Skip to content
Plushibin
  • Overview All software features
  • Inventory Prize inventory and receiving
  • Machines Machine floor management
  • Prizes Prize trades and member credit
  • Team Employee scheduling and team operations
  • Records Records and analytics
Contact
Get started
  • Overview All software features
  • Inventory Prize inventory and receiving
  • Machines Machine floor management
  • Prizes Prize trades and member credit
  • Team Employee scheduling and team operations
  • Records Records and analytics
Contact Get started

Legal

Privacy Policy

Last updated September 2, 2026

How Plushibin handles account information, customer-provided business data, workforce scheduling data, guest records, payments, authentication, optional image-assisted item details, browser notifications, Google Sheets synchronization, and the technical information needed to operate the service.

On this page

  1. About Plushibin
  2. Information we collect
  3. How we use information
  4. Customer data and our role
  5. Providers and disclosures
  6. Scheduling and workforce data
  7. Google Sheets synchronization
  8. Cookies and browser signals
  9. Data retention
  10. Security
  11. Privacy rights
  12. California rights
  13. Children's privacy
  14. International processing
  15. Changes to this policy
  16. Contact us

1. About Plushibin

Plushibin provides business-to-business inventory and operations software for claw machine, plush vending, prize arcade, and similar businesses. This Privacy Policy explains how Plushibin handles personal information when you visit our website, create or use an account, use the service as an authorized user, contact us, enable an integration, or otherwise interact with Plushibin.

2. Information we collect

We collect information that you provide directly to us, information submitted by businesses that use Plushibin, and limited technical information generated when the service is used.

Account and profile information

When you create or use a Plushibin account, we may collect information such as your name, email address, business or organization name, account role, location access, and other information associated with your account.

Third-party sign-in information

If you choose to sign in using a third-party authentication provider such as Google, we may receive information made available by that provider, such as your name, email address, basic profile information, and a provider-specific account identifier. We do not receive your Google password.

Google sign-in and Google Sheets authorization are separate. Using Google to sign in does not by itself give Plushibin access to Google Drive, Google Sheets, Gmail, Google Calendar, or other Google account content. Additional access is requested only if an account owner separately enables a feature that requires it.

Customer-provided business data

Customers and their authorized users may enter information into Plushibin relating to their business operations, including locations, claw machines and other equipment, inventory and prizes, storage locations, restocks and inventory movements, Trade Wall activity, transactions and prize wins, events and bookings, schedules, shifts, tasks, records, and other operational information.

If an authorized user explicitly uses image-assisted item details, the selected merchandise image is processed to suggest a New Item name and configured attributes. Selecting or uploading an image alone does not start this processing.

Some customer-provided business data may contain personal information about employees, contractors, guests, customers, event participants, or other individuals. Our customers determine what information they submit to Plushibin and are responsible for ensuring that they have an appropriate basis to collect and use that information.

Guest and account-holder information

Customers may use Plushibin to maintain records about their guests or account holders. These records may include a name, phone number, email address, internal account identifier, in-store credit balance, credit additions or deductions, transaction history, and related operational information.

Plushibin processes this information to provide guest-account, in-store credit, transaction, reporting, and recordkeeping functionality to the customer. The customer determines what guest information it collects and is responsible for providing any notices and obtaining any permissions required by applicable law.

A business may enable a public credit lookup page. When enabled, a guest can enter the exact phone number associated with an account to view that account's name, phone number, current credit balance, and active family-member names and balances. A business may separately enable a location leaderboard that shows only a masked customer name and credit balance. Plushibin applies security checks and request limits to these public lookups.

Employee and authorized-user information

Customers may provide information about employees, contractors, or other authorized users, including names, email addresses, roles, assigned locations, schedules, shifts, cover requests, tasks, and activity performed through the service. Plushibin processes this information to provide scheduling, permissions, recordkeeping, and other operational functionality to the customer.

Usage and technical information

When you access our website or service, we may automatically receive technical information such as IP address, browser and device type, operating system, dates and times of access, pages or features accessed, authentication and session information, request logs, security events, and diagnostic or error information.

If you choose to enable browser notifications, we also process the browser's push-subscription endpoint, notification key material, subscription status, and your notification-category choices. This information is used to deliver notifications to that browser and is not used for advertising.

Billing and transaction information

If you purchase a paid Plushibin subscription, payment and billing information is processed through Stripe. Depending on the payment method and checkout flow, Stripe may collect information such as your name, billing details, payment method information, transaction information, device information, and information used for fraud prevention. Plushibin does not need to store full payment card numbers to provide the service.

Communications

If you contact us or receive messages from Plushibin, we may process your name, email address, message content, and related delivery or support metadata. We use Resend to deliver email communications.

3. How we use information

We use information to:

  • create and administer Plushibin accounts;
  • authenticate users and maintain login sessions;
  • provide inventory, machine, storage, scheduling, event, guest-account, recordkeeping, analytics, export, and other Plushibin features;
  • analyze a merchandise image when an authorized user explicitly requests suggested New Item details;
  • maintain role-based permissions and location access;
  • create and synchronize owner-authorized Google spreadsheets;
  • process subscriptions and payments;
  • send account, invitation, authentication, billing, security, support, and optional service-related browser notifications;
  • respond to questions and provide customer support;
  • operate, maintain, troubleshoot, and improve the service;
  • protect the security and integrity of Plushibin and detect or prevent misuse, fraud, or unauthorized access;
  • maintain records reasonably necessary for business, contractual, or legal purposes; and
  • comply with applicable law and enforce our agreements.

We do not use customer guest information to advertise to guests, contact guests for Plushibin's own marketing, or build advertising profiles about them.

4. Customer data and our role

Plushibin is a business service. Businesses use Plushibin to manage their own operations, and they may submit information about employees, guests, account holders, event participants, or other individuals to their workspace.

For information submitted and controlled by a Plushibin customer, Plushibin generally processes that information to provide the service to the customer and its authorized users. The customer is responsible for determining why the information is collected, what information is submitted or exported, who is permitted to access it, and how it is used through the customer's business.

If your information was entered into Plushibin by a business that uses our service, that business may be the appropriate party to contact regarding access, correction, deletion, or other requests relating to that information. Where appropriate, we may direct your request to the relevant customer and assist that customer as required by applicable law or our agreement.

5. Service providers and disclosures

We use third-party service providers to operate Plushibin. These providers may process information on our behalf or, in some circumstances, for their own purposes as described in their terms and privacy notices.

Cloudflare

We use Cloudflare for network delivery, performance, availability, and security. Cloudflare may process information associated with requests to our website or application, including IP addresses and network or request metadata, as necessary to provide those services.

Supabase

We use Supabase for application backend services, database infrastructure, and authentication. Account information, authentication data, and customer-provided operational data may be processed using Supabase infrastructure.

Resend

We use Resend to deliver email. Information processed for email delivery may include recipient email addresses, message content, and delivery or message metadata.

Stripe

We use Stripe for subscription billing and payment processing. Stripe may process payment, billing, transaction, device, and fraud-prevention information as necessary to provide its services.

Google

Google may process authentication requests when you choose Google sign-in. If an account owner enables the Google Sheets integration, Google also stores the spreadsheet in the connected Google account and processes the OAuth authorization and Google API activity needed to create and update that spreadsheet.

If an authorized user explicitly requests image-assisted New Item details, Plushibin sends the selected merchandise image and a bounded list of applicable item categories and attribute options to Google's Gemini API. The result is a suggestion for review; it does not save or edit an item automatically.

Browser push services

If you enable browser notifications, the push service selected by your browser or operating system—such as a service operated by Apple, Google, or Mozilla—processes the subscription endpoint and the generic notification payload needed for delivery. Plushibin does not place protected schedule, request, announcement-body, or delivery-record detail in that payload.

We may also disclose information to professional advisers, regulators, law enforcement, courts, or other parties where reasonably necessary to comply with law, protect rights or safety, investigate fraud or misuse, enforce our agreements, or complete a business transaction such as a merger, financing, acquisition, reorganization, or sale of assets.

We do not sell personal information or share personal information for cross-context behavioral advertising as those terms are defined under California law.

6. Scheduling and workforce information

Plushibin includes scheduling and workforce-management functionality. Customers may use these features to store employee or staff information such as names, roles, assigned locations, scheduled work times, shift assignments, cover requests, tasks, and related workplace activity.

Plushibin processes this information to provide the functionality requested by the customer. Customers are responsible for ensuring that their collection and use of employee information through Plushibin complies with applicable employment, workplace, and privacy requirements.

7. Google Sheets exports and synchronization

Certain paid export features are available only to the Plushibin account owner. An owner may optionally connect a Google account through OAuth and direct Plushibin to create a dedicated Google spreadsheet for recordkeeping and reporting.

Depending on the datasets and settings selected by the owner, the spreadsheet may contain inventory, machine, transaction, scheduling, employee, guest, account-holder, or other Customer Data, including guest names, phone numbers, email addresses, internal identifiers, in-store credit balances, credit adjustments, and transaction history.

Synchronization may occur automatically on a recurring basis or when the owner initiates a manual synchronization. To operate the integration, Plushibin may process the connected Google account identifier, the spreadsheet identifier, synchronization settings, OAuth access or refresh tokens, last-sync information, and limited synchronization status or error metadata. We do not need to place guest phone numbers, email addresses, or full exported row contents in diagnostic logs to operate the integration.

The integration is designed to create and manage the spreadsheet used for this feature rather than inspect unrelated files in the connected Google Drive. The permissions requested are shown on Google's OAuth consent screen, and owners may decline or revoke authorization.

The spreadsheet is stored in the connected owner's Google account. The customer is responsible for the spreadsheet's sharing permissions, access controls, retention, and use after export. Disconnecting the integration stops future synchronization, and Plushibin may revoke and delete stored OAuth credentials, but disconnection does not delete information already written to the spreadsheet. The owner can delete the spreadsheet directly from Google Drive.

Deleting or correcting information inside Plushibin does not necessarily update copies that the customer has duplicated, downloaded, moved, or shared outside the managed spreadsheet. Requests concerning those copies should be directed to the customer that controls them.

Google API data: Plushibin's use and transfer of information received from Google APIs will comply with the Google API Services User Data Policy, including applicable Limited Use requirements.

8. Cookies, local storage, and browser signals

Plushibin may use cookies, local storage, and similar technologies that are necessary to authenticate users, maintain sessions, remember preferences, protect the service, manage traffic, and provide core application functionality. Our infrastructure and authentication providers may also use technologies necessary to provide their services.

Browser notifications are off until you enable them from your Plushibin Profile and approve the browser's permission request. You can turn delivery off for that browser from Profile, change applicable notification categories there, or revoke permission in your browser or operating-system settings.

Our website does not currently use third-party advertising technologies to track users across unrelated websites. Because there is no uniform industry standard for browser “Do Not Track” signals, our services do not currently respond to those signals. We honor legally recognized opt-out preference signals where required. Because Plushibin does not currently sell personal information or share it for cross-context behavioral advertising, such signals do not change our current practices.

9. Data retention

We retain account information and customer data for as long as reasonably necessary to provide Plushibin and maintain the customer's account. Retention periods may vary depending on the type of information and the purpose for which it is maintained.

Google OAuth credentials used for spreadsheet synchronization are retained while the integration remains connected and may be revoked and deleted when the owner disconnects the integration or the applicable account or feature terminates. Limited synchronization logs may be retained for troubleshooting, security, and audit purposes.

An active browser push subscription is retained while notification delivery remains enabled and the subscription remains valid. Invalid or disabled endpoints are revoked, while limited delivery-status records may be retained for reliability, security, and troubleshooting.

Images submitted for image-assisted item details and raw Gemini responses are not retained in the feature's usage ledger. We may retain limited attempt status, model identifier, token counts, and latency metadata for quota enforcement, reliability, security, and cost monitoring.

After an account is closed, certain information may remain for a limited period where reasonably necessary for backups and disaster recovery, security and fraud prevention, billing and transaction records, resolving disputes, enforcing agreements, or complying with legal obligations. We may delete or anonymize information when it is no longer reasonably necessary for these purposes.

Information already exported to a customer-controlled Google spreadsheet is retained according to the customer's Google account settings and remains under the customer's control unless the customer deletes it.

10. Security

We use administrative, technical, and organizational safeguards designed to protect information handled through Plushibin. No method of transmission over the internet or electronic storage can be guaranteed to be completely secure, and we cannot guarantee absolute security.

Customers are responsible for protecting their account credentials, assigning appropriate permissions, limiting who can access exported spreadsheets, reviewing Google sharing settings, and removing access when it is no longer needed.

11. Your choices and privacy rights

Depending on where you live and which laws apply, you may have rights relating to your personal information, which may include requesting access, correction, deletion, restriction, portability, objection, or other actions regarding that information.

Account holders may contact us regarding information associated directly with their Plushibin account. If your information was submitted by a business customer, we may direct you to that customer where it is responsible for the information.

If personal information has been exported to a Google spreadsheet controlled by a Plushibin customer, that customer is responsible for requests concerning the exported copy. Plushibin may assist with information maintained within Plushibin and, while an authorized integration remains connected, with the managed spreadsheet where reasonably practicable. Plushibin may not control copies the customer has duplicated, downloaded, moved, or shared.

We may need to verify your identity or authority before completing a request. Certain information may be retained where permitted or required for security, fraud prevention, billing, dispute resolution, or legal purposes.

12. California privacy rights

To the extent the California Consumer Privacy Act applies, California residents may have the right, subject to applicable exceptions, to request information about the personal information collected about them; access that information; correct inaccurate information; request deletion; opt out of the sale or sharing of personal information; limit certain uses or disclosures of sensitive personal information; and receive equal service and pricing when exercising their rights.

Plushibin does not sell personal information or share personal information for cross-context behavioral advertising. We do not use sensitive personal information for purposes that require a right-to-limit notice under California law.

A California resident may submit a request by emailing support@plushibin.com with the subject “Privacy Request.” An authorized agent may submit a request where permitted by law. We may take reasonable steps to verify the resident's identity, the agent's authority, or the relationship to a relevant Plushibin customer. If the information was submitted by a business customer, we may direct the request to that customer and assist it as required.

13. Children's privacy

Plushibin is a business operations service and is not intended for children to create or operate business accounts. Because our customers may operate arcades, parties, or events, they may choose to submit limited information relating to their own guests or event participants. Customers are responsible for ensuring that information they submit to Plushibin is collected and used lawfully.

Where practical, customers should associate guest contact details with an adult account holder or parent or guardian rather than collecting a child's own phone number or email address.

14. International processing

Plushibin and the service providers we use may process information in the United States and other countries. Where applicable law requires a particular mechanism or safeguard for an international transfer of personal information, we will use an appropriate mechanism for that transfer.

15. Changes to this policy

We may update this Privacy Policy from time to time to reflect changes to Plushibin, our service providers, integrations, or practices. When we make changes, we will update the date at the top of this page and provide additional notice where appropriate. If we materially change how we use information received through Google APIs, we will update our disclosures and request any consent required before using the information in the new way.

16. Contact us

If you have questions about this Privacy Policy or want to submit a privacy request, contact us at support@plushibin.com. To help us route a rights request, use the subject line “Privacy Request.”

Plushibin

Prize inventory and operations software for claw machine arcades and plush vending businesses.

Product

  • Features

Company

  • Contact

Legal

  • Privacy
  • Terms
© 2026 Plushibin. All rights reserved. Made for the people who keep the claws full.