Legal
Privacy Policy
Last updated: September 18, 2026
This policy describes how SwipeSynq (“we”, “us”) handles information in connection with the SwipeSynq POS platform, our integrations, and this website. It supports transparency for merchants and app store requirements. It is not legal advice; consult qualified counsel for your situation.
1. Who we are
SwipeSynq is point-of-sale software for retail, restaurant, and bar merchants. Our services are operated from the website and infrastructure associated with https://v2.swipesynq.com and the merchant application at https://app.swipesynq.com.
For privacy-related questions, contact support@swipesynq.com.
2. Scope
This policy applies to merchants who create a SwipeSynq organization, to visitors of this website, and to information we process to provide, secure, and improve those services. Where you connect a third-party channel such as Shopify, it should be read together with that platform's own policies, including the Shopify API License and Terms of Use.
3. Information you give us on this website
- Contact form submissions: your name, work email, optional phone number, country, industry interest, number of locations, and the message you write.
- Technical metadata: IP address and user agent captured with a submission for spam prevention and abuse investigation.
We use this only to reply to you and to route your enquiry to the right specialist. We do not sell it.
4. Information we collect in the POS platform
- Account and organization data: names, email addresses, roles, PIN credentials, locations, and terminals you configure.
- Operational data: catalog, orders, inventory movements, shifts, and payment references created as you trade.
- Logs and security: server and application logs such as access times, IP addresses, and error diagnostics used to operate, secure, and troubleshoot the service.
5. Information from connected channels
When you authorize a channel such as Shopify, we may access or store data made available through that platform's APIs according to the permissions you approve. Depending on your configuration this may include shop and staff context, products and inventory, customers, and orders or transactions needed to reconcile in-person payments. We request only the access required for the functionality you enable.
6. Information relating to buyers and guests
Where our features process orders, reservations, or payment flows, we handle limited personal data about buyers and guests only as needed to perform the service you configured — for example order references, amounts, booking details, or payment metadata supplied by your channel or payment terminal provider. Sensitive card data is handled by the payment provider or terminal; we store transaction references and statuses, not raw card numbers.
7. How we use information
- Provide, maintain, and improve the platform and the integrations you enable.
- Authenticate users, prevent fraud and abuse, and protect security.
- Respond to sales and support enquiries.
- Comply with law and respond to lawful requests.
- Analyze aggregated or de-identified usage to improve reliability and performance.
We do not sell personal information in the data-broker sense. We use subprocessors, such as hosting providers, strictly as needed to run the service.
8. Retention
We retain merchant and operational data for as long as your account is active or as needed to provide the service, comply with legal obligations, resolve disputes, and enforce agreements. When you disconnect a channel or close an organization, we delete or anonymize the linked data in line with that platform's mandatory processes, including responses to shop/redact and related webhooks where Shopify is connected. Limited backup or log retention may persist under our security practices.
9. Storage, transfers, and security
Data may be processed on servers in regions where we or our hosting providers operate. Where personal data is transferred across borders, we rely on appropriate safeguards as required by applicable law. We use industry-standard measures including encryption in transit (HTTPS/TLS), and access to production systems is restricted on a need-to-know basis.
10. Shopify mandatory compliance webhooks
For merchants using the Shopify integration, we implement Shopify's mandatory privacy webhooks — customers/data_request, customers/redact, and shop/redact. We verify webhook authenticity using Shopify's HMAC headers and respond as required. Read more about privacy law compliance for Shopify apps.
11. Your rights and requests
Depending on your location, you may have rights to access, correct, delete, or restrict processing of personal data, or to object to certain processing. To exercise rights or ask questions, use the details in section 1. We may need to verify your identity before fulfilling a request.
12. Third parties
Our service integrates with platforms and providers you enable, including Shopify, payment terminal networks, and delivery marketplaces. Those providers process data under their own terms and privacy policies. Review the terms that apply to your stack.
13. Children
The service is not directed at children. We do not knowingly collect personal information from children under the age where parental consent is required in your jurisdiction.
14. Changes to this policy
We may update this policy from time to time. We will post the revised version on this page and update the “Last updated” date. Material changes may be communicated in-product, by email, or as otherwise required by law.