Disclaimer
1. Technology Tool — Not Legal Counsel
ConsentCraft is a software application. It is not a law firm and does not provide legal advice, legal opinions, compliance assessments, or legal representation of any kind.
Installing or using ConsentCraft does not create an attorney-client relationship between you and Lucent Labs LLC or any of its personnel. Nothing in our app, our website, our documentation, our support communications, or any other ConsentCraft material constitutes legal advice.
If you need to know whether your store complies with any law or regulation, you should consult a qualified privacy attorney or data protection officer. ConsentCraft personnel cannot provide that advice and will not attempt to do so.
2. No Compliance Guarantee
Installing ConsentCraft does not certify, guarantee, ensure, or imply that your Shopify store complies with any law or regulation, including but not limited to:
- The General Data Protection Regulation (GDPR, EU 2016/679)
- The ePrivacy Directive (EU 2002/58/EC) and its national implementations
- The California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA)
- The UK GDPR and Data Protection Act 2018
- Any other national or regional privacy, data protection, or consumer protection law
Whether your store is legally compliant depends on many factors that are specific to your business — your data practices, the trackers and third-party services you use, your target markets, and the applicable legal standards in each jurisdiction where your Store Visitors are located. These are factual and legal determinations that only a qualified professional can make for your specific situation.
We describe ConsentCraft as a tool that helps you comply — not one that guarantees compliance. There is a meaningful and important difference.
3. No Regulatory Protection
Using ConsentCraft does not protect you from regulatory investigation, enforcement action, administrative fines, or legal penalties. Supervisory authorities — including data protection authorities under the GDPR and the California Privacy Protection Agency under the CCPA/CPRA — make their own determinations based on the full facts and circumstances of your store's data practices, independent of what consent management tool you use.
If you receive a complaint, inquiry, or enforcement action from a regulatory authority, you should seek qualified legal representation immediately.
4. Your Responsibilities as a Merchant
As the Shopify store owner, you are the data controller for your Store Visitors' personal data. You — not ConsentCraft — are responsible for:
- Determining which laws apply to your store and your customers
- Configuring the ConsentCraft banner accurately, truthfully, and in compliance with applicable law
- Ensuring that your store's privacy notice and cookie policy are accurate, complete, and lawful
- Ensuring that all other apps, trackers, analytics tools, and marketing platforms on your store are lawfully disclosed and properly consented to
- Responding to data subject requests from your Store Visitors
- Notifying supervisory authorities and affected individuals in the event of a personal data breach
5. Prohibited Representations
The following statements are not accurate and should never be made to regulators, customers, or any third party:
| Do not say this | Why it is wrong |
|---|---|
| "ConsentCraft makes us GDPR compliant." | Compliance depends on your full data practices, not just having a consent banner. |
| "We installed ConsentCraft so we won't get fined." | ConsentCraft does not provide any protection from regulatory fines or enforcement. |
| "ConsentCraft certified our compliance." | ConsentCraft does not certify compliance and is not an accreditation body. |
| "Our consent management is audited by ConsentCraft." | We provide a tool; we do not audit, certify, or assess Merchant compliance posture. |
| "ConsentCraft blocks all tracking before consent." | The privacy scanner uses automated detection and may not identify all trackers — see Section 6. |
6. Privacy Scanner Limitations
The ConsentCraft privacy scanner uses automated technical detection techniques to identify third-party trackers, cookies, and network requests on your store. Scanner results are informational only and are not a legal audit.
Specific limitations include:
- The scanner may not detect all trackers — some are obfuscated, loaded conditionally, or activated only after user interaction.
- Scanner results may include false positives (flagging benign scripts as trackers) or false negatives (missing actual trackers).
- A "clean" scan result does not mean your store is free from privacy risks or legally compliant.
- Tracker detection is a technical snapshot; new trackers can be added to your store at any time by third-party apps you have installed.
- Scanner results should not be presented to regulators, legal proceedings, or third parties as evidence of compliance or a privacy audit.
7. Liability
To the fullest extent permitted by applicable law, Lucent Labs LLC is not liable for any regulatory fines, penalties, enforcement costs, or damages arising from your store's compliance posture — whether or not ConsentCraft is installed. See our Terms of Service — Section 9 for the full limitation of liability.
This disclaimer does not limit any liability that cannot be excluded under mandatory applicable law, including liability under GDPR Article 82 where we have caused damage as a data processor through our own breach.
8. Consult a Professional
If you have questions about your privacy compliance obligations, data protection requirements, or applicable law, please consult a qualified professional:
- Privacy attorney — for legal advice about your obligations under applicable law
- Data Protection Officer (DPO) — if you are required to appoint one under GDPR, or if you need ongoing data protection governance
- Your supervisory authority — many data protection authorities publish free guidance for small businesses and e-commerce operators
Questions about ConsentCraft's features or how the tool works? We are happy to help atsupport@consentcraft.ai. Questions about whether you are legally compliant? That requires a lawyer, not a software vendor.
9. Contact
Lucent Labs LLC
General inquiries:support@consentcraft.ai
Privacy matters:privacy@consentcraft.ai
Legal matters:legal@consentcraft.ai