Privacy Policy
Last updated: February 16, 2026
1. Introduction
WISMO ("we", "our", "us") is a mobile order tracking platform for freelancers, custom makers, and small sellers. This Privacy Policy explains what data we collect, how we use it, and your rights regarding your information.
2. Data We Collect
Account Data (Sellers)
- Phone number — used for authentication via Firebase phone/OTP
- Email address — used for CSV exports and account notifications
- Business name & owner name — displayed on tracking pages and used for branding
- Currency preference — USD or INR, stored on your account
- Notification preferences — your choices for push notification types
- Terms acceptance timestamp — when you accepted these terms
Order Data
- Customer information — name, phone number, email, Instagram handle (as entered by the seller)
- Order details — description, due date, status, seller notes, courier tracking URLs
- Payment records — payment amounts, modes, and dates
- Order updates — status changes and seller notes with timestamps
Device Data
- Push notification tokens — Expo push tokens stored to deliver notifications to your device
3. How We Use Your Data
- To provide the core service — order management, tracking pages, and status updates
- To authenticate your identity via phone number verification
- To send push notifications (due reminders, unpaid order alerts, daily digests)
- To send email notifications to your customers when order status changes (if enabled)
- To generate and deliver CSV exports of your order data
- To display your business name and branding on customer-facing tracking pages
4. Third-Party Services
We use the following third-party services to operate WISMO:
- Firebase Authentication (Google) — phone number verification and authentication
- Neon — PostgreSQL database hosting for all application data
- Expo Push Notification Service — delivering push notifications to mobile devices
- Resend — sending transactional emails (order updates to customers, CSV exports)
- RevenueCat — managing in-app subscriptions and purchase validation
- Railway — hosting the backend server and tracking pages
- Google Analytics — anonymous usage analytics on the landing page only
Each service processes data in accordance with their own privacy policies. We only share the minimum data necessary for each service to function.
5. Cookies & Tracking
The WISMO mobile app does not use cookies. Customer tracking pages (wismo.live/track/*) are server-rendered HTML with zero JavaScript and no cookies or tracking pixels. The landing page (wismo.live) uses Google Analytics for anonymous visitor statistics.
6. Data Retention
Your data is retained for as long as your account is active. When you delete your account (via Settings in the app):
- Your account is deactivated and you lose access immediately
- Your Firebase authentication record is removed, allowing re-registration with the same phone number
- Device push notification tokens are permanently deleted
- Your profile information, orders, order updates, payment records, and customer data are retained in our systems for legal, audit, and operational purposes
If you sign up again with the same phone number, a new account is created — previous account data is not restored or accessible to you. Retained data may be permanently purged after a reasonable retention period at our discretion.
7. Your Rights
You have the right to:
- Access your data — export all your order data as a CSV file from the Settings screen
- Delete your data — permanently delete your account and all associated data from the Settings screen
- Update your data — edit your profile, business information, and notification preferences at any time
- Control notifications — toggle individual notification types on or off
8. Data Security
We protect your data using:
- HTTPS encryption for all data in transit
- Firebase Authentication for secure phone-based login
- Server-side token verification for all API requests
- Database-level access controls on Neon PostgreSQL
9. Children's Privacy
WISMO is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you via the app or email. The "Last updated" date at the top reflects the most recent revision.
11. Contact
If you have questions about this Privacy Policy or want to exercise your data rights, contact us at support@wismo.live.