Compliance & Trust

Privacy Policy

This Privacy Policy describes how RetailCore Systems ("we," "us," or "our") collects, uses, and discloses your personal information when you use our technical retail infrastructure, including our POS systems and back-office management tools.

LAST UPDATED: OCTOBER 24, 2023

analytics

1. Information We Collect

Direct Identifiers

We collect information that identifies you or your business entities, including names, email addresses, and tax identification numbers.

  • check_circle Business contact details
  • check_circle Operator authentication logs

Transactional Metadata

Hardware interaction data, including IP addresses, POS terminal IDs, and biometric hash data for secure authentication.

  • check_circle Terminal telemetry
  • check_circle Network audit trails
settings_suggest

2. How We Use Information

PURPOSE DATA TYPE RETENTION
Service Delivery Account/Auth CONTRACT TERM
Fraud Prevention Security Logs 7 YEARS
Analytics Anonymized Telemetry PERMANENT
encrypted

3. Data Storage & Military-Grade Encryption

AES-256

All data at rest is encrypted using Advanced Encryption Standard with 256-bit keys.

TLS 1.3

Encryption in transit for all POS-to-cloud communication channels.

SOC2 Type II

Infrastructure audited annually for compliance with global security standards.

gavel

4. Regulatory Compliance

GDPR
CCPA / CPRA
PCI-DSS LEVEL 1
SOC2

RetailCore maintains strict adherence to international data sovereignty laws. We operate as a Data Processor for our merchant clients and a Data Controller for our corporate website visitors.

manage_accounts

5. Exercising Your Data Rights

Questions regarding your privacy?

Our Data Protection Officer (DPO) is available to assist with any technical or legal queries regarding our data handling procedures.