Who we are
The service is operated by Devsnest (kismet@devsnest.net). For data about a store's customers, the store is the controller and we process that data on the store's instructions, which it gives by enabling features in the plugin.
What we receive, and when
- On connecting a site: the site URL and name, the administrator's email address, store currency and country, and the WooCommerce and plugin versions. Used to identify the site, show its plan and contact the administrator about the service.
- Courier history (if enabled): the customer's phone number, sent when an order is assessed or when staff request a lookup. It is passed to the courier companies the store has enabled and their delivery totals are returned. Results are cached for up to 24 hours.
- Fraud network (if enabled): SHA-256 hashes of the customer's normalised phone number, email address, device identifier and IP address — never the raw values — together with the order outcome (for example delivered or refused) or a block/unblock by the store. Other connected stores receive only aggregate counts for a hash, never which store reported it.
- SMS (if the service is the store's SMS provider): the customer's phone number and the text of the verification message, kept only as long as needed to deliver it and to count credits.
- Google Ads (if connected): the OAuth grant for the store's Google Ads account, the list of its accounts and conversion actions, and the conversion data the store uploads. Refresh tokens are stored encrypted.
- Payments: handled by Stripe. We store Stripe's customer and subscription identifiers, never card details.
What we do not do
We do not sell data, use it for advertising, or share raw customer data between stores. Network data is only ever exchanged as hashes.
Retention
Site records are kept while the site is connected and for 12 months after disconnection for billing records. Courier results expire after 24 hours. Fraud-network records are kept for 24 months from the last report. Usage counters are kept per billing month for 24 months.
Your rights
A store can disconnect at any time from the plugin. Customers of a store should contact that store; a store can ask us to delete the hashes it reported by emailing us with its site id. Where the GDPR or a similar law applies, you may also request access to or erasure of data we hold about you by emailing us.
Security
Traffic is encrypted in transit; site keys are stored only as hashes; tokens are stored encrypted at rest. Access to production data is limited to the people operating the service.