Privacy Policy
This Privacy Policy explains how EcomTrade24 Pay ("we", "us") collects, uses, stores, and protects data when you use the platform. It applies to merchants, affiliates, and visitors interacting with our website, dashboard, APIs, checkout, and payment links.
1. Data We Collect
We collect only the data needed to operate, secure, and improve the platform. Depending on how you use the service, this may include:
- Account data: email address, hashed password, login/session identifiers, and account status.
- Merchant configuration: webhook URLs, shop domains (if provided), payout wallet address(es), and settings stored in your dashboard.
- Transaction and event metadata: payment/session IDs, timestamps, amounts, currency/asset, status events, and technical identifiers required for reconciliation.
- Support communications: messages you send to us and related troubleshooting information.
- Security logs: IP address, user agent, device/browser signals, access logs, and audit trails used to prevent fraud, abuse, and unauthorized access.
We do not intentionally collect sensitive categories of personal data. Merchants should avoid sending unnecessary sensitive personal data through the platform.
2. Data We Do Not Sell
We do not sell personal data. We use data strictly to operate, secure, and maintain the service and to comply with legal obligations.
3. How We Use Data
- Provide and maintain platform functionality (dashboard, APIs, checkout, payment links, webhooks).
- Prevent fraud, abuse, unauthorized access, and enforce our Terms and Acceptable Use Policy.
- Debug issues, monitor reliability, and improve performance and user experience.
- Send service-related messages (security alerts, important account notices, and product updates).
- Comply with legal requests where applicable.
4. Cookies & Similar Technologies
We use cookies or similar technologies primarily for authentication and session management (e.g., staying logged in), security controls, and basic platform functionality. We may also use limited analytics to understand platform usage and improve reliability.
You can typically control cookies through your browser settings. Disabling cookies may affect login and dashboard functionality.
5. Sharing & Third-Party Services
We share data only as necessary to provide the service, operate infrastructure, or comply with law. This may include:
- Infrastructure providers: hosting, database, email delivery, security/CDN services.
- Payment method integrations: where enabled, third-party providers may receive the data required to process a payment method or confirm status events.
- Legal compliance: responding to lawful requests, preventing fraud, or protecting rights and safety.
Third-party services operate under their own privacy policies and terms. Where applicable, those terms may be required to use certain payment methods.
6. Data Retention
We retain data only as long as necessary for the purposes described in this policy, including security auditing, dispute handling, troubleshooting, and legal compliance. Retention periods may vary depending on the data type and risk requirements.
If your account is closed, we may retain certain records for a limited period where required for security, operational, or legal reasons.
7. Security
We use industry-standard security measures including encryption in transit (TLS), access control, role-based permissions, and audit logging. However, no method of transmission or storage is 100% secure. You are responsible for maintaining the security of your account credentials, API keys, and webhook endpoints.
8. International Data Transfers
Depending on your location and the location of our service providers, data may be processed in countries different from your own. We take reasonable steps to protect data in line with this policy and applicable law.
9. Your Rights & Requests
You may request access, correction, or deletion of your account data, subject to legal and security requirements. Some information (e.g., security logs, audit records, transaction metadata) may need to be retained for fraud prevention, platform integrity, or legal compliance.
10. Contact
For privacy-related requests, contact [email protected].
If you include transaction/session identifiers, please avoid sending sensitive personal information by email.
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in the platform or legal requirements. Updated versions will be published on this page.