Legal
Privacy Policy
This policy explains what we collect, why, and how it's protected — in plain English. The short version: we collect what's needed to run your store operations, we protect it seriously, and we don't sell it to anyone.
1. What we collect
- Account data — name, email, password (stored only as a modern salted hash — we can never see it), and optional two-factor secrets.
- Business data — your inventory, listings, photos, orders, buyer messages, costs, and the other records you create by using the Service.
- Marketplace credentials — OAuth tokens and API keys for the channels you connect, stored encrypted at rest (libsodium) and never written to logs.
- Usage & security data — sign-in events, IP addresses, and an audit trail of actions in your workspace, kept so you can see who did what.
- Cookies — session cookies to keep you signed in and remember preferences like dark mode. No advertising or cross-site tracking cookies.
2. How we use it
- To operate the Service: syncing inventory, pushing listings, pulling orders, printing labels, and producing your reports.
- To secure accounts: login throttling, session management, two-factor authentication, and security notifications.
- To support you: when you email us, we look at your account to help.
- We do not sell your data, rent it, or use your business records to compete with you.
3. Service providers we share with
We share data only with processors needed to deliver features you use:
- Marketplaces you connect (eBay, Amazon, Walmart, etc.) — listings, quantities, prices, and order responses flow to them on your instruction.
- OpenAI — when you use AI features, the relevant photos and listing text are sent for processing to generate your content. They are used to provide the feature, not for advertising.
- Stripe — subscription payments. Your card details go directly to Stripe; we never see or store them.
- Shipping providers (e.g. Shippo and your connected carriers) — recipient name and address to buy labels and track shipments.
4. Security
- Marketplace credentials and other secrets are encrypted at rest with per-install keys.
- Passwords use argon2id hashing; unknown-account logins burn identical work so attackers can't probe which emails exist.
- Every workspace is tenant-isolated at the data layer, enforced in code on every query.
- All traffic is encrypted in transit (HTTPS/TLS).
5. Retention & your rights
- Your data stays as long as your account is active. Built-in exports (CSV, reports, QuickBooks) let you take it with you at any time.
- Close your account and we delete your data after a reasonable wind-down period, except records we must keep for legal or accounting reasons.
- You can ask us to access, correct, export, or delete your personal data at support@d9commerce.com — we respond to every request.
6. Buyers' data
Order data includes your buyers' names and shipping addresses. You're the controller of that data; we process it only to fulfill orders (labels, tracking, packing slips) and never contact your buyers for our own purposes.
7. Changes
If we make material changes to this policy we'll notify you in-app or by email before they take effect.
8. Contact
Privacy questions or requests: support@d9commerce.com.