Your privacy is important to us. This policy explains how we collect, use, and protect your data.
1. Information We Collect
Account Information: When you create a Syncqer account, we collect your name, email address, and business details (selling country, marketplace, primary platform).
Platform Credentials: OAuth tokens from integrated platforms (Shopify, Amazon, WooCommerce, etc.) are stored encrypted to enable inventory synchronization.
Usage Data: Information about how you use Syncqer, including features accessed, alerts configured, and platform connections.
Payment Information: Billing details are processed securely through DodoPayments. We do not store full credit card numbers.
2. How We Use Your Information
Provide Services: To deliver inventory monitoring, sync functionality, and alert notifications.
Improve Product: Analyze usage patterns to enhance features and user experience.
Customer Support: Respond to your inquiries and provide technical assistance.
Security: Detect and prevent fraud, abuse, and security incidents.
Legal Compliance: Comply with applicable laws and regulations.
3. Data Security
Encryption: All data is encrypted in transit (TLS 1.3) and at rest (AES-256).
Access Controls: Role-based access ensures only authorized personnel can access your data.
Infrastructure: Hosted on secure, SOC 2 compliant cloud infrastructure.
Monitoring: 24/7 security monitoring and regular security audits.
OAuth Security: Platform credentials are stored using industry-standard encryption with Redis state management.
4. Data Sharing
• We DO NOT sell your data to third parties.
Service Providers: We may share data with trusted service providers (hosting, payment processing, email delivery) who are contractually obligated to protect your information.
Platform APIs: We access your connected platforms (Shopify, Amazon, etc.) using OAuth to retrieve inventory data. This data is never shared outside Syncqer.
Legal Requirements: We may disclose information if required by law or to protect our legal rights.
5. Data Retention
Active Accounts: We retain your data as long as your account is active.
Deleted Accounts: Upon account deletion, personal data is removed within 30 days, except where retention is required by law.
Backup Data: Encrypted backups may be retained for up to 90 days for disaster recovery purposes.
6. Your Rights
Access: Request a copy of your personal data.
Correction: Update or correct inaccurate information.
Deletion: Request deletion of your account and data.
Export: Download your data in a portable format.
Opt-Out: Unsubscribe from marketing communications at any time.