Legal
Privacy Policy
This Privacy Policy explains how Carro LLC ("Carro," "we," "us," or "our") collects, uses, shares, and protects personal information when retailers, their employees, and shoppers use Carro's websites, checkout tools, manager dashboard, QR-code product pages, and related services.
Last updated: 2026-07-02
1. Information we collect
We collect information directly from users, automatically from the product, and from service providers that help us operate Carro.
- Account information: email address, display name, password hash, session information, remember-device tokens, password reset tokens, employee invitation status, and role information.
- Store profile information: store name, slug, store email, phone number, address, description, colors, logo or product images, employees, and Stripe Connect onboarding status.
- Inventory and checkout information: products, sizes, prices, product photos, QR codes, cart IDs, device IDs, cart line items, reservation and checkout status, transaction IDs, payment status, refund status, verification status, receipt email address, and receipt delivery metadata.
- Uploaded content: store logos, product photos, and file metadata such as file type, size, storage path, and public URL.
- Communications: information you submit when you contact us, request password reset emails, invite employees, or ask us to resend receipt emails.
- Technical information: IP address, user agent, browser/device information, pages requested, timestamps, diagnostic logs, cookies, and similar technologies used to keep users signed in and operate checkout sessions.
2. How we use information
- Create and manage retailer and employee accounts.
- Authenticate users, maintain sessions, remember trusted devices when requested, and protect accounts from unauthorized access.
- Create stores, manage inventory, generate QR-code checkout links, maintain carts, process checkout, show receipts, and support refunds or transaction verification.
- Send operational emails such as password resets, employee invitations, receipts, and support messages.
- Store and serve product photos and store logos.
- Monitor, debug, secure, and improve Carro's services.
- Comply with legal obligations, enforce our terms, resolve disputes, and prevent fraud or abuse.
3. Legal bases for processing
Where privacy laws such as the GDPR or UK GDPR apply, we rely on the following legal bases:
- Contract performance: to provide accounts, checkout, inventory, receipt, and support features requested by users or customers.
- Legitimate interests: to secure the service, prevent fraud, debug issues, improve product reliability, and communicate about operational matters.
- Consent: for optional marketing communications or non-essential cookies if we add them and consent is required.
- Legal obligation: to retain records, respond to lawful requests, and comply with tax, accounting, consumer protection, and payment-related obligations.
4. Cookies and similar technologies
Carro uses essential cookies and local browser storage to keep users signed in, support remember-device functionality, preserve checkout or onboarding state, and operate security features. Essential cookies are necessary for the service to work.
If Carro adds analytics, advertising, or other non-essential tracking technologies, we will describe them in our Cookie Policy and provide consent or opt-out controls where required.
5. How we share information
We do not sell personal information for money. We share information with service providers and partners only as needed to operate Carro, comply with law, or protect users and the service.
- Hosting and database providers: to run the application, database, and deployment infrastructure.
- Stripe: to support payments, connected accounts, checkout, refunds, and payment status updates.
- Resend or email providers: to send password resets, employee invitations, receipts, and service emails.
- Cloudflare R2 or storage providers: to store and serve store logos and product images when cloud storage is enabled.
- Professional advisors and legal authorities: when needed for legal compliance, safety, dispute resolution, or enforcement of our agreements.
- Business transfers: if Carro is involved in a merger, acquisition, financing, reorganization, or sale of assets, subject to appropriate protections.
Current vendor and data-category details are summarized in our Data Inventory and Vendor List.
6. Payments
Carro uses Stripe to process payments and connected-account onboarding. Carro does not store full payment card numbers. Stripe may collect payment details, identity verification details, bank/account information, fraud signals, and other information under Stripe's own legal terms and privacy policy.
7. Data retention
We keep personal information only as long as reasonably necessary for the purposes described in this policy, including providing the service, maintaining security, resolving disputes, complying with legal obligations, and keeping appropriate business records.
- Session records and password reset tokens are retained for limited periods based on their expiration and security needs.
- Remember-device tokens are retained until expiration, revocation, logout, password reset, or account-level revocation.
- Checkout, transaction, receipt, inventory, and store records may be retained for business, accounting, tax, fraud-prevention, and support purposes.
- Uploaded product and store images are retained while the related store or product remains active unless deleted or replaced.
8. Security
We use reasonable administrative, technical, and organizational safeguards designed to protect personal information. These include password hashing, HTTP-only cookies for authentication, limited-lifetime reset tokens, access controls, transport security, and provider-managed payment handling. No online service can guarantee absolute security.
9. Your privacy choices and rights
Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or receive a copy of personal information. You may also have the right to withdraw consent or opt out of certain sharing, targeted advertising, or marketing communications.
To make a privacy request, email privacy@carro-app.com. We may need to verify your identity before completing a request.
10. Children
Carro is not intended for children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child provided personal information to Carro, contact us and we will take appropriate steps to delete it.
11. International users
Carro is operated from the United States. If you access the service from outside the United States, your information may be processed in the United States and other jurisdictions where our service providers operate.
12. Changes to this policy
We may update this Privacy Policy from time to time. If changes are material, we will provide notice through the service or another appropriate method. The "Last updated" date above shows when this policy was last revised.
13. Contact us
For privacy requests, contact privacy@carro-app.com. For general support, contact founder@carro-app.com.
Carro LLC