Privacy policy
Updated September 27, 2026
We collect only what we need to answer you and to keep our forms free of spam. We don’t use advertising cookies, third-party trackers or analytics scripts, and we never sell your data.
Who is responsible for your data?
MyBebine is a brand operated by Los Bebes Inc, Old Treasury Street, Commercial Avenue, Bamenda, North-West Region, Cameroon. Los Bebes Inc is the controller of the personal data described here: the company that decides why and how it is used.
For any privacy question or request, email support@mybebine.com or message us on WhatsApp at +237 678 858 683.
What do we collect?
When you use our contact or quote form
- Your name
- Your email address and/or WhatsApp number
- Your company and website address (both optional)
- The service you’re interested in, your budget range and your message
- Your preferred language
To prevent abuse, our server also computes a salted hash of your IP address (a scrambled code, stored instead of the address itself) to limit repeated submissions. It is deleted within 24 hours.
When you use our free tools
- AI Visibility Checker. You enter a website address, a business name, what the business does and, optionally, a location. Our server reads that website’s public pages (the homepage, robots.txt, the sitemap and llms.txt) and sends the business name, domain, activity and location to Google’s paid Gemini API, under terms where Google does not use them to improve its products, to ask what the model knows about the business. Gemini’s answer is kept for 24 hours, filed under a scrambled code of what you typed, so a repeated check is instant.
- Merchant Center Checker. You enter a store address. Our server reads that store’s public pages (home, policy, contact, about and one product page).
- Website Security Check. You enter a website address. Our server reads what any browser receives from that site: the homepage with its response headers, cookies and certificate, the http:// version of the homepage, one address that does not exist (to see the error page), /.well-known/security.txt and the first bytes of up to three JavaScript files the page loads. It also reads the domain’s public DNS records (SPF and DMARC) and, for WordPress sites, WordPress’s public list of versions. It never keeps cookie values, and it sends no attack or login attempt.
- Website Cost Calculator. It runs entirely in your browser. Nothing is sent unless you choose to send your estimate through the contact form or WhatsApp.
We do not store the website addresses or business names you enter. We keep anonymous statistics about each check (the score or grade, the result of each test, the platform, the domain extension such as .cm, and the page language) to improve the tools, and we count views and button clicks per tool and per day, without cookies or identifiers. The same salted IP hash as for the contact form limits repeated checks.
When you email us or message us on WhatsApp
We receive your contact details and whatever you choose to write. Emails are handled by our business email provider. WhatsApp chats are processed by WhatsApp (Meta) under its own terms and privacy policy.
When you simply browse
Our hosting provider, Google Firebase, keeps standard server and security logs, such as IP address, browser type and the page requested, to deliver the site and detect abuse.
Do you use cookies or trackers?
No advertising cookies, no third-party trackers and no analytics scripts. Our fonts are served from our own domain, so loading a page doesn’t contact outside font services.
Four things are stored or measured, and none of them tracks you:
- Theme choice. Your light or dark mode choice is saved in your browser’s local storage. It stays on your device and is never sent to us.
- Speed readouts. Some pages show loading measurements taken in your browser. They are displayed to you, not sent to us.
- Admin session cookie. Our admin area uses a strictly necessary session cookie so staff can sign in. Visitors never receive it.
- Free tool counts. We count views and clicks for each tool, per day. No cookie or identifier is used: only totals are stored.
If we ever add analytics, we will update this policy first and ask for your consent where the law requires it.
Why do we use your data, and on what legal basis?
| Purpose | Legal basis (GDPR) |
|---|---|
| Replying to a quote request and preparing a proposal | Steps taken at your request before a contract |
| Answering other questions, and using optional details you choose to share | Your consent |
| Delivering the site securely, blocking spam and limiting repeated submissions | Our legitimate interest in protecting our services and visitors |
| Running the free tools you use, and anonymous statistics to improve them | Our legitimate interest in providing and improving the tools you ask for |
If you become a client, we also use your data to perform our contract and keep billing records as the law requires.
No decision with legal or similarly significant effects is made about you by automated means alone. If our spam check blocks a genuine message, email or WhatsApp us instead.
Who else processes your data?
A few providers process data for us, only to provide their service:
| Provider | What it does | Where |
|---|---|---|
| Google Firebase (Hosting, Cloud Functions, Firestore) | Delivers the site; receives and stores form submissions | Form processing and database in the EU (europe-west1, Belgium); pages served from Google’s global network |
| Our business email provider | Delivers and stores emails you send us and our replies | The provider’s data centers |
| Google Gemini API (paid tier) | Answers the AI Visibility Checker’s questions about the business you entered | Google’s infrastructure |
The alerts we receive about new form submissions contain only a reference number, not your details. Our spam check runs on our own servers: your browser solves a small computing puzzle before sending the form, so no third-party anti-spam service sees your visit.
We never sell your personal data or share it with advertisers. We disclose it to authorities only when the law requires it.
Does your data leave your country?
In part. Form submissions are stored in the EU, but Los Bebes Inc is based in Cameroon, and our team accesses your data from there. Google may also process some data in other countries, including the United States, under data processing terms that include safeguards such as the European Commission’s Standard Contractual Clauses.
How long do we keep it?
| Data | How long |
|---|---|
| Form submissions and messages about a possible project | 24 months after our last contact, then deleted (sooner if you ask) |
| Salted IP hash used for rate limiting | Up to 24 hours |
| Gemini answers from the AI Visibility Checker | 24 hours |
| Anonymous tool statistics and daily usage counts | Up to 13 months (statistics); counts are kept as totals |
| Hosting server and security logs | Set by Google; Firebase says Hosting keeps IP data “for a few months” |
| Your theme choice | In your browser until you clear it |
What are your rights?
You can ask us to:
- Give you a copy of your data (access)
- Correct it (rectification)
- Delete it (erasure)
- Stop using it for a particular purpose (objection)
- Limit how we use it while a concern is being resolved (restriction)
- Send it to you or to another company in a common, machine-readable format (portability)
Where we rely on your consent, you can withdraw it at any time; this doesn’t affect what we did before. To make a request, email support@mybebine.com (“Privacy” in the subject line helps) or message us on WhatsApp. We may ask you to confirm your identity, and we reply within 30 days.
Which laws apply, and where can you complain?
If you are in the European Union or the European Economic Area, the General Data Protection Regulation (GDPR) applies to how we handle your data, because we offer our services to clients there. As a company based in Cameroon, we are also subject to Law No. 2024/017 of 23 December 2024 relating to personal data protection in Cameroon. If other laws protect you where you live, you keep the rights they give you.
If you think we have mishandled your data, please tell us first. You can also complain to a supervisory authority: in the EU or EEA, the data protection authority where you live, work or where the issue occurred (see the European Data Protection Board’s list); in Cameroon, the personal data protection authority provided for by Law No. 2024/017.
Is this site meant for children?
No. Our site and services are for businesses and are not directed at children under 16. If you believe a child has sent us personal data, contact us and we will delete it.
How do we protect your data?
We collect the minimum, check every submission on our server and keep our database closed to direct access. Our security page has the details.
Will this policy change?
When we change it, we update the date on this page. Material changes, such as adding analytics, will appear here before they take effect.