Privacy Policy

GDPR compliant · Last updated: 2026

We process personal data in accordance with the EU GDPR (2016/679). Data is used to provide services, process payments, ensure security, and improve the platform. We do not sell personal data. Users have rights to access, correct, delete, or request portability of their data.

What we collect

  • Account data: email, display name, language and theme preferences.
  • Seller data: shop info, products, payout (Stripe Connect) status.
  • Order data: items purchased, shipping address, contact details.
  • Technical data: IP address, browser/device info, cookies (see Cookies Policy).

Why we process it

  • To operate the marketplace and fulfil orders.
  • To process payments through Stripe and route payouts to sellers.
  • To send transactional emails (order confirmation, shipping updates).
  • To prevent fraud and abuse.
  • To improve the platform.

Processors we share data with

  • Stripe — payments and seller payouts.
  • Shippo / Sendcloud — shipping labels and tracking, when the seller uses them.
  • Hosting and infrastructure providers under standard data-processing agreements.

Your rights

You have the right to access, rectify, delete, restrict, port or object to processing of your personal data. To exercise your rights, contact us via the dashboard or at the email address on the contact page.

Retention

We keep personal data only as long as needed to provide the service or meet legal obligations (e.g. tax records). After that, data is deleted or anonymised.