Plain-language overview
Explains the personal data handled by the implemented marketplace features.
This overview helps explain the document, but it does not replace the full policy text.
Legal
The policy reflects implemented account, seller, listing, cart, order, message, support, reporting, moderation, notification, upload, translation, and payment data flows.
Explains the personal data handled by the implemented marketplace features.
This overview helps explain the document, but it does not replace the full policy text.
The repository does not contain verified public controller identity, address, DPO, or privacy-contact details. Those details must be approved before launch. Support and account workflows still collect and process data needed to operate the marketplace.
| Purpose | Data | Likely basis | Provision |
|---|---|---|---|
| Accounts and sessions | Account, auth, security records | Contract and legitimate interests | Required for account use |
| Seller onboarding and listings | Seller profile, business fields, addresses, listing data | Contract, legal obligation, legitimate interests | Required to sell |
| Orders, payments, refunds, disputes | Order, payment, Stripe, ledger, support data | Contract, legal obligation, legitimate interests | Required for checkout and disputes |
| Messages, support, reports | Message/support/report content and metadata | Contract, legitimate interests, legal obligation | Required when used |
| Optional public profile details | Bio, image, public contact preference | Consent or contract, depending on context | Optional |