Madeboard

USING MADEBOARD

Merchant terms

Version 8 September 2026 · Business details updated 9 September 2026

Who these terms are between

These terms are between the business operator trading under the registered Australian business name Keltriva (Keltriva, we or us) and the merchant whose store uses Madeboard. Contact: support@keltrivahq.com.

Accepting these terms in the app confirms that you are authorised to act for the merchant. The agreement includes the data processing terms below and the information in our Privacy policy. Acceptance is recorded against the store with the terms version, time and authenticated Shopify user identifier.

The service

Madeboard helps you organise production of personalised Shopify orders. It imports eligible order items, displays instructions and artwork links, saves production status and creates printable sheets. You retain ownership of your order data and artwork.

Madeboard is a production aid. Marking a job Done does not fulfil, ship, refund or edit its Shopify order. You are responsible for checking instructions, quantities and artwork before production and for completing fulfilment in Shopify. Orders outside the app’s access window may not appear. Use Shopify as the source of your original order records.

Your responsibilities

Keep your Shopify account secure and restrict staff access appropriately. Only supply information and artwork you are entitled to process. Provide customers with appropriate privacy information and establish any lawful basis or permission needed for the processing you instruct. Do not place unnecessary sensitive information, payment credentials or passwords in item properties.

Do not use the service unlawfully, access another merchant’s records, bypass access controls or interfere with the service. You are responsible for securely handling downloaded exports, printed sheets and original artwork.

Subscriptions and ending use

Where a subscription is required, Shopify displays its price, billing interval and any trial before you approve it. These terms do not set a price or start a charge. Manage the subscription through Shopify and review its cancellation confirmation. Contact us about billing errors or refund requests; any applicable statutory rights remain available.

You can stop using Madeboard and uninstall it through Shopify. The Privacy policy explains retention and deletion. Ending access does not delete the merchant’s original Shopify orders or files held by other providers. Customer privacy request tools remain available without an active subscription while the app is installed.

Availability and your rights

The service depends on Shopify, hosting and file providers and may be interrupted for maintenance or failures. We will use reasonable care in providing the service and addressing reported problems. We may restrict access where reasonably necessary to prevent unlawful use or a security incident, and will explain the reason where lawful and practical.

Nothing in these terms excludes or limits rights, guarantees or remedies that cannot lawfully be excluded, including applicable Australian Consumer Law rights. Contact support first about a problem so we can investigate and work toward a resolution.

Data processing terms

Roles, scope and instructions

The merchant determines why its customers’ order information is collected and used. Madeboard processes it on the merchant’s behalf to provide the production functions described above. Where data protection law uses these terms, the merchant is the controller and Madeboard is its processor for that activity. We separately manage account, security and support information needed to operate the service.

The processing covers customers and people identified in order instructions or artwork, and the store users recorded when accepting terms. Data categories are those listed in the Privacy policy. Processing consists of receiving, storing, organising, displaying, exporting, updating production status and deleting that information for the duration of the service and applicable retention periods.

The merchant instructs us to perform these operations through the app, Shopify and verified support requests. We do not use order information for advertising, data sales, AI generation or significant automated decisions. If a legal obligation requires other processing, we will inform the merchant unless prohibited by law.

Confidentiality and security

We restrict access to people and providers who need it to operate, secure or support the service and require appropriate confidentiality. We use store-scoped access controls, verified Shopify credentials, signed webhook checks, HTTPS and encrypted D1 storage. We will notify an affected merchant without undue delay after becoming aware of a personal data breach affecting its data, provide available relevant information and cooperate on response obligations.

Providers and international processing

The merchant authorises use of OpenAI Sites and its Cloudflare infrastructure for hosting and database processing, Shopify for store and subscription services, and Google Workspace for support email. Files remain with their original providers selected by the merchant. We remain responsible for our obligations when using service providers and will put applicable data protection arrangements in place.

Processing may occur outside Australia. Before a transfer requiring a specific legal safeguard, that safeguard must be in place; acceptance of these terms alone does not create a transfer mechanism. Contact us before supplying data with residency or contractual transfer restrictions that have not been agreed with us.

We will give reasonable advance notice of a material change to the providers used for customer data, except where urgent security or continuity needs prevent this. Merchants may raise a reasonable data protection objection with support; if it cannot be resolved, they may stop using and uninstall the service.

Requests, consent and cooperation

The merchant is responsible for responding to its customers and communicating applicable consent decisions or restrictions. We will help with access, correction, deletion and restriction requests relating to the data we process. Contact support if a request cannot be handled through Shopify. Do not continue instructing processing that you no longer have authority to request.

Shopify customer access requests appear in the app’s Settings. The merchant must monitor these requests, provide the export securely and record completion within the applicable deadline. We will reasonably assist with relevant data protection enquiries and provide available information about our controls, subject to protecting other merchants and service security.

Retention, return and deletion

The expiry periods and deletion processes in the Privacy policy form part of these instructions. Inactive orders expire after 30 days; orders expire after 90 days without a successful import. Deletion includes Madeboard’s saved production status. Minimal customer-deletion markers remain to prevent re-import while the store is installed. Completed privacy request records expire after 30 days; unresolved requests remain for follow-up.

Merchants can obtain customer-request exports while data remains stored, and print production sheets. Contact support before uninstalling if another return of stored information is required. Store data is deleted on Shopify’s verified store-deletion request or by cleanup after 48 hours marked uninstalled. Provider backup and log retention is separate, as explained in the Privacy policy. Any restoration must reapply recorded deletion requests and expiry controls before restored data is made available.

Changes and contact

Material revisions will be identified by a new version and presented for acceptance before further use of the production board. Privacy request access remains available. Questions or complaints can be sent to support@keltrivahq.com.