No raw card data
Card and payment details are processed securely by Stripe. Venroys does not store full card numbers or CVC codes.
This policy explains in clear language what data Venroys processes, why it is needed, and the choices and rights available to you.
Venroys OÜ is established in Estonia and is subject to the GDPR. Depending on the service, Venroys, an independent seller and a service provider may each have a separate role.
Card and payment details are processed securely by Stripe. Venroys does not store full card numbers or CVC codes.
A seller is responsible for its products, customer service and its own legal obligations. Venroys operates the technical infrastructure.
You can exercise privacy rights, stop marketing and manage non-essential cookies.
Founders: Constantino Aemilius Darshan Changoe and Muhammet Fatih Koçyigit
بحسب كيفية استخدامك لـ Venroys (التسوق، إنشاء حساب، الاتصال بنا، أو البيع على المنصة)، قد نقوم بمعالجة الفئات التالية من البيانات الشخصية:
| فئة | أمثلة |
|---|---|
| بيانات التعريف والاتصال | الاسم، عنوان الفوترة/الشحن، عنوان البريد الإلكتروني، رقم الهاتف، معرف الحساب |
| بيانات الدفع والفواتير | رمز مزود الدفع، ومعرف المعاملة، وتفاصيل الفاتورة، وتفاصيل الدفع (للبائعين) |
| بيانات الطلب والتنفيذ | الأصناف المطلوبة، والكميات، وطريقة الشحن، وحالة التسليم، ومعلومات الإرجاع/الاسترداد |
| بيانات الحساب وتسجيل الدخول | اسم المستخدم/البريد الإلكتروني، كلمة المرور المشفرة، تفضيلات الحساب، طوابع تسجيل الدخول الزمنية |
| بيانات الاتصال والموافقة | رسائل الدعم، وحالة الاشتراك في النشرة الإخبارية، وخيارات الموافقة على ملفات تعريف الارتباط |
| البيانات الفنية وبيانات الجهاز | عنوان IP، نوع المتصفح، معلومات الجهاز، سجلات الجلسة، أحداث الأمان |
| بيانات الاستخدام والسلوك | الصفحات التي تمت مشاهدتها، استعلامات البحث، النقرات، سلوك التمرير، المنتجات التي تمت مشاهدتها |
| Seller and verification data | Business details, representatives, date of birth, tax details, verification status and Stripe Connect account references |
| Storefront and content data | Brand name, domain, website content, product media, theme settings and published pages |
| Derived risk and trust signals | Delivery outcomes, refund and chargeback rates, policy status, suspicious activity and marketplace progress |
لا نقوم بجمع فئات خاصة من البيانات الشخصية (مثل البيانات الصحية) عن قصد. لذا، يُرجى عدم إدراج أي معلومات شخصية حساسة في ملاحظات الطلب أو رسائل الدعم أو أي حقول نصية أخرى إلا إذا كان ذلك ضروريًا للغاية.
| غاية | الأساس القانوني (اللائحة العامة لحماية البيانات) | تفاصيل |
|---|---|---|
| إنشاء الحساب والتحقق من الهوية | تنفيذ العقد (المادة 6(1)(ب)) | لإنشاء حسابك، يمكنك تسجيل الدخول بشكل آمن، والحفاظ على حسابك متاحًا. |
| معالجة الطلبات والدفع والتسليم | تنفيذ العقد (المادة 6(1)(ب)) | لمعالجة عمليات الشراء، وتأكيد الطلبات، وترتيب الشحن، وإدارة عمليات الإرجاع أو استرداد الأموال. |
| دعم العملاء والتواصل مع خدمة العملاء | المصالح المشروعة (المادة 6 (1) (و)) | للإجابة على الأسئلة، والتحقيق في المشكلات، وتحسين جودة الدعم. |
| الاتصالات التسويقية والعروض الترويجية | الموافقة (المادة 6 (1) (أ)) | فقط عندما يقتضي القانون ذلك وبعد موافقتك. يمكنك إلغاء الاشتراك أو سحب موافقتك في أي وقت. |
| الأمن، ومنع الاحتيال، وسلامة المنصة | المصالح المشروعة (المادة 6(1)(و)) والالتزامات القانونية (المادة 6(1)(ج)) | للكشف عن إساءة الاستخدام، وتأمين الحسابات، ومنع الاحتيال، والامتثال للالتزامات المتعلقة بالأمن. |
| الامتثال القانوني والضريبي والمحاسبي | الالتزام القانوني (المادة 6(1)(ج)) | لتلبية متطلبات مسك الدفاتر والضرائب والتقارير وغيرها من المتطلبات القانونية. |
| Seller verification and payouts | Contract, legal obligation and legitimate interests | To onboard sellers, verify identity and business details, enable payouts and limit financial fraud. |
| Marketplace trust and policy administration | Legitimate interests and contract | To monitor seller performance, review marketplace applications and protect customers and the platform. |
| Service | Role and data | More information |
|---|---|---|
| Stripe | Payments, direct charges, seller verification, fraud prevention and payouts. Stripe receives data directly through secure payment and onboarding components. | Stripe Privacy |
| Printful | Optional product, fulfillment, shipping, tracking and return services. Name, address, contact and order data may be shared for fulfillment. | Printful Privacy |
| Hosting and database | Cloud hosting, secure storage, backups, network delivery and operational logging. | Contractually restricted providers |
| Email and communications | Transactional messages, verification, order updates, support and consented marketing. | Necessary contact and message data only |
Specific vendors and subprocessors may change as our infrastructure changes. We assess providers before they process personal data.
Some providers or their subprocessors are located outside the European Economic Area. Where the GDPR requires it, we rely on an adequacy decision, European Commission Standard Contractual Clauses or another valid safeguard. We assess supplementary organizational and technical measures where appropriate.
European Commission Standard Contractual Clauses ↗| فئة البيانات | فترة الاحتفاظ |
|---|---|
| الفواتير وسجلات المعاملات | At least 7 years under applicable Estonian accounting and tax rules, calculated from the legally prescribed starting date |
| بيانات حساب العميل | طوال مدة صلاحية الحساب وفترة محدودة بعد عدم النشاط أو الإغلاق |
| تفضيلات التسويق وسجلات الموافقة | إلى حين سحب الموافقة أو انتفاء الحاجة إليها لإثباتها |
| بيانات الأمان والسجلات والتحليلات | لفترة محدودة تتناسب مع أغراض الأمن والتحليلات |
| Seller KYC and payout records | While needed for the payment relationship and afterward as required for financial, anti-fraud and legal obligations; Stripe also applies its own retention periods |
| Order and fulfillment records | As needed for delivery, returns, disputes, warranties and applicable accounting and tax periods |
After the applicable period, we delete or anonymize data unless it remains necessary for a legal claim, investigation, dispute or other legal obligation.
نقوم بتطبيق التدابير التقنية والتنظيمية المناسبة لحماية البيانات الشخصية، بما في ذلك:
No system is entirely risk-free. Protect your account with a unique password and two-factor authentication where available.
بحسب موقعك والقانون المعمول به، قد يكون لك الحق في:
Send requests to info@venroys.com. We may request additional information to verify your identity. We normally respond within one month; the GDPR permits a reasoned extension for complex requests.
Venroys uses security, fraud and performance indicators such as delivery outcomes, refunds, chargebacks, account age, policy incidents and verification status. These signals support risk management and marketplace review. Marketplace access is not automatically guaranteed by a score. Decisions with a material effect may be reviewed by a person, and you may contact us to request an explanation or review.
We investigate suspected personal-data breaches, limit their effects and notify the competent authority and affected people where legally required. Report suspected security issues to info@venroys.com without sending passwords or complete payment details.
Sellers receiving personal data through Venroys must use it lawfully, securely and only for permitted business purposes. They may not use customer data for unsolicited marketing, sell it or disclose it outside necessary order and support processes. Sellers must provide their own privacy information where required and respond to data-subject requests for which they are responsible.
لا يُقصد بـ Venroys أن يستخدمها الأطفال دون السن القانونية التي تُلزمهم بالموافقة على معالجة بياناتهم بأنفسهم (على سبيل المثال، 16 عامًا في بعض الدول). ولا نقوم بجمع بيانات شخصية من الأطفال دون الحصول على موافقتهم.
قد نقوم بتحديث سياسة الخصوصية هذه من حين لآخر. يُشير تاريخ "آخر تحديث" في أعلى الصفحة إلى تاريخ آخر تعديل أُجري عليها. في حال إجراء تغييرات جوهرية، قد نُخطرك عبر الموقع الإلكتروني أو البريد الإلكتروني أو إشعارات حسابك، حسب الاقتضاء.
Founders: Constantino Aemilius Darshan Changoe and Muhammet Fatih Koçyigit
info@venroys.com