Privacy Policy

Last updated: 9 August 2026

This is a draft and is not yet legal advice. It will be reviewed before the platform accepts paying customers.

Dikasoft

[COMPANY ADDRESS — to be completed]

[email protected]

1. Scope

This policy covers data Dikafy processes as a business — data about you, the merchant. Data about your customers is processed on your behalf and under your instructions; for that data you are the controller and we are the processor.

2. What we collect

From merchants: the name and email address your identity provider gives us at sign-in, your store settings, and billing details for your subscription. From your storefront: order and customer records that belong to your store, plus operational logs and aggregate usage data. We never receive or store full card numbers.

3. Why we use it

To run the platform, to provide support, to bill you, to keep the service secure, and to understand which features are used. We do not sell personal data and we do not use your store's customer data to market to those customers.

4. Who we share it with

Infrastructure and service providers that are necessary to run Dikafy — hosting, email delivery, error monitoring and our identity provider — under agreements limiting their use of the data. Your own payment gateway and any tracking pixels you enable receive data because you configured them to; those are your integrations, governed by their own policies.

5. Cookies

This marketing site stores one preference cookie: the language you chose. It sets no advertising or analytics cookies. Your storefront's cookie behaviour is a separate matter that you configure in your store settings.

6. Retention

We keep store data for as long as the store is active and for a limited period afterwards so you can export it. Operational logs are kept for a short window. Some records are kept longer where the law requires it.

7. Your rights

You can ask for a copy of your personal data, correct it, or ask us to delete it. Where a request concerns your customers' data, we will help you fulfil it rather than acting on it directly, since that data is yours.

8. Security

Payment gateway credentials are encrypted with per-record keys, store data is isolated per tenant at the database level, and access to production is limited and logged. No system is perfectly secure; we will tell you promptly if a breach affects your data.

9. Contact

Privacy questions and requests go to [email protected].