This page summarizes how Plavendo processes personal data in the product.
Plavendo is the data controller for information collected and processed on the platform. When a vendor gains access to a customer's contact details, the vendor becomes an independent data controller for its subsequent processing.
Plavendo may process email address, name, phone number, messages, account details, vendor profile, subscription status, and technical security data needed for operation and protection against misuse.
The data is used for login, vendor pages, connecting contacts, subscription management, support, security, abuse prevention, and to comply with legal obligations.
Contact details and messages in an inquiry are stored for at most one year. If an unconnected vendor does not activate its page and retrieve the lead within one year, the customer's personal data is deleted from that inquiry.
For the customer referral promotion, Plavendo processes referral codes, a functional first-party cookie lasting 30 days, persistent user-bound intent, vendor relationships, first paid plans, fixed reward records, campaign and velocity-review evidence, fraud and risk signals, Stripe account identifiers, payouts, and terms acceptances. Unused visits and short-lived risk evidence are normally deleted within 90 days. Pseudonymized financial, legal, and audit records may be retained after account deletion. Stripe handles bank details and identity documents; Plavendo does not store them.
You can request access, rectification, erasure, restriction, or object to processing under the data protection rules. You can also lodge a complaint with the competent supervisory authority.