Privacy Policy

This policy describes how Ztamp handles personal data when you use Ztamp.

Last updated: July 23, 2026

1. Overview

This Privacy Policy explains how Ztamp ("we", "us") collects, uses, and shares information when you use Ztamp (https://ztamp.it), including merchant accounts, customer wallets, public store pages, and order tools.

We process personal data to provide the Service, secure accounts, process payments for merchant purchases, improve reliability, and comply with law. This policy applies globally unless a local notice says otherwise.

2. Information we collect

Account information: name, email address, role (for example merchant or customer), phone number, birthdate where collected for program eligibility, and profile details you choose to provide. If you sign in with Google, we receive basic profile details from that provider as permitted by your settings.

Merchant content: store name, branding, description, store code, discoverability settings, social and contact links, campaign settings, reward terms, product catalog data, and communication handles (such as Messenger or Instagram URLs) you enter.

Customer loyalty data: stamps collected, rewards earned or redeemed, QR/NFC scan and redemption events, and related claim codes linked to your wallet or guest session.

Order data: when you submit an order ticket, we store details you provide (for example name, phone, address, notes, delivery preferences, and line items) so the merchant can fulfill the order.

Usage and device data: device/browser type, IP address, timestamps, pages or screens viewed, and diagnostic logs needed to operate and secure the Service.

Payment metadata: when a merchant purchases a subscription, our payment processors (such as PayMongo for QR Ph and PayPal for card and international checkout) handle card, wallet, or PayPal account details. We receive transaction references, amounts, currency, status, billing interval, provider, and related subscription records — not full payment credentials.

Support tickets: when you submit the contact form at https://ztamp.it/contact, we store your name, email, topic, message, and optional account link so we can respond.

Guest sessions: in limited demo or walk-in flows, we may create a temporary anonymous session so stamps can be collected without a full account.

3. How we use information

Provide and maintain the Service, including authentication, stamp issuance, reward redemption, merchant dashboards, store pages, and order tickets.

Process merchant subscription payments, apply plan entitlements, prevent fraud, and respond to support requests submitted via https://ztamp.it/contact or email.

Send service-related communications (for example security alerts, password resets, or payment receipts via our processors or auth providers).

Operate optional handoff flows that help customers send order tickets to a merchant on Messenger or Instagram after checkout in the Service.

Analyze aggregated usage to improve reliability and features. We do not sell personal data.

4. Legal bases (where applicable)

Where GDPR or similar laws apply, we rely on: contract performance (to deliver the Service), legitimate interests (security, reliability, product improvement), consent (where required for optional features or third-party sign-in), and legal obligation.

5. Sharing

Infrastructure providers: hosting, database, authentication (including Google sign-in where used), and payment processors that help us run Ztamp. They process data under contractual or equivalent safeguards.

Merchants and customers: when you participate in a loyalty program or submit an order, the merchant can see related activity (for example stamps on their card or order ticket details). Merchants are independent controllers of how they use that information in their business.

Messaging platforms: if you choose to send an order ticket via Messenger, Instagram, or similar links, that communication happens on those platforms under their terms and privacy policies.

Legal and safety: we may disclose information if required by law, to protect rights and safety, or to investigate abuse.

Business transfers: if we merge, acquire, or sell assets, user information may transfer as part of that transaction with notice where required.

6. International transfers

We may process and store information in countries other than where you live (including through cloud and payment providers). Where required, we use appropriate safeguards for cross-border transfers.

7. Retention

We keep information while your account is active and for a reasonable period afterward for backups, disputes, billing records, and legal compliance. Merchants may retain program and order records according to their own policies.

You may request deletion subject to exceptions (for example unfinished transactions, fraud prevention, accounting, or legal holds).

8. Your rights

Depending on your location, you may have rights to access, correct, delete, restrict, or port your personal data, and to object to certain processing.

To exercise rights, use our contact form (https://ztamp.it/contact), message us on Facebook (https://www.facebook.com/ztamp.it/), or email support@ztamp.it. We may verify your identity before responding. You may also lodge a complaint with your local data protection authority.

9. Security

We use technical and organizational measures appropriate to the Service, including encryption in transit, access controls, and monitoring. Session credentials are stored using industry-standard practices. No method of transmission or storage is completely secure.

10. Children

The Service is not directed to children under 16 (or the minimum age required in your jurisdiction). We do not knowingly collect personal data from children. Contact us if you believe we have done so.

11. Changes

We may update this Privacy Policy. Material changes will be posted on https://ztamp.it with an updated date. Continued use after changes means you accept the revised policy.

Questions? Submit a ticket or message us on Facebook.