice we made.
Guidance for common browsers: Chrome, Firefox, Safari, Edge.
8. Do Not Track
There is still no agreed industry standard for how websites should respond to a browser "Do Not Track" signal, so we do not currently respond to it differently. This makes little practical difference here, because we do not run behavioural tracking in the first place. We will honour Global Privacy Control signals where applicable law requires it.
9. Changes
If we introduce new cookies or new third-party technologies, we will update this page and change the effective date above. Where the change requires consent, we will ask for it before setting anything.
10. Contact
Questions about cookies, or a request to see exactly what we store:
- Email: mimiapps11@gmail.com
- See also our Privacy Policy for the wider picture on personal data.