1. Information we collect
We collect account details such as name, email address, authentication identifiers, business details, tenant membership, and settings. Vendors may enter catalog, service, staff, customer, order, booking, payment-reference, invoice, support, and uploaded-media information. We also process technical records such as device, browser, IP address, timestamps, security events, and application logs.
2. How we use information
We use information to authenticate users, create and isolate workspaces, provide storefronts and operations, process requested transactions, deliver support, secure and troubleshoot the platform, enforce limits, prevent abuse, maintain records, comply with law, and improve the service.
3. Vendor and platform roles
For information a vendor collects about its customers, staff, and transactions, that vendor determines why the information is used and is responsible for notices, permissions, and lawful handling. Nyanglo processes that information to provide the service and may also process limited information for security, legal compliance, and platform administration.
4. Sharing
We may share information with infrastructure, authentication, storage, communications, payment, analytics, and support providers only as needed to operate the service; with a vendor and its authorized staff; when you direct us; during a legitimate business reorganization; or when required to protect rights, safety, security, or comply with law. We do not sell personal information as a standalone product.
5. Storage and international processing
Information may be stored or processed in locations where Nyanglo or its providers operate. We use access controls and tenant isolation designed to prevent one vendor from accessing another vendor’s records. No internet or storage system can be guaranteed completely secure.
6. Retention
We retain information while an account is active and for a reasonable period afterward for recovery, security, audit, dispute, financial-record, and legal purposes. Different records may require different retention periods. Backups may retain deleted information temporarily until rotated.
7. Your choices and rights
You may update account and business information through the application. Depending on applicable law, you may request access, correction, deletion, restriction, or information about use of your personal data. Some records cannot be deleted immediately because of security, financial, audit, dispute, or legal obligations. Customer requests relating to a vendor’s records should normally be directed to that vendor first.
8. Cookies, local storage, and analytics
Nyanglo uses authentication cookies or tokens and browser storage necessary to maintain sessions, selected workspaces, carts, guest activity, and security state. We also use Google Analytics to understand aggregate traffic and product usage. Google may process device, browser, approximate-location, and interaction information under its own privacy terms. Browser controls or blocking tools may limit analytics collection.
9. Children
Nyanglo is intended for businesses and authorized adult users, not for children to create vendor accounts. Vendors offering services involving children remain responsible for appropriate guardian consent and lawful data handling.
10. Policy changes
We may update this Policy as the service, providers, or legal requirements change. The new version will carry an updated effective date, and we will use reasonable efforts to notify users of material changes. Changes do not remove rights that cannot lawfully be waived.
11. Security incidents
We investigate suspected unauthorized access and will take reasonable containment and notification steps appropriate to the circumstances and applicable law. Vendors should promptly report suspected account compromise.