Privacy Policy (QuickShops – GDPR-Compliant)
Effective Date: 4th of March 2026
Controller: QuickShops
Email: valtteri@quickshops.app
1. Introduction
We are committed to protecting your personal data and respecting your privacy in accordance with the General Data Protection Regulation (GDPR).
This policy explains how we collect, use, and protect your information when you use QuickShops.
2. Roles Under GDPR
- We act as Data Controller for your account and billing information.
- We act as Data Processor for personal data processed through your store on behalf of your customers.
A Data Processing Agreement (DPA) is available upon request and will govern our processing of customer data on your behalf.
3. Data We Collect
3.1 Information You Provide
We collect the information you provide directly to us, including:
- Name
- Email address
- Business details
- Billing information
- Support communications
3.2 Automatically Collected Data
We may automatically collect certain information when you use QuickShops:
- IP address
- Browser and device information
- Usage data and interaction logs
- Cookies and similar technologies
3.3 Merchant Store Data
When your customers use your store, we process their personal data only on your documented instructions as part of providing the platform.
You are the Data Controller for that customer data; we process it as your Data Processor.
4. Legal Basis for Processing
We process personal data based on the following legal grounds:
- Contractual necessity – to provide and manage your QuickShops account and services.
- Legal obligations – for example, tax and accounting requirements.
- Legitimate interests – such as maintaining security, preventing abuse, and improving our services, provided these interests are not overridden by your rights.
- Consent – where required, for example for certain marketing communications or non-essential cookies.
5. How We Use Your Data
We use your personal data to:
- Provide, operate, and maintain the QuickShops platform
- Set up and manage your account
- Process payments and manage subscriptions
- Provide customer support and respond to inquiries
- Monitor and improve security and performance
- Comply with legal and regulatory obligations
We do not sell personal data.
6. Data Sharing
We may share personal data with:
- Hosting and infrastructure providers (EU-based or GDPR-compliant)
- Payment processors (for example, Stripe)
- Analytics and monitoring providers
- Professional advisors (lawyers, accountants)
- Authorities where legally required or to protect our rights
All processors are subject to contractual data protection safeguards that require them to process personal data only on our instructions and to protect it appropriately.
7. International Transfers
If personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards such as:
- Standard Contractual Clauses (SCCs) adopted by the European Commission
- Adequacy decisions for the destination country
- Other equivalent protections under applicable data protection law
8. Data Retention
We retain personal data:
- For the duration of your QuickShops subscription
- As required by tax, accounting, and other legal obligations
- For a limited period thereafter where needed for legitimate security, fraud prevention, or dispute resolution purposes
Upon account termination, data will be deleted or anonymized after a reasonable retention period, unless legal obligations require a longer retention.
9. Security Measures
We implement appropriate technical and organizational measures to protect personal data, including:
- Encryption in transit (SSL/TLS)
- Access controls and authentication
- Regular security monitoring and updates
- Secure hosting environments
No system can guarantee absolute security, but we strive to maintain high standards and continually improve our protections.
10. Your Rights Under GDPR
Subject to certain conditions, you have the right to:
- Access your personal data
- Rectify inaccurate or incomplete data
- Erase data ("right to be forgotten")
- Restrict processing of your data
- Receive data in a portable format (data portability)
- Object to certain types of processing
- Withdraw consent where processing is based on consent
Requests may be submitted to: valtteri@quickshops.app.
We will respond in accordance with GDPR requirements.
You also have the right to lodge a complaint with your local Data Protection Authority if you believe your rights have been violated.
11. Cookies and Similar Technologies
11.1 What We Use Cookies For
We use cookies and similar browser technologies strictly for:
- Authentication and session management – to keep you securely logged in to your QuickShops dashboard.
- Security – to protect your account from unauthorized access and maintain secure communication with our backend.
- Storefront functionality – to maintain session state (e.g. cart) when a customer interacts with a store powered by QuickShops.
- Payment processing – Stripe may set its own cookies during checkout to enable secure payments and fraud prevention.
11.2 Analytics
For product analytics we use Databuddy, a cookie-free, GDPR-compliant analytics service. Databuddy does not set cookies or track users across sites. Because no tracking or advertising cookies are used, no cookie consent banner is required for analytics.
11.3 No Advertising Cookies
We do not use advertising cookies, cross-site tracking cookies, or any third-party marketing cookies.
11.4 Managing Cookies
You can view, delete, or block cookies through your browser settings. Blocking essential session cookies for quickshops.app may prevent login and core platform features from working correctly.
11.5 Merchant Responsibility
If you operate a store on QuickShops and add your own integrations or tracking tools, you are responsible for providing your customers with an appropriate cookie notice and obtaining any required consent.
12. Changes to This Policy
We may update this Privacy Policy when necessary, for example to reflect changes in legislation, our services, or our processing activities.
Material changes will be communicated appropriately. Continued use of QuickShops after such changes constitutes acceptance of the updated policy.