Privacy Policy
Effective date: April 16, 2026
SwiftShopr Inc. ("SwiftShopr", "we", "us") respects your privacy. This policy explains what personal information we collect when you use the SwiftShopr mobile app or visit swiftshopr.shop, how we use it, and the rights you have over it.
1. Information We Collect
Account information: Your phone number (used for SMS one-time-password login via Twilio), a user ID we generate, and any profile data you choose to add (sizing, dietary flags, preferred retailers, style photos).
Purchase information: Items scanned, transaction amounts, store location, and digital receipts. We do not store your full card number — payment details are tokenized and held by Stripe.
Device and usage data: Device identifiers, app version, crash reports (anonymized via Sentry), and anonymous product analytics to improve the app. No advertising identifiers are collected.
2. How We Use Your Information
- Authenticate you and keep your account secure
- Process payments via Stripe and deliver digital receipts
- Personalize AI shopping recommendations to your preferences
- Flag allergens and dietary violations during scan
- Track cashback earnings and reward tier progression
- Improve the product through anonymous usage analytics
- Comply with legal and regulatory obligations
We do not sell your personal information. We do not use your data for advertising without your consent.
3. Who We Share Data With
We share data only with service providers necessary to operate the app:
- Stripe — payment processing and card vault (no full card numbers stored on our servers)
- Twilio — SMS delivery for one-time-password login
- Retailer POS systems — order reconciliation (items purchased, totals) after you complete a transaction
- Sentry — anonymized error and crash reporting
- Render — cloud hosting for our backend infrastructure
We may disclose data if required by law, subpoena, or court order, or to protect the rights, property, or safety of SwiftShopr, our users, or the public.
4. Data Security
- All data in transit is encrypted via TLS 1.2+
- Data at rest is encrypted in our PostgreSQL database
- Payment details never touch our servers — tokenized via Stripe
- Access to production systems is audit-logged
- Regular security reviews and penetration testing
5. Your Rights
You have the right to access, correct, delete, or export your personal information. You may delete your account in-app at any time (Settings → Delete Account). Account deletion is soft-deletion for 30 days, then permanently purged.
If you are a resident of the EU, UK, or California, you have additional rights under GDPR or CCPA. To exercise these rights, email support@swiftshopr.org. We respond within 30 days.
6. Children
SwiftShopr is not intended for children under 13. We do not knowingly collect data from children under 13. If you believe we have collected such information, contact us and we will delete it.
7. Changes to this Policy
We may update this policy from time to time. Material changes will be announced in-app and via email to registered users. The effective date at the top of this page will always reflect the current version.
8. Contact
Questions, concerns, or requests? Email support@swiftshopr.org or write to SwiftShopr Inc., Miami, Florida.