LEGAL

Privacy Policy

Effective October 4, 2026. Version 2026-10-04. This policy describes the 1Kassir website, account and licensing services, and Store Desktop. It distinguishes cloud account information from retail records on your computer.

1. Accounts and security

We process account email, display name, language, account status, profile changes, and creation/update times. Passwords are stored as hashes, rather than readable passwords. Authentication uses session credentials, expiration and revocation records, verification and recovery token records, and device authorization information.

Security history includes login success or failure, IP addresses, user agents, session activity, device identifiers and names, operating-system platform, authorization and last-seen times, and revocation status. Policy acceptance includes policy type/version, acceptance time, and available IP/user-agent evidence. Audit records identify relevant account and administrative actions, targets, changes, and reasons.

2. Licensing and subscriptions

The control plane stores plans, entitlements, subscription source/status, billing intervals, access periods, scheduled changes, and subscription history. For Paddle orders, the integration may retain customer, subscription, transaction, price, and event identifiers and order/status information needed to reconcile access and prevent duplicate processing. Production paid checkout is currently unavailable.

Paddle is Merchant of Record for orders it processes and handles payment/order information under its Privacy Policy. 1Kassir does not receive or store raw card numbers or security codes. Subscription records are not payment credentials.

3. Local retail records and backups

Store Desktop holds products, inventory, sales, returns, purchases, cash sessions, expenses, customer/supplier records, reports, local users, and local audits in the encrypted database on your computer. These retail records are not hosted in the 1Kassir cloud control-plane database. You determine what retail information to collect and who may access it.

Backups and migration packages are encrypted files created at destinations you choose. Restore and migration read these files locally using recovery material. 1Kassir does not upload them to an operated cloud backup service. If you choose a synchronized folder, its provider may transfer or store those files under its own terms. Local entitlement caches and synchronization state support authorization and offline operation.

4. Cookies, diagnostics, and communications

The website uses account-session and request-verification cookies to keep you signed in and protect account actions. These are functional security mechanisms; this policy does not authorize advertising trackers. Hosting/application diagnostics may include request metadata, routes, response status, errors, timestamps, and security information needed to operate and protect the service. Do not include secrets or unnecessary retail records in diagnostics you share.

If you contact a published support channel, your message and contact details are used to handle the inquiry. The contact page has no message-submission form. Automated production verification and recovery email delivery is currently unavailable; Resend is not an active production email provider. Development/staging email delivery is not a production service.

5. Purposes, providers, and international processing

Control-plane information provides accounts, device authorization, licensing, subscription administration, policy evidence, fraud/abuse prevention, security investigations, service reliability, inquiry handling, and compliance with applicable obligations. Information may be disclosed when legally required, to protect lawful rights or service security, or to providers performing these functions. We do not sell local retail records or operate a cloud retail-data service.

Cloudflare provides production website/API hosting, control-plane database infrastructure, and operational logging. Paddle processes orders when Paddle billing is used. Providers may process information internationally; applicable provider arrangements and legally required safeguards govern such processing. No particular data-residency guarantee or certification is claimed. Providers of storage destinations you choose are separate from 1Kassir control-plane hosting.

6. Retention and security

Account, subscription, acceptance, and audit information is retained while needed to provide the account, establish access/transaction history, investigate abuse, resolve disputes, or meet applicable obligations. Credential expiration or revocation does not necessarily erase security history. No universal automatic deletion period is promised. Deletion requests may require identity verification and may be limited by legal, security, or record-preservation duties.

You control retention of local databases, exports, backup destinations, and copies on other devices. Closing cloud access does not automatically delete those files. Subscription changes do not silently erase local historical financial records.

Measures include HTTPS transport, hashed passwords and server-side token verification, scoped account/device access, secure sessions, audit evidence, local database encryption, and encrypted backups. Desktop credentials use operating-system credential storage. Security also depends on your device, permissions, and recovery-material handling; no measure eliminates all risks.

7. Choices, rights, and requests

You can update profile details, revoke sessions/devices, and export available cloud account information using your account's Privacy & export screen. Cloud export does not export the local store database; use Desktop data-protection tools for local backups and migration.

Depending on applicable law, you may request access, correction, deletion, restriction, portability, or objection, and complain to a competent privacy authority. Rights are subject to applicable conditions and exemptions. Refer to the available routes on Contact for inquiries; Paddle payment-data requests go to Paddle. Account tools are not an automated account-deletion service. Never send recovery secrets or an unredacted database as proof of identity.

8. Changes

Updates carry a new version and effective date. Material processing changes will be communicated through the service or another available account channel as appropriate, with consent requested where legally required. Historical acceptance evidence is preserved. This policy does not claim GDPR, CCPA, or other compliance certification.