Privacy Policy
Effective 24 August 2026
SmashOrder processes information solely to provide authorised order, cost, profit-readiness and fulfilment functions to participating sellers and their staff. For Etsy member information, SmashOrder acts as a service provider to the participating seller; the seller remains responsible for its customer relationship and instructions.
Information we process
We may process registration name, organisation name, email address, password hash, terms acceptance and email-verification status; staff roles; shop identifiers; encrypted OAuth credentials; order and transaction details; seller-entered listing drafts and images; product and customisation information; fulfilment names and shipping addresses; shipment tracking; cost records; audit events; and limited technical service logs. Unverified registration links expire after 24 hours. Listing images are transmitted to Etsy and are not retained as a separate permanent public file by SmashOrder. SmashOrder does not request Etsy passwords and does not request buyer email access unless Etsy separately approves that field and the application purpose requires it.
Purpose and legal basis
Information is used only to provide the requested service, secure accounts, synchronise authorised shop data, support fulfilment, calculate operational figures, investigate failures and meet legal obligations. Shop and buyer data is not sold, used for advertising, or used to train artificial-intelligence models.
Sharing and storage
Data is shared only with Etsy when an authorised connection or fulfilment action requires it, and with infrastructure providers needed to operate SmashOrder. The application is hosted by Vercel and uses a managed PostgreSQL database provided by Supabase, configured in Australian regions where available. Cross-border processing may occur when communicating with Etsy or infrastructure support systems.
Security
Connections use HTTPS. OAuth credentials, addresses and personalisation answers are encrypted; access is restricted by organisation membership and fixed staff roles; sensitive connection, fulfilment and administrative actions are audited. Credentials are not exposed to browsers or client-side logs.
Retention
Buyer fulfilment information for completed or cancelled orders is normally removed or irreversibly de-identified 180 days after the order's last update. Open-order information is retained while needed for fulfilment. Financial totals and limited security or audit evidence may be retained longer when required for legitimate operations or law. A verified seller may request earlier disconnection or deletion.
Your choices
Authorised sellers may disconnect a shop and request access, correction or deletion of their organisation's data. Buyer requests received by a seller should be handled through that seller. The seller can contact SmashOrder when assistance is required to fulfil a verified request.
Contact
Privacy, access, correction and deletion requests may be sent to SmashOrder at the monitored address support@smashorder.com.