Legal

Privacy Policy

This policy explains how DeepShelf handles information when you visit our website, purchase or activate a licence, use the desktop application, contact us, or enable cloud backups.

Effective date: 14 August 2026

1. Who we are

DeepShelf provides local-first inventory, point-of-sale, reporting, licensing, and optional cloud-backup services for independent stores. In this policy, “DeepShelf”, “we”, “us”, and “our” refer to the operator of the DeepShelf website and services.

Privacy questions and requests can be sent through WhatsApp at +233 54 253 0435.

2. Information we collect

  • Checkout and purchase information: your email address, country, purchase amount and currency, Paystack transaction reference, payment status, order dates, and licence records.
  • Licence and device information: store name, app version, licence identifier, activation dates, and a cryptographic hash of the device identifier used to enforce the one-computer licence.
  • Support communications: information you provide when asking for assistance, recovering a licence, reporting a problem, or contacting us.
  • Website and service information: basic request, security, and diagnostic information that may be produced by our website, hosting, database, and infrastructure providers, such as IP address, browser type, timestamps, and error logs.
  • Optional cloud backups: when enabled, DeepShelf receives a copy of the store’s SQLite database. It can contain inventory, sales, employee, customer, audit, settings, and other information entered into the desktop app.

3. Information that normally stays on your computer

DeepShelf is local-first. Inventory, sales, employee accounts, customer records, reports, settings, and audit history are stored in a local SQLite database on the computer running the app. We do not automatically receive that operational data during ordinary offline use.

If cloud backup is enabled, the local database is uploaded as a backup. The store operating DeepShelf decides what personal information to enter and whether to enable cloud backup.

4. How we use information

  • Process and verify purchases through Paystack.
  • Create, deliver, activate, recover, and protect DeepShelf licences.
  • Enforce licence limits and determine update and backup eligibility.
  • Store, list, restore, verify, and automatically rotate optional cloud backups.
  • Provide customer support and respond to requests.
  • Secure, troubleshoot, maintain, and improve the website and services.
  • Prevent fraud, misuse, and unauthorised access, and comply with lawful obligations.

Depending on the context, we process information to perform our contract with you, with your consent, for legitimate interests such as service security and support, or to comply with legal obligations.

5. Payments

Payments are processed by Paystack. DeepShelf sends Paystack the email address, amount, currency, country, and transaction reference needed to begin and verify payment. DeepShelf does not receive or store your full card number, PIN, mobile-money PIN, or other complete payment credentials. Paystack processes payment information under its own privacy terms.

6. Cookies

We use an essential, secure checkout cookie to connect the browser that started a purchase with the resulting order and licence. It expires after approximately one hour. We do not currently use advertising cookies or behavioural advertising trackers.

7. Service providers and disclosures

We may share the minimum information necessary with providers that help operate DeepShelf, including Paystack for payments, hosting and database providers for the website and licence service, and Cloudflare R2 for optional backup storage. These providers process information under their own terms and security arrangements.

We may also disclose information to professional advisers, to protect rights and service security, in connection with a business transfer, or when required by law or a lawful authority. We do not sell personal information or use it for third-party behavioural advertising.

8. Storage and retention

Order, payment-reference, licence, activation, and support records are retained for as long as reasonably necessary to provide licences and recovery support, maintain security and accounting records, resolve disputes, and meet legal obligations.

Cloud backups are limited to the newest 30 backups and a maximum retained total of 2 GB per licence. Older backups are automatically removed when those limits are exceeded. A single upload cannot exceed 250 MB. Backup access is tied to an active activation and the included backup period.

9. International processing

Some service providers may process or store information outside Ghana. Where this occurs, we take reasonable steps to use providers and arrangements designed to protect the information in accordance with applicable requirements.

10. Security

We use measures intended to protect information, including HTTPS in transit, private backup storage, hashed device identifiers and licence keys, encrypted licence-key recovery records, signed activation receipts, access controls, and checksum verification for cloud backups. No electronic storage or transmission method is completely secure, so absolute security cannot be guaranteed.

11. Store operators and customer data

A store using DeepShelf is responsible for the personal information it enters about customers, employees, and other people. The store must collect and use that information lawfully, give appropriate notices, restrict employee access, and respond to the rights of those individuals. When DeepShelf hosts an enabled cloud backup, we handle its contents to provide the backup service at the store’s direction.

12. Your choices and rights

Subject to applicable law, you may request access to or correction of personal information we hold about you, object to certain processing, withdraw consent where consent is the basis, or request deletion or restriction. Some records may need to be retained for licensing, fraud prevention, accounting, dispute, or legal purposes.

You can also choose not to enable cloud backups and can continue supported daily store operations locally and offline. Contact us through WhatsApp to make a privacy request. You may also raise a concern with Ghana’s Data Protection Commission.

13. Children

DeepShelf is a business product and is not directed to children. A person purchasing a licence or administering the service must have legal capacity to enter into the agreement.

14. Changes to this policy

We may update this policy when the product, service providers, or legal requirements change. The effective date at the top of the page identifies the current version. Material changes will be communicated through the website or another reasonable channel.