| Purpose | Examples of data used | Lawful basis |
|---|---|---|
| Create and manage your account | name, email, password hash, preferences | Contract (to provide your account) |
| Process orders & deliver items | items, prices/taxes, addresses, order messages, tracking status | Contract (to fulfil your order) |
| Payments & payouts | payment tokens/IDs, status, refund/chargeback data | Contract; Legal obligation (accounting); Legitimate interests (fraud prevention) |
| Buyer↔Seller communications & dispute resolution | order messages, dispute messages | Legitimate interests (provide support and ensure a safe marketplace) |
| Security & abuse prevention | device data, IP (may be truncated), security logs, firewall/WAF events | Legitimate interests (secure our service) |
| Error monitoring (server/API) | pseudonymous error events without PII | Legitimate interests (service reliability) |
| Analytics (site/app usage) | pseudonymous analytics identifiers and events | Consent (set via our cookie/consent tools) |
| Legal & compliance | invoices, tax records, chargeback records | Legal obligation |
| Service communications | order confirmations, delivery updates, policy notices | Contract (transactional messages) |
| Marketing (if you opt in) | email address, preferences |
| Purpose | Examples of data used | Lawful basis |
|---|---|---|
| Create and manage your account | name, email, password hash, preferences | Contract (to provide your account) |
| Process orders & deliver items | items, prices/taxes, addresses, order messages, tracking status | Contract (to fulfil your order) |
| Payments & payouts | payment tokens/IDs, status, refund/chargeback data | Contract; Legal obligation (accounting); Legitimate interests (fraud prevention) |
| Buyer↔Seller communications & dispute resolution | order messages, dispute messages | Legitimate interests (provide support and ensure a safe marketplace) |
| Security & abuse prevention | device data, IP (may be truncated), security logs, firewall/WAF events | Legitimate interests (secure our service) |
| Error monitoring (server/API) | pseudonymous error events without PII | Legitimate interests (service reliability) |
| Analytics (site/app usage) | pseudonymous analytics identifiers and events | Consent (set via our cookie/consent tools) |
| Legal & compliance | invoices, tax records, chargeback records | Legal obligation |
| Service communications | order confirmations, delivery updates, policy notices | Contract (transactional messages) |
| Marketing (if you opt in) | email address, preferences |