Trust

How COOUP earns trust

Last updated · 25 July 2026

Canonical version · English

COOUP is operated by MOOMENN LLC in the United States. This page explains the practical boundaries, safeguards, and regional commitments behind the service.

Platform safeguards

Account and shop access is role-scoped and enforced in the database. Secrets and provider credentials stay server-side, network traffic uses HTTPS, and privileged operational actions are recorded for review.

Commerce and payment boundaries

Shopify handles merchant app subscriptions and shopper checkout. Stripe supports merchant settlement payment methods and creator payouts through Stripe Connect. COOUP stores the references and status needed to operate those workflows, not full card numbers or bank credentials.

Merchants remain responsible for their products, pricing, fulfilment, refunds, customer service, taxes, and the regions in which they sell. COOUP supplies creator discovery, distribution, attribution, and commission tooling; it is not the seller of merchant goods.

Attribution and data posture

COOUP uses first-party references to attribute creator-driven sales. We do not use third-party advertising cookies or cross-site tracking pixels for attribution, and we do not sell personal data.

Content, disclosures, and reporting

Creators must be truthful about product experience and clearly disclose material connections or commission eligibility with the endorsement. Merchants must have the rights needed for the product and brand materials they provide. Copyright, trademark, privacy, publicity, synthetic-content, and brand-rights concerns can be reported through COOUP's content-reporting route.

Regional trust notes

Global

One practical baseline

COOUP applies a common baseline of truthful promotion, data minimisation, first-party attribution, account security, and accessible reporting while respecting mandatory local rights.

UK

UK rights

UK users retain applicable consumer and data-protection rights. Privacy requests can cover access, correction, deletion, portability, objection, restriction, and safeguards around automated decisions, depending on the context.

EU

EU rights

EU users receive GDPR transparency on purpose, lawful basis, retention, transfers, safeguards, and applicable individual rights. COOUP does not claim a special regulatory status.

US

US commerce and disclosures

US creators must clearly disclose material connections and commission eligibility. US users may exercise applicable state privacy rights through COOUP's privacy contact.

Canada

Canadian privacy

Canadian users can ask how personal information is collected, used, disclosed, accessed, corrected, retained, and safeguarded under the principles applicable to COOUP's service.

Incidents and vulnerability reports

Report suspected account compromise, data exposure, unsafe content, or a security vulnerability promptly through Support. Please include the affected page or account, what happened, and when you observed it; do not include passwords, payment credentials, or unnecessary personal data.

Certifications and availability

COOUP does not currently claim SOC 2, ISO 27001, PCI DSS, HIPAA, or GDPR certification, and it does not publish a numerical uptime service-level agreement. Shopify and Stripe operate their own regulated and certified systems; their certifications do not automatically certify COOUP.

Questions

Questions about these terms? Reach us via the Support page.