1. Who We Are
Joumla Store is a wholesale catalog and ordering service for packaging and food-related products in Algeria. In this policy, "Joumla Store", "we", "our", and "us" refer to the operator of the Joumla Store mobile application.
Contact for privacy requests: contact@joumla-store.dz.
2. Scope
This policy applies to the Joumla Store Android application, related backend services, transactional emails, push notifications, and generated order documents. It does not cover third-party websites or services that Joumla Store does not control.
3. Data We Collect
| Category | Examples | Purpose |
|---|---|---|
| Account data | Name, phone number, password hash, account role, account status. | Create accounts, authenticate users, protect admin access. |
| Contact and delivery data | Phone number, wilaya, commune, address, optional map location. | Confirm orders by phone, prepare orders, generate delivery notes. |
| Order data | Cart lines, product snapshots, prices, quantities, payments, BL documents. | Process orders, provide order history, payment tracking, accounting records. |
| Device and notification data | Expo push token, installation identifier, notification permission status. | Send order updates, admin alerts, announcements, and test notifications. |
| Usage and security data | Session cookies, IP-related request logs, failed requests, audit logs. | Operate the service, prevent abuse, diagnose errors, protect accounts. |
| Uploaded media | Product, banner, brand, or category images uploaded by admins. | Display catalog content and manage the back office. |
4. How Data Is Collected
- Directly from users when they sign up, log in, edit profiles, or place orders.
- From admins when they manage catalog, customers, orders, stock, and delivery notes.
- Automatically from the app when it stores sessions, carts, push tokens, and diagnostics.
- From device permissions only after the user grants permission, such as notifications or optional location.
5. How We Use Data
- Provide catalog browsing, favorites, cart, checkout, order history, and delivery notes.
- Call customers to confirm orders before processing.
- Send order status notifications, admin new-order alerts, low-stock alerts, and announcements.
- Manage stock, customer accounts, admin users, payments, and delivery notes.
- Protect the app, detect abuse, maintain audit logs, and debug operational issues.
- Comply with applicable accounting, security, and legal obligations.
6. Legal Bases
Where a legal basis is required, we rely on performance of a contract, legitimate business interests, legal obligations, user consent for optional permissions, and vital operational security interests.
7. Sharing and Processors
We do not sell personal data. We may share limited data with service providers that help operate the app:
- Hosting and database providers for API, storage, backups, and operations.
- Expo Push for mobile push notification delivery.
- Resend for transactional emails sent to admins.
- Cloudinary for image hosting and delivery.
- Firebase/Google services used by Android notification infrastructure where applicable.
- OpenStreetMap/Nominatim only when a user chooses address search or location-assisted features.
We may also disclose data if required by law, to protect rights and safety, or during a business transfer involving Joumla Store.
8. Android Permissions
- Notifications: used to send order updates, announcements, and admin alerts.
- Location: optional, only when the user chooses to use location for address assistance.
- Photos/media: used when admins choose images for catalog entities.
- Bluetooth: used only for supported printer workflows when printing delivery notes or receipts.
- Internet/network: required to communicate with the Joumla Store API and providers.
9. Security
We use reasonable technical and organizational safeguards, including authenticated sessions, server-side validation, role-based admin access, password hashing, transport security where available, operational logs, and restricted service credentials. No method of transmission or storage is 100% secure.
10. Retention
- Account data is kept while the account is active or as needed for support/security.
- Orders, payment records, and delivery notes may be retained for business, accounting, and dispute purposes.
- Notification logs and notification-center entries may be deleted after operational retention periods.
- Push tokens may be removed when the user logs out, disables notifications, or requests deletion.
- Deleted or disabled accounts may keep order history in an anonymized or restricted form when legally or operationally required.
11. User Rights and Choices
Depending on applicable law, users may request access, correction, deletion, restriction, or portability of their personal data. Users can also disable push notifications in the device settings. To exercise rights, contact us at contact@joumla-store.dz.
12. Account and Data Deletion
Users can request account deletion through our dedicated page: Account Deletion Instructions. We may retain order, delivery, payment, audit, or security records when required for legitimate business, legal, accounting, or dispute-resolution purposes.
13. Children
Joumla Store is intended for business and general commerce use and is not directed to children under 13. We do not knowingly collect personal data from children under 13.
14. International Processing
Service providers may process data in countries other than the user's country. Where required, we use appropriate safeguards with providers.
15. Changes
We may update this policy from time to time. The latest version will be posted on this page with a new "Last updated" date.
Résumé en français
Joumla Store utilise les informations de compte, contact, livraison, commande, notifications et sécurité pour faire fonctionner l'application, confirmer les commandes par téléphone, préparer les bons de livraison, envoyer des notifications utiles et protéger le service. Nous ne vendons pas les données personnelles. Pour toute demande d'accès, correction ou suppression, contactez contact@joumla-store.dz.