No raw card data
Card and payment details are processed securely by Stripe. Venroys does not store full card numbers or CVC codes.
This policy explains in clear language what data Venroys processes, why it is needed, and the choices and rights available to you.
Venroys OÜ is established in Estonia and is subject to the GDPR. Depending on the service, Venroys, an independent seller and a service provider may each have a separate role.
Card and payment details are processed securely by Stripe. Venroys does not store full card numbers or CVC codes.
A seller is responsible for its products, customer service and its own legal obligations. Venroys operates the technical infrastructure.
You can exercise privacy rights, stop marketing and manage non-essential cookies.
Founders: Constantino Aemilius Darshan Changoe and Muhammet Fatih Koçyigit
벤로이스 이용 방식(쇼핑, 계정 생성, 문의, 플랫폼 내 판매 등)에 따라 다음과 같은 개인정보를 처리할 수 있습니다.
| 범주 | 예시 |
|---|---|
| 신원 및 연락처 정보 | 이름, 청구/배송 주소, 이메일 주소, 전화번호, 계정 ID |
| 결제 및 청구 데이터 | 결제 제공업체 토큰, 거래 ID, 송장 세부 정보, 지급 세부 정보(판매자용) |
| 주문 및 이행 데이터 | 주문 품목, 수량, 배송 방법, 배송 상태, 반품/환불 정보 |
| 계정 및 로그인 정보 | 사용자 이름/이메일, 해시 처리된 비밀번호, 계정 설정, 로그인 타임스탬프 |
| 통신 및 동의 데이터 | 지원 메시지, 뉴스레터 구독 상태, 쿠키 동의 선택 사항 |
| 기술 및 장치 데이터 | IP 주소, 브라우저 유형, 장치 정보, 세션 로그, 보안 이벤트 |
| 사용량 및 행동 데이터 | 페이지 조회수, 검색어, 클릭수, 스크롤 동작, 제품 조회수 |
| Seller and verification data | Business details, representatives, date of birth, tax details, verification status and Stripe Connect account references |
| Storefront and content data | Brand name, domain, website content, product media, theme settings and published pages |
| Derived risk and trust signals | Delivery outcomes, refund and chargeback rates, policy status, suspicious activity and marketplace progress |
당사는 건강 정보와 같은 민감한 개인 정보를 의도적으로 수집하지 않습니다. 주문 메모, 고객 지원 메시지 또는 기타 자유 입력란에 민감한 개인 정보를 입력하지 마십시오. 단, 꼭 필요한 경우는 예외입니다.
| 목적 | 법적 근거 (GDPR) | 세부 |
|---|---|---|
| 계정 생성 및 인증 | 계약의 이행 (제6조(1)(b)) | 계정을 생성하면 안전하게 로그인할 수 있으며, 계정을 항상 사용할 수 있습니다. |
| 주문 처리, 결제 및 배송 | 계약의 이행 (제6조(1)(b)) | 구매 처리, 주문 확인, 배송 준비, 반품 또는 환불 관리를 위해 사용됩니다. |
| 고객 지원 및 서비스 커뮤니케이션 | 정당한 이익 (제6조(1)(f)) | 질문에 답변하고, 문제를 조사하고, 지원 품질을 개선하기 위해서입니다. |
| 마케팅 커뮤니케이션 및 프로모션 제안 | 동의 (제6조(1)(a)) | 법률상 요구되는 경우 및 귀하가 동의한 경우에만 정보를 제공합니다. 언제든지 구독을 취소하거나 동의를 철회할 수 있습니다. |
| 보안, 사기 방지 및 플랫폼 무결성 | 정당한 이익(제6조(1)(f)) 및 법적 의무(제6조(1)(c)) | 악용을 감지하고, 계정을 보호하고, 사기를 방지하고, 보안 관련 의무를 준수하기 위해서입니다. |
| 법률, 세금 및 회계 규정 준수 | 법적 의무 (제6조(1)(c)) | 회계, 세금, 보고 및 기타 법적 요건을 충족하기 위해서입니다. |
| Seller verification and payouts | Contract, legal obligation and legitimate interests | To onboard sellers, verify identity and business details, enable payouts and limit financial fraud. |
| Marketplace trust and policy administration | Legitimate interests and contract | To monitor seller performance, review marketplace applications and protect customers and the platform. |
| Service | Role and data | More information |
|---|---|---|
| Stripe | Payments, direct charges, seller verification, fraud prevention and payouts. Stripe receives data directly through secure payment and onboarding components. | Stripe Privacy |
| Printful | Optional product, fulfillment, shipping, tracking and return services. Name, address, contact and order data may be shared for fulfillment. | Printful Privacy |
| Hosting and database | Cloud hosting, secure storage, backups, network delivery and operational logging. | Contractually restricted providers |
| Email and communications | Transactional messages, verification, order updates, support and consented marketing. | Necessary contact and message data only |
Specific vendors and subprocessors may change as our infrastructure changes. We assess providers before they process personal data.
Some providers or their subprocessors are located outside the European Economic Area. Where the GDPR requires it, we rely on an adequacy decision, European Commission Standard Contractual Clauses or another valid safeguard. We assess supplementary organizational and technical measures where appropriate.
European Commission Standard Contractual Clauses ↗| 데이터 범주 | 보존 기간 |
|---|---|
| 송장 및 거래 기록 | At least 7 years under applicable Estonian accounting and tax rules, calculated from the legally prescribed starting date |
| 고객 계정 데이터 | 계정 유지 기간 동안 및 계정 비활성화 또는 폐쇄 후 일정 기간 동안 |
| 마케팅 선호도 및 동의 기록 | 동의가 철회되거나 더 이상 동의를 증명할 필요가 없을 때까지 |
| 보안, 로그 및 분석 데이터 | 보안 및 분석 목적에 적합한 제한된 기간 동안 |
| Seller KYC and payout records | While needed for the payment relationship and afterward as required for financial, anti-fraud and legal obligations; Stripe also applies its own retention periods |
| Order and fulfillment records | As needed for delivery, returns, disputes, warranties and applicable accounting and tax periods |
After the applicable period, we delete or anonymize data unless it remains necessary for a legal claim, investigation, dispute or other legal obligation.
당사는 개인정보 보호를 위해 다음과 같은 적절한 기술적 및 조직적 조치를 시행합니다.
No system is entirely risk-free. Protect your account with a unique password and two-factor authentication where available.
거주 지역 및 적용되는 법률에 따라 다음과 같은 권리가 있을 수 있습니다.
Send requests to info@venroys.com. We may request additional information to verify your identity. We normally respond within one month; the GDPR permits a reasoned extension for complex requests.
Venroys uses security, fraud and performance indicators such as delivery outcomes, refunds, chargebacks, account age, policy incidents and verification status. These signals support risk management and marketplace review. Marketplace access is not automatically guaranteed by a score. Decisions with a material effect may be reviewed by a person, and you may contact us to request an explanation or review.
We investigate suspected personal-data breaches, limit their effects and notify the competent authority and affected people where legally required. Report suspected security issues to info@venroys.com without sending passwords or complete payment details.
Sellers receiving personal data through Venroys must use it lawfully, securely and only for permitted business purposes. They may not use customer data for unsolicited marketing, sell it or disclose it outside necessary order and support processes. Sellers must provide their own privacy information where required and respond to data-subject requests for which they are responsible.
Venroys는 관련 법률에서 요구하는 연령(예: 일부 관할 지역에서는 16세) 미만의 아동을 대상으로 하지 않습니다. 당사는 필요한 동의 없이 아동의 개인 정보를 고의로 수집하지 않습니다.
당사는 본 개인정보 처리방침을 수시로 업데이트할 수 있습니다. 상단의 "최종 업데이트" 날짜는 이 페이지가 마지막으로 변경된 시점을 나타냅니다. 중대한 변경 사항이 있을 경우, 당사는 웹사이트, 이메일 또는 계정 알림을 통해 적절한 방식으로 사용자에게 알릴 수 있습니다.
Founders: Constantino Aemilius Darshan Changoe and Muhammet Fatih Koçyigit
info@venroys.com