Informasi yang kami proses
Saat Anda mendaftar sebagai toko, mitra, atau investor, kami menggunakan detail kontak dan informasi bisnis yang Anda berikan untuk meninjau pengajuan dan memberikan tanggapan. Pengajuan dikirim ke tim kami melalui Brevo dan tidak membuat akun.
Untuk akun pedagang langsung, kami memproses nama dan alamat email pemegang akun, nama bisnis atau toko, etalase URL, platform e-commerce yang dipilih, mata uang penjualan, volume penjualan bulanan agregat, penjualan rata-rata, rasio sengketa pembayaran kartu saat ini, catatan faktur, pengaturan bisnis, dan catatan pengujian keaktifan etalase. Angka sengketa penjualan dan pembayaran kartu adalah agregat tingkat toko yang disediakan oleh pedagang, bukan catatan transaksi pelanggan individual.
For the Shopify App, we process Shopify installation identifiers, store configuration, operational order references, timestamps, amounts, currencies, payment and transaction identifiers, risk assessments, merchant decisions, dispute status, reasons, amounts, currencies and deadlines, provider alerts and connection configuration, audit records, billing status, and verified merchant notification recipients.
Akses bukti memerlukan izin Shopify dan persetujuan data pelanggan yang dilindungi. Jika diaktifkan, nama, email, serta alamat penagihan dan pengiriman pelanggan dibaca dari Shopify untuk meninjau sengketa dan mengirim bukti yang dikonfirmasi pedagang. Nomor telepon dan alamat IP pelanggan tidak diminta. Lower Chargeback tidak menghubungi pelanggan atau mengumpulkan balasan.
Pemilik toko dapat menyimpan detail bisnis terenkripsi dan informasi sengketa secara lokal di Lower Chargeback. Nilai dari Shopify diutamakan, dan menyimpan informasi manual tidak pernah mengubah catatan Shopify.
Penerima pemberitahuan
Entered and verified by the merchant; never imported from Shopify customer records.
Batasan pembayaran dan keputusan
Direct account invoice records contain the invoice amount and status, but Lower Chargeback does not store card numbers. Provider credentials are encrypted before storage and are never returned after they are saved. The Shopify App does not create Shopify refunds, automatically accept or decline network cases, automatically report provider outcomes, send customer messages, or submit dispute evidence without explicit merchant confirmation.
Bagaimana informasi digunakan
Direct account information is used to create and secure the merchant account, issue and display the registration invoice, send account and invoice messages, maintain business settings, run storefront liveness tests, and record their results. Shopify App information is used to synchronize operational order data, present risk signals, record merchant decisions, monitor disputes, match provider alerts to eligible order references, notify verified merchant recipients, maintain billing entitlements and provider connection state, and record merchant-confirmed provider actions.
Draf bukti serta dokumen PDF, PNG, dan JPEG yang diunggah pedagang mendukung persiapan sengketa. Dokumen disimpan secara privat dan dikirim ke Shopify hanya setelah konfirmasi pedagang. Berkas yang diunggah dimasukkan ke antrean penghapusan setelah pengiriman dikonfirmasi; catatan bukti yang tersisa dihapus paling lambat 30 hari setelah kasus ditutup.
Penyedia layanan
Lower Chargeback uses Cloudflare for Worker execution and storage. Brevo sends transactional account, invoice, and operational merchant notifications. For the Shopify App, Lower Chargeback also uses Shopify for operational commerce data and embedded application services, together with only the merchant providers explicitly connected and verified through Provider Hub.
These providers may process information in countries outside the merchant’s country. Where a cross-border transfer requires safeguards, Lower Chargeback relies on the contractual and transfer mechanisms made available by the applicable provider and required by data-protection law.
Retensi dan penghapusan
Direct-account data is retained while needed to provide that account and meet its audit obligations. For the Shopify App, operational order, transaction, risk, dispute, and operational aggregate records are retained for no more than 180 days after their last relevant activity. Active provider cases and their source records remain available while action is required; terminal provider cases and their source identifiers, actions, and events are deleted 30 days after closure. Shopify App audit records, observed Shopify users, notification deliveries, and terminal provider-webhook metadata are retained for no more than 180 days.
Objek payload webhook penyedia dan catatan penerimaan webhook Shopify App disimpan tidak lebih dari 30 hari.
Konfigurasi instalasi, kredensial terenkripsi, penerima terverifikasi, hak penagihan agregat, dan catatan minimum yang diperlukan untuk memenuhi persyaratan penghapusan data disimpan hanya saat Aplikasi diinstal atau layanan yang diaktifkan memerlukannya. Menghapus instalasi akan mencabut kredensial Shopify yang aktif dan memulai penghapusan data Shopify instalasi. Webhook kepatuhan Shopify mengambil prioritas dan memulai penghapusan data pelanggan dan data toko. Siklus hidup pencadangan subprosesor tetap diatur oleh persyaratan layanan penyedia yang berlaku.
Keamanan dan akses
Production secrets are held in Cloudflare secret configuration. Stored provider credentials and Shopify authorization tokens use authenticated encryption. Administrative access is restricted, operational changes are audited without customer identity values, production data is not copied into demo or test datasets, and security incidents are investigated and contained through the documented response procedure.
Kontak
Penjual dan subjek data dapat meminta akses, koreksi, penghapusan, pembatasan, atau salinan informasi yang terkait dengannya, atau menolak pemrosesan yang memenuhi syarat, dengan mengirim email marian@agilemedia.com. The request should identify the relevant shop and relationship to the data so Lower Chargeback can verify authority before responding. Shopify privacy requests may also be initiated through the merchant, which delivers the required Shopify compliance webhook.
Alamat korespondensi: Intrarea Gheorghe Simionescu 19, Apartemen B26, Bucharest 031779, Romania.