Privacy Policy
Introduction
This privacy policy (“Privacy Policy”) applies to all visitors and users of the sortment.com and sortment cloud hosted services and websites (collectively, the “Website” or “Websites”) and self-managed installations, which are offered by Shopflo Inc. and/or any of its affiliates (“Sortment” or “we” or “us”) and describes how we process your personal information in connection with those Websites or self managed installations, customer events and demos, and how we collect information through the use of cookies and related technologies. It also tells you how you can access and update your personal information and describes the data protection rights that may be available under your country’s or state's laws, including (in the European Economic Area ("EEA"), and UK), a right to object to some processing that we carry out or, where we rely on consent, how to withdraw that consent. Please read this Privacy Policy carefully. By accessing or using any part of the Websites or self-managed installations, you acknowledge you have been informed of and consent to our practices with regard to your personal information and data. Sortment is an open source project and collaborative community, as well as a company. This means that many portions of our Websites, including information you voluntarily provide, will be public-facing for the open sharing of innovative developments, ideas, and information that makes our collaborative community so great. While we are committed to open sharing, we strive to respect the privacy of individual community members and will minimize the information we collect and share. If you do not want to share your information, including personally identifiable information, with other community members and the public, please be thoughtful as to how you interact with our Websites and what information you provide through the Websites (for example, through creating a public profile, project contributions, comments, and blog posts). Unless otherwise stated, we act as the data controller for the data processing operations described in this Privacy Policy. We may provide additional information about our privacy practices in other places - for example, when we ask you to provide personal information in connection with a particular service or when you apply for a job with us.
What Information Sortment collects and why
Information from website visitors
Like most website operators, Sortment automatically collects i) technical information about your device including your device's internet protocol (IP) address; and (ii) information about your visit to our Websites (the referral URL, the content viewed and the content interacted with). Some of this information is collected using cookies and related technologies. See below for further information on these technologies. We collect this information to better understand how visitors use our Websites, to improve our Websites and experience for visitors, and to monitor the security of the Websites.For logged-in users to Sortment Cloud deployments, Sortment also collects this information on our application using our own software, to help us understand how to make the deployments more useful for different categories of user.
Usage data information from self-managed Sortment instances
Sortment automatically collects information about usage from each self-managed Sortment instance. We may use cookies and similar technologies to collect some of this information. It is possible to opt out of your personal information being transferred. We never collect information on the contents of your connected databases, connection settings, database queries executed, or their results. Sortment tracks the usage of these instances at an aggregate level - it is also possible to prevent this through modifying the code, which is made available to you.
Personal information
You may choose to interact with our Websites in ways that provide us with your personal information. In some instances, a User ID is generated for form and URL tracking, page views, page pings and usage counts in order to ascertain product performance and development. The amount and type of information that Sortment gathers depends on the nature of your interaction with us, as well as the amount of information you choose to share. For example, we ask visitors who use our community Slack group to provide a username and email address. We will also collect the information you provide with us in connection with creating an account on the Website. Certain profile information (such as your username) may be shared publicly, as well as activity under your profile. If you report a security vulnerability to Sortment and request public acknowledgement, then we may publicly disclose the personal information you provided to us in connection with the report, including your name to fulfil your request for acknowledgement. In each case, Sortment collects such personal information only insofar as is necessary or appropriate to fulfil the purpose of your interaction with or your request to Sortment. We may also collect certain personal information during live in-person events and demos. We will not disclose your personal information other than as described in this Privacy Policy. We may aggregate all information (including your personal information) collected from our Websites and self-managed installations for our own statistical and analytics purposes and share such aggregated information with third parties for our own promotional purposes (eg by publishing a report on trends in the usage of our Websites).
Information Sortment does not collect
Sortment does not intentionally collect sensitive or special category personal information, such as genetic data, biometric data for the purposes of uniquely identifying a natural person, health information, or religious information.Sortment does not knowingly collect information from or direct any of our Website or content specifically to children under the age of 18. If we learn or have reason to suspect that a user is under the age of 18, we will close that account. We may aggregate all information (including your personal information) collected from our Websites and self-managed installations for our own statistical and analytics purposes and share such aggregated information with third parties for our own promotional purposes (eg by publishing a report on trends in the usage of our Websites).
Lawful basis and purposes for processing your personal information
To fulfil a contract or take steps linked to a contract with you We use your personal information to: • administer access to your accounts; • manage our customer relationships; • process orders, provide our products and services and send you service related communications; and • provide you with customer support. Legitimate interests We use your personal information: • to improve and personalize your experience with us and our Websites and to tailor communications to you; • to monitor and improve the performance of our products and services for administrative, security and fraud prevention purposes; • for our own internal functions, management and corporate reporting, and internal research and analytics; • to enforce compliance with our terms of use and other policies or otherwise in connection with legal claims, compliance, regulatory and investigatory purposes as necessary (including disclosure of such information in connection with legal process or litigation); and Consent We may rely on your consent: • Where you ask us to send marketing information (e.g. newsletter updates) via a medium where we need your consent under applicable law (for example email marketing in some countries); • Where you give us consent to place cookies or similar technologies; • On other occasions where we ask for your consent, for the purpose we explain at the time. You may withdraw your consent at any time through the unsubscribe feature provided with the relevant marketing email or by contacting us using the details in the ‘Contacting Sortment About Your Privacy’ section of this Privacy Policy.
Sortment uses and protects your personal information
Sharing your information
Sortment may share your personal information with the third-parties listed below for the purposes that are described in this Privacy Policy or otherwise with your consent.Sortment only shares your personal information with those of its employees, contractors, and affiliated organizations that (i) need to know that personal information in order to process it on Sortment’s behalf or to provide services available on the Website, and (ii) that have agreed not to disclose it to others Service Providers and partners. Sortment engages a number of service providers or partners to manage or support certain aspects of our business operations on our behalf. For instance, we currently use the following service providers who will handle your personal information: • GitHub - open source repositories and internal project management tool • Slack - internal communications tool • Google Workspace - internal collaboration tools • Intercom - email campaigns and customer support • Attio - CRM database and customer support • PostHog - customer support • Sentry - error reporting • Stripe - payment processor Our service providers and partners are required by contract to safeguard any personal information they receive from us and are prohibited from using the personal information for any purpose other than to perform the services as instructed by Sortment. Affiliates. Sortment is a global business, headquartered in the United States. Your personal information collected by us in accordance with this Privacy Policy is used and shared by Sortment to our affiliate company based in the USA (Shopflo Inc.) for the purposes of providing the Websites, delivering our Products and services, managing your accounts, hosting, IT, security, support, billing, marketing, and communications. Legal Requirements. We may disclose personal information to government authorities or other third-parties if required to do so by law or in the good faith belief that such action is necessary to: (a) comply with a subpoena, court order or similar legal obligation, (b) protect and defend our rights or property, (c) act in urgent circumstances to protect the personal safety of users of any Website or the public, (d) protect against legal liability, (e) to investigate fraud or other unlawful activity, or (f) or as otherwise required or permitted by law.Please note, email and IP addresses of users of a Sortment deployment may be shared with the respective users of that deployment.Sortment takes measures reasonably necessary to protect your personal information against any unauthorized access, use, alteration, or destruction.Sortment at its sole discretion may make use of company logos where those companies are using the software that we provide. If you have concerns over the use of your logo, please email logos@sortment.com.
International transfer of personal information
The Websites are hosted in the United States and the personal information we collect will be stored and processed on our servers in the United States. Our employees, contractors and affiliated organizations that process information for us as described above may be located in the United States or in other countries outside of your home country which may have different data protection standards to those which apply in your home country.Where your personal information is transferred outside of the EEA, Switzerland and UK and where this is to a country which is not subject to an adequacy decision by the EU Commission or considered adequate as determined by applicable data protection laws, we will take steps to ensure your personal information is adequately protected by safeguards such as Standard Contractual Clauses (“SCCs”) approved by the EU Commission or by the UK Government. A copy of the relevant mechanism can be obtained for your review on request by using the contact details in the ‘Contacting Sortment About Your Privacy’ section of this Privacy Policy.
Sortment communications with you
If you are a registered user of the Websites and have supplied your email address, Sortment may occasionally send you an email to tell you about security, system information, new features, solicit your feedback, or just keep you up to date with what's going on with Sortment and our products. We primarily use our blog to communicate this type of information, so we expect to keep this type of email to a minimum. There's an unsubscribe link located at the bottom of each of the marketing emails we send you so you can stop receiving such emails at any time.If you send us a request (for example via a support email or via one of our feedback mechanisms), we reserve the right to publish your request in order to help us clarify or respond to your request or to help us support other users. We will not publish your personal information in connection with your request.
Cookies, tracking technologies and Do Not Track
Cookies
A cookie is a string of information that a website stores on a visitor's computer, and that the visitor's browser provides to the website each time the visitor returns. Sortment uses cookies to help Sortment identify and track visitors, their usage of the Websites, and their Website access preferences. Sortment visitors who do not wish to have cookies placed on their computers may set their browsers to refuse cookies before using the Websites. Disabling browser cookies may cause certain features of Sortment’s websites to not function properly.Certain pages on the Website may set other third party cookies. For example, we may embed content, such as videos, from another site that sets a cookie. These sites set their own cookies and we do not have access or control over these cookies. The use of cookies by third parties is not covered by our Privacy Policy.
Tracking technologies
Our websites collect information using first-party tracking technology (Rudderstack), which rely on cookies as outlined in this privacy policy. For logged-in users to Sortment Cloud deployments, we also use third-party tracking technologies (Sentry, Cohere) to capture usage data to detect, prevent and address technical issues and provide support.
Do Not Track
"Do Not Track" is a privacy preference you can set in your browser if you do not want online services to collect and share certain kinds of information about your online activity from third party tracking services. Sortment does not track your online browsing activity on other online services over time and we do not permit third-party services to track your activity on our site. Because we do not share this kind of data with third party services or permit this kind of third party data collection for any of our users, and we do not track our users on third-party websites ourselves, we do not need to respond differently to an individual browser's Do Not Track setting.
Global privacy practices and your rights
Information we collect will be stored and processed in the United States in accordance with this Privacy Policy but we understand that users from other countries may have different expectations and rights with regard to their privacy. For all Website visitors and users, no matter their country of location, we will: • provide clear methods of unambiguous, informed consent when we do collect your personal information and where required by applicable law; • only collect the minimum amount of personal information necessary for the purpose it is collected for, unless you choose to provide us more; • offer you simple methods of accessing, correcting, or deleting your information that we have collected, with the exception of information you voluntarily provide that is necessary to retain as is for the integrity of our project code as described further below; and • provide Website users notice, choice, accountability, security, and access, and we limit the purpose for processing. We also provide our users a method of recourse and enforcement. Where our affiliate within the UK processes your personal information or where we process personal information of individuals located in the EEA or the UK, you are entitled to the following rights with regards to your personal information: • Right of access to your personal information, to know what information we hold about you. •Right to correct any incorrect or incomplete personal information about yourself that we hold. •Right to restrict/suspend our processing of your personal information. • Right to complain to a supervisory authority if you believe your privacy rights are being violated. In the UK, this will be the Information Commissioner. Additional rights that may apply to you in certain instances:Right of data portability (if our processing is based on consent or a contract and the processing carried out by automated means); • Right to withdraw consent at any time (if processing is based on consent). If you ask to withdraw your consent, this will not affect any processing which has already taken place at that time. • Right to object to processing (if processing is based on legitimate interests)Right to object to processing of personal data for direct marketing purposes • Right of erasure of your personal data from our system (“right to be forgotten”) if certain grounds are met These rights may be limited, for example if fulfilling your request would reveal personal information about another person, or if you ask us to delete information which we are required by law or have compelling legitimate interests to keep. Where we collect personal information to administer your accounts or your contract with us or to comply with our legal obligations, this is mandatory and we will not be able to manage our relationship with you without this. In all other cases, the provision of requested personal information is optional, but this may affect your ability to participate in certain certain Website-related activities or being able to access and use certain features and services, where the information is needed for those purposes. To exercise your privacy rights, you can email us at the address given below in the ‘Contacting Sortment About Your Privacy’ section of this Privacy Policy.
Data retention and deletion
If you already have an account on the Websites, you may access, update, alter, or delete your basic user profile information by logging into your account and updating profile settings.Sortment will retain your information for as long as your account is active or as needed to perform our contractual obligations, provide you services through the Website, to comply with legal obligations, resolve disputes, preserve legal rights, or enforce our agreements. Retention periods will be determined taking into account the type of information that is collected and the purpose for which it is collected, bearing in mind the requirements applicable to the situation and the need to destroy outdated, unused information at the earliest reasonable opportunity. For instance, in respect of data held for the management of customers and potential customers, we consider the lead time necessary to develop and maintain our commercial relationships and how recent our interactions are with you. We may rectify, update or remove incomplete or inaccurate information, at any time and at our own discretion. For more information on our retention periods you can contact us using the details in the “Contacting Sortment About Your Privacy” section of this Privacy Policy.Please note that due to the open source nature of our products, services, and community, we may retain limited personal information indefinitely in order to ensure transactional integrity and nonrepudiation. For example, if you provide your information in connection with a blog post, GitHub issue or comment, we may display that information even if you have deleted your account as we do not automatically delete community posts. Also, as described in our Terms of Use, if you contribute to a Sortment project and provide your personal information in connection with that contribution, that information (including your name) will be embedded and publicly displayed with your contribution and we will not be able to delete or erase it because doing so would break the project code.
Privacy policy changes
Although most changes are likely to be minor, Sortment may change its privacy policy from time to time, and in Sortment’s sole discretion. We may also provide notification to users who have provided us email addresses of material changes to this Privacy Policy through our Website. Sortment encourages visitors to frequently check this page for any minor changes to its Privacy Policy. Your continued use of this site after any change in this Privacy Policy will constitute your acceptance of such change.
Last updated