Privacy Policy

Last updated: [DATE]

This Privacy Policy explains how ROPELS ("ROPELS", "the Platform", "we", "us", or "our") collects, uses, discloses, and safeguards information when you use our website, marketplace, point-of-sale ("POS") software, and any shop website or storefront hosted on the Platform (collectively, the "Services"). ROPELS is operated by [COMPANY LEGAL NAME], a company organized under the laws of [STATE/COUNTRY] ("Company").

ROPELS is a multi-tenant platform: independent businesses ("Merchants," "Tenants," or "Shops") use ROPELS to run point-of-sale, inventory, appointments, and their own public storefront. When you interact with a Shop through the Platform — as a customer placing an order, booking an appointment, or browsing a storefront — your information may be collected by us as the platform provider and also used directly by that Shop, which acts as an independent data controller for its own transactions. This Policy covers our handling of information; each Shop is separately responsible for how it uses the data of its own customers, in addition to its obligations under this Policy and any agreement with us.

1. Information We Collect

Information you provide directly:

Information collected automatically:

Information from third parties: if a Shop connects a payment gateway, shipping provider, or other integration, we may receive confirmation data (such as payment status) from that provider.

2. How We Use Information

We do not sell your personal information. We do not use your data to serve third-party advertising.

3. How Information Is Shared

4. Data Retention

We retain transaction, booking, and account records for as long as needed to provide the Services, satisfy the legal and tax recordkeeping obligations of Shops (including pharmacy/controlled-substance records, where applicable, for the period required by applicable law), resolve disputes, and enforce our agreements. When a Shop's account is closed, its historical transaction records may be retained for the periods described above even though the Shop is no longer active.

5. Your Choices and Rights

6. Data Security

We use reasonable administrative, technical, and physical safeguards designed to protect information against unauthorized access, alteration, disclosure, or destruction, including tenant-level data isolation in our database architecture. However, no method of transmission or storage is 100% secure. We cannot guarantee absolute security, and you provide information at your own risk. In the event of a data breach affecting your personal information, we will notify affected users and/or relevant authorities as required by applicable law.

7. Children's Privacy

The Services are not directed to children under 16, and we do not knowingly collect personal information from children under 16. If we learn we have collected such information, we will delete it promptly.

8. International Users

The Platform may be accessed from multiple countries. By using the Services, you consent to your information being processed and stored in the country where our servers are located, which may differ from your own country and may have different data protection laws.

9. Third-Party Links and Integrations

Shop storefronts, payment gateways, maps, and social media links may direct you to third-party sites and services not operated by us. We are not responsible for the privacy practices of third parties. Review their policies separately.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be reflected by an updated "Last updated" date above, and, where required by law, we will provide additional notice. Continued use of the Services after a change constitutes acceptance of the revised Policy.

11. Contact Us

Questions about this Privacy Policy can be sent to [CONTACT EMAIL] or via the support channels listed on our website.

Disclaimer: this Privacy Policy is a general template provided for informational purposes and does not constitute legal advice. It should be reviewed by qualified legal counsel to confirm compliance with the specific laws applicable to your business, users, and jurisdictions (which may include GDPR, CCPA/CPRA, HIPAA-adjacent state pharmacy laws, or other regional data-protection regimes) before being relied upon.