Legal

Privacy Policy

Design System Sync for Figma

Last Updated: October 27, 2025

Overview

Design System Sync ("we", "our", "the plugin") is committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights regarding your information.

Data We Collect

1. User Identification

  • Device ID: A unique identifier for your Figma installation (generated automatically)
  • Email Address: Used for subscription management and support
  • Figma User Information: Basic user data provided by Figma's API

2. Usage Data

  • Export History: Number and timestamps of exports performed
  • Subscription Status: Whether you're on Free or Pro tier
  • Feature Usage: Which features you use (anonymized for analytics)

3. Payment Information

  • Processed by Stripe: We do NOT store credit card information
  • Stripe Customer ID: Used to link your subscription
  • Subscription Details: Plan type, billing cycle, and payment status

How We Use Your Data

We never sell your data. Your information is used solely to provide and improve the plugin service.

We use your data for:

  • Subscription Management: Track free tier limits and manage Pro subscriptions
  • Payment Processing: Through Stripe (see Stripe's privacy policy)
  • User Support: Respond to your questions and issues
  • Service Improvement: Understand usage patterns (anonymized data only)
  • Security: Prevent fraud and abuse

Where Data Is Stored

Supabase (Database Hosting)

  • Cloud database hosted on AWS (US region)
  • Encrypted connections (SSL/TLS)
  • SOC 2 Type II certified
  • Supabase Privacy Policy

Stripe (Payment Processing)

Your Computer

  • Plugin preferences stored locally in Figma
  • GitHub/Bitbucket tokens stored in browser localStorage (encrypted)

Data Sharing

We share data only with:

  • Stripe: For payment processing (required for subscriptions)
  • Supabase: For database hosting (required for the service)

We do NOT share your data with:

  • Advertisers or marketing companies
  • Data brokers
  • Any third parties for their own purposes

Your Rights

You have the right to:

  • Access: Request a copy of your data
  • Delete: Request deletion of your account and data
  • Modify: Update your email or preferences
  • Export: Download your data in JSON format
  • Object: Object to processing of your data

To exercise these rights, contact us at: GitHub Issues

Data Retention

  • Active accounts: Data retained while your subscription is active
  • Canceled subscriptions: Data retained for 30 days, then permanently deleted
  • Export history: Retained for 90 days for analytics, then anonymized
  • Payment records: Retained for 7 years (legal requirement)

Security Measures

We implement industry-standard security practices:

  • Encrypted database connections (SSL/TLS)
  • Secure API key management
  • Regular security audits
  • No plain-text storage of sensitive data
  • Access controls and authentication
  • Regular backups with encryption

Cookies and Tracking

The plugin does NOT use cookies or tracking pixels. We collect only essential data needed for functionality.

Children's Privacy

Our plugin is not intended for users under 16 years of age. We do not knowingly collect data from children.

International Users

Your data may be transferred to and processed in the United States. By using the plugin, you consent to this transfer.

Changes to This Policy

We may update this policy occasionally. Changes will be posted on this page with a new "Last Updated" date. Continued use of the plugin after changes constitutes acceptance.

GDPR Compliance

For users in the European Union:

  • Legal basis for processing: Consent and contract performance
  • Data controller: Alexander Burgo
  • You have the right to lodge a complaint with your local data protection authority

Contact Us

For privacy-related questions or requests:

Legal Information

This plugin is operated by Alexander Burgo. By using Design System Sync, you agree to this privacy policy and our Terms of Service.

Summary: We collect only essential data to provide the service. We never sell your data. You have full control over your information. Your payment details are handled securely by Stripe (we never see them).