Themo WP

Privacy policy

Last updated: 4 October 2026

1. Who is responsible for your data

Themo WP is the controller of the data described here. For any question about your data: our support team (Help in your account).

This policy covers the themo-wp.com website, your account, your orders and the license server the plugin connects to. What your own customers type on your site stays on your site: we don't process it, and you are responsible for it.

2. The data we process

We never receive card details: payment is by transfer, through your bank or payment service.

3. Why we process it, and on what basis

We don't send newsletters or advertising without your consent, we don't use your data for targeted advertising, and we don't sell it.

4. Who can see it

5. Transfers outside Morocco

We are a company established in the United States, and your data is hosted in Germany, in the European Union; some providers also process it in the United States. It is therefore processed outside Morocco. Moroccan law No. 09-08 makes these transfers subject, depending on the destination country, to a declaration to or an authorisation from the CNDP; they are made within that framework and, where it applies, the GDPR's, through the contractual data protection commitments these providers offer.

6. How long we keep it

When you ask us to delete your account, we delete or anonymise your data, except what the law requires us to keep.

7. Security

Traffic with the site is encrypted (HTTPS). Passwords are stored as hashes (scrypt) and license keys are encrypted. Administrator access requires two-factor authentication, and backups are encrypted. No system is infallible: if a breach affecting your data happened, we would tell you, and tell the competent authorities where the law requires it.

8. Your rights

Under Moroccan law No. 09-08 on the protection of individuals with regard to the processing of personal data and, if you live in the European Union, the GDPR, you can:

To use these rights, write to our support team (Help in your account) from your account's address. We may ask you to confirm your identity. We make corrections within the 10 clear days Moroccan law No. 09-08 allows, and answer other requests within one month at most.

You can also complain to Morocco's data protection authority, the CNDP (Commission nationale de contrôle de la protection des données à caractère personnel, www.cndp.ma) or, in the European Union, to your country's data protection authority.

9. Cookies and browser storage

We only use what the site needs to work, with no advertising and no audience measurement:

Cloudflare may also set technical security cookies. Because these are essential to the service, they don't require your consent.

10. Minors

Our services are meant for professionals and adults; they are not intended for anyone under 18.

11. Changes

We may update this policy; the date of the last update is shown at the top of the page. If an important change affects you, we tell you by email.