← Back to home

Privacy Policy

Last updated: 29 August 2026

This Privacy Policy explains how Store Soft ("Store Soft", "the app", "we", "us") handles information when you use our store-management application on Windows and Android. Store Soft is designed to be offline-first: your business data lives on your own device, and the app works without an account or an internet connection. One optional feature, Google Drive backup (to your own Google account), is off by default and only sends data when you turn it on. A second optional feature, multi-device sync to our secure cloud backend, is a paid tier that is also off by default and only sends data if the shop owner creates an account and turns it on. The app sends a small amount of anonymous usage analytics. If you first submitted a website request and installed through its private link, it also sends the limited lead milestones described in Section 8.

1. Who we are

Store Soft is a point-of-sale and store-management app for small shops (primarily Algerian épiceries and superettes). It is developed and operated by the Store Soft team. You can reach us at younes.mimene@gmail.com.

2. Scope of this policy

This policy covers the Store Soft desktop and mobile applications and this website. It does not cover third-party services you may separately use (for example, Google), which are governed by their own privacy policies.

Website download requests

If you request access to Store Soft through our website, we collect the name, email address, phone or WhatsApp number, and shop type that you submit. We also record basic campaign information included in the page link (such as source and campaign name) and the submission time. We use this information only to process your request, add the email address you supplied to the Google Play test, send installation instructions, provide follow-up support, and understand the effectiveness of our campaigns.

Download requests are stored in our secure Supabase backend and copied to a private Google Sheet used by the Store Soft team to manage follow-up. We do not sell these details or use them for unrelated advertising. You may ask us to correct or delete a request using the contact details at the end of this policy.

Each request receives a random private link containing only a six-character opaque code. The link contains no name, phone number, or email address. If you use it to open Google Play and then install Store Soft, the code may let us connect the limited trial milestones in Section 8 to your request so we can provide timely setup help.

Meta advertising measurement on the website

The Store Soft download page uses the Meta Pixel to record a page visit and, only after the website successfully saves a request, a standard Lead event. Meta may receive browser and device information, IP address, cookies or similar identifiers, the page URL, and campaign parameters. We use these events to attribute requests to Facebook and Instagram ads, measure campaign performance, and improve ad delivery. We do not explicitly include the name, email address, phone number, or shop type entered in the form in the events we send. Meta processes these events under its own Privacy Policy.

3. Data stored on your device

Store Soft stores the information you enter to run your shop in a local database on your own device only. This may include:

By default, your shop data stays on your device. In its standard offline mode Store Soft does not transmit your products, sales, customers or any business records to us or to any third party. Your business records leave your device only when you choose to turn on an optional feature — Google Drive backup (to your own Google account, see Section 5) or the optional multi-device sync tier (to our secure backend, see Section 4) — or when you manually export or share a backup file yourself. Separately, the app sends a small amount of anonymous usage analytics that never contains any business data (see Section 8).

4. Multi-device sync (optional)

Status: Multi-device sync is available as an optional paid tier. It is off by default: a shop that never enables it has no account, shows no sync sign-in, and uploads no business data to our cloud backend. If you do enable it and later want your account and synced data removed, see Delete your account and data.

Multi-device sync is an optional feature for shops that want the same data on more than one device (for example a second till or the owner's phone). It is off by default and is only active if the shop owner creates a Store Soft cloud account and enables it. Most shops run a single device fully offline and never use it.

The store account

What is uploaded

When sync is enabled, your shop's business records — products, prices, stock, suppliers, sales and receipts, customers, debt (credit / الكريدي) records, repair tickets and staff accounts — are uploaded to our cloud backend so they appear on every enrolled device of the same shop. Unlike Drive backup, these copies are stored on a server we operate (our Supabase backend, hosted in the European Union) for as long as sync is active on your account.

How it is protected

You can disconnect a device, disable sync, or ask us to delete your store's cloud data at any time (see Sections 11 and 15).

5. Google account & Google Drive backup (optional)

Google Drive backup is an optional feature. It is off by default and is only used if you choose to sign in with Google from within the app.

What we access

What we cannot access

The drive.appdata permission technically prevents the app from seeing or opening any of your other Google Drive content. Store Soft cannot read, list, modify or delete your documents, photos, spreadsheets or any other files in your Drive. It can only see the backup files it placed in its own hidden folder.

What we do with it

The backups are stored in your Google account, under your control. We never receive a copy.

6. Google API Services User Data Policy — Limited Use

Store Soft's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically:

7. Camera

On Android, Store Soft uses the camera only to scan product barcodes in real time (when you open a scanner to add a product or ring up a sale). The camera preview is processed on your device to read the barcode; images are not stored and are not transmitted anywhere. The app does not access your photo gallery.

8. Analytics, lead milestones & diagnostics

To understand how many shops install and open the app and which versions and platforms are in use, Store Soft sends a small amount of anonymous usage data on startup. This helps us fix bugs and prioritise improvements. It contains no business data and nothing that identifies you personally.

Download page measurement

We save a random visitor ID in your browser's local storage to count distinct download-page visitors, including repeat visits, rather than page loads. We record only this ID, a broad device category (Android, Windows or other), and the first visit time. Clearing browser data or using another browser creates a new visitor. Browsers that block this storage are omitted. The visitor ID is not saved alongside a lead. After you submit a request, its broad device category and Android/Windows download clicks may be attached to that request using its opaque referral code. Repeated clicks count once per request and platform.

Lead-attributed trial milestones

This applies only when an Android installation receives the opaque six-character code from a private website-request link. Store Soft keeps that code in secure device storage and queues delivery offline. We record only: Google Play link opened, app first opened, store setup completed, first real product created, first sale completed, Sync enabled, and staff user added. These milestones are connected to the submitted request and are therefore not anonymous.

We do not send product names, barcodes, prices, stock, customer or supplier data, sale contents, sale or purchase amounts, employee names, or UI clicks. Demo products and the app's hidden repair-service product are excluded. These records are used for onboarding, support, lead follow-up, and aggregate funnel measurement, not advertising delivery.

What is sent

What is never sent

The app never sends your products, prices, sale contents, customers, suppliers, debts or any other business records. The limited yes/no milestones above reveal only that a setup or business boundary occurred. Anonymous analytics do not collect your name, email, phone number, contacts, precise location, or any advertising identifier. The installed Store Soft app contains no advertising and no third-party advertising SDKs; this data is not sold, not shared, and not used for advertising. The Meta Pixel used on the website download page is separate from the installed app and is described in Section 2.

Separately, the app keeps a full diagnostic error log on your own device for troubleshooting, which you can view and share with our support yourself (for example over WhatsApp).

Crash & error reports

When the app encounters an error, it also sends a stripped, anonymous crash report to our own backend so we can find and fix problems. Each report contains only: the one-way hashed device identifier, platform, OS and app version, the error type, a trimmed error message and stack trace, and the last few in-app actions (as short labels). It does not include your customer list, product catalogue, prices or sales. A trimmed error message can, in rare cases, contain a small fragment of business text; we use it only to fix the app, never for advertising, and never share it with third parties.

9. How we use information

10. Sharing & disclosure

We do not sell, rent or trade your information. We do not share your shop data, your Google data, or your analytics data with third parties for their own purposes. Information may only leave your device when:

We may disclose information if required by law, or to protect the security and integrity of the service. We host our backend with infrastructure providers (Supabase / its cloud provider, in the EU) acting solely as our processors.

11. Data retention & deletion

12. Security

Local PINs and staff passwords are stored only as salted SHA-256 hashes, never in plain text. Data transferred to Google Drive or to our sync backend is sent over encrypted HTTPS connections; synced data is isolated per store by row-level security so one shop cannot access another's. No method of storage or transmission is 100% secure, but we design the app to keep your data on your device and under your control by default.

13. Children's privacy

Store Soft is a business tool intended for shop owners and their staff. It is not directed to children and we do not knowingly collect personal information from children.

14. Changes to this policy

We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top of this page. Continued use of the app after changes take effect constitutes acceptance of the updated policy.

15. Contact us

Questions about this policy or your data? Message us on WhatsApp (+213 654 33 86 49) or email younes.mimene@gmail.com.