Effective date: May 8, 2026
Privacy Policy
This policy describes the personal information WhatStore collects and uses based on the current application models and flows.
Information we collect
Account information: name, email address, email verification status, profile image if provided, phone number, address fields, country, sign-in provider data, session tokens, IP address, user agent, two-factor authentication secrets, verification tokens, and account timestamps.
Store information: store name, slug, description, category, phone number, WhatsApp number, bot settings, membership roles, store verification and suspension status, notification preferences, branding settings, products, categories, product images, inventory, prices, and product view counts.
Order and checkout information: cart items, order items, guest email, delivery method, shipping address or pickup location, recipient name, recipient phone number, delivery notes, order status history, delivery details, payment reference, payment hold records, disputes, OTP verification attempts, and payment status.
Payment and payout information: Paystack customer, transaction, subscription, subaccount, transfer, webhook, bank name, bank code, account number, account name, wallet, withdrawal, payment hold, platform fee, and vendor payout records.
Communication information: waitlist email, name and country if provided, broadcast subscription status, email delivery timestamps, WhatsApp conversation phone numbers, message content, message provider identifiers, push notification endpoint and browser keys, and user agent for push subscriptions.
Usage and diagnostic information: AI request counts, token usage, product daily view counts, activity timestamps, login timestamps, and error or operational logs generated while running the service.
How we use information
We use account and session information to create accounts, authenticate users, verify email addresses, support two-factor authentication, manage store access, and protect admin-only areas.
We use store, product, cart, checkout, order, payment hold, delivery, wallet, and dispute information to operate storefronts, process purchases, hold and release funds, notify vendors, manage payouts, and show order history.
We use WhatsApp, email, push notification, waitlist, and broadcast information to send service messages, order updates, onboarding emails, verification codes, waitlist messages, and vendor notifications according to the preferences saved in the app.
We use usage, AI token, product view, activity, and diagnostic information to maintain the platform, measure feature usage, enforce plan limits, debug failures, and improve reliability.
Service providers
The codebase integrates with service providers for authentication, email, payments, payouts, file uploads, push notifications, analytics, error monitoring, hosting, and WhatsApp messaging. Information is sent to those providers only where needed for the related feature to work.
Payment and payout information is processed through Paystack. Email messages are sent through the configured email provider. WhatsApp messages are handled through the configured WhatsApp provider. Uploaded product and branding images are handled through the configured upload provider.
Retention and security
We keep information for as long as needed to provide the service, maintain financial and order records, handle disputes, comply with operational requirements, and protect the platform.
The app stores authentication credentials, session tokens, two-factor secrets, verification values, payment references, webhook payloads, push credentials, and other sensitive operational records. Access to this information should be limited to authorized systems and team members who need it to operate the service.
Your choices
You can update account, store, product, notification, and checkout details through the product screens where those fields are available.
Waitlist subscribers can unsubscribe using the unsubscribe link generated for waitlist emails. Push notifications can be disabled from the browser or from product controls where available.
To request access, correction, or deletion of personal information, follow the instructions at /data-deletion or contact us using the email below. Some order, payment hold, payout, dispute, and security records may need to be retained for legitimate operational or legal reasons.
Contact
For privacy questions or requests, email support@whatstore-ai.shop