# Privacy Policy

## **BSSCOMMERCE SHOPIFY APP PRIVACY POLICY**

**Effective Date:** November 1, 2023\
**Last Updated:** November 1, 2023

***

### **1. Introduction**

BSS Commerce (“BSS,” “we,” “us,” or “our”) is a Shopify Partner providing Shopify applications (the “App”) and related consulting or support services (the “Services”) to merchants using Shopify to power their stores.

This Privacy Policy explains how we collect, use, and protect personal information when you install or use our App on your Shopify store, and how your privacy rights are protected under applicable laws.

***

### **2. Information We Collect and Use**

When you install or use our App, we collect certain information from your Shopify account or from you directly to provide and support our features.

#### **App Configuration**

We collect your:

* Store name
* Store email address

These details are used only to store and apply configuration settings for your Shopify store.

#### **Registration Form Feature**

We collect customer registration details to help you create accounts in Shopify Admin:

* Email
* Phone number
* Password (used only during registration; **not stored** in our database)

If your customers upload files via the registration form, these files are stored securely on **Amazon S3**. Files are automatically deleted when you uninstall our App.

#### **Manual Order Feature**

When using Manual Orders, we may process:

* Email
* Name

This information is used to create draft orders in your Shopify Admin and will be deleted from our system after you uninstall the B2B/Wholesale Solution app.

#### **VAT Validation**

We use customers’ VAT Numbers to verify tax validity and support accurate tax configuration.

#### **Cookies**

We use cookies to:

* Identify your store name and Shopify domain
* Simplify the sign-in process for our App

For more details, refer to the BSS Commerce Privacy Policy.

***

### **3. Why We Collect Your Data**

We collect and process your information to:

* Run and maintain app features on your storefront
* Save and manage configuration settings
* Support registration and manual order creation functions
* Provide customer service and respond to support inquiries
* Ensure app functionality, security, and performance

***

### **4. Data Storage and Security**

Your information is stored on secure servers managed by **Linode (U.S.)**.\
Files are stored on **Amazon S3** with controlled access and encryption.

If you uninstall the App, we automatically delete related data from our system.

We use industry-standard security measures to prevent unauthorized access, disclosure, or misuse of your data. However, no method of online transmission or storage is 100% secure.

***

### **5. Cookies Policy**

We use cookies for:

* **Essential operations:** Enabling login and core app functions.
* **Performance:** Tracking technical metrics to improve user experience.
* **Functionality:** Remembering your preferences for easier re-entry.

You can disable cookies in your browser settings, but this may limit certain features of our App.

***

### **6. Third-Party Services**

We may use trusted third-party providers to process and store data securely (e.g., **Amazon S3**, **Linode**, **Shopify APIs**).\
These providers are bound by strict confidentiality and data protection agreements.

***

### **7. Data Retention and Deletion**

Your personal data is retained only as long as necessary for app operation or legal obligations.\
All store and customer-related data will be automatically deleted when you uninstall the App or upon your written request.

***

### **8. Your Privacy Rights**

Depending on your location, you may have the following rights:

#### **Under GDPR (EU/EEA)**

* **Access & Portability:** Request a copy of your stored personal data.
* **Rectification & Erasure:** Request correction or deletion of your data.
* **Restriction or Objection:** Limit or stop certain types of data processing.

To exercise these rights, contact us via **live chat** or **email**.

#### **Under CCPA (California, U.S.)**

* **Access:** Learn what information we collect and how we use it.
* **Deletion:** Request deletion of your personal data.
* **Opt-out:** Decline any “sale” of your personal information (we do not sell personal data).
* **Non-discrimination:** You will not be treated differently for exercising these rights.

#### **Under Nevada Law**

We do not sell personally identifiable information as defined by Nevada law. You may still request to opt out of any potential future sales by contacting us.

***

### **9. Links to External Websites**

Our App may include links to external sites. We are not responsible for the privacy practices or content of these websites. Please review their privacy policies before submitting any information.

***

### **10. Contact Us**

If you have any questions about this Privacy Policy or the way your data is handled, please contact us:

**BSS Commerce**\
14-16-18-19F, Viwaseen Tower, 48 To Huu Str, Trung Van Ward, Nam Tu Liem Dist., Hanoi, Vietnam\
📧 **<support-sbc@bsscommerce.com>**
