Skip to content

Last updated 5 September 2026

Privacy policy

Factro is business software. Most of the personal data in it belongs to our customers' customers, and it is there because a sales document has to name a buyer. This page says exactly what we hold, why, and how to get it removed.

Who this covers

Merchants are the businesses with a Factro account. Shoppers are the people who buy from those businesses, whose details reach Factro through a connected store. A merchant is the controller of their shoppers' data; Factro is the processor acting on their instructions.

Service operated by: Factro (Velthar Services Private Limited). Registered office: Chidambaram Pillai, Sisalem Main Road, Kallakurichi, Villupuram - 606202, Tamil Nadu, India. Registration number: U66190TN2026PTC195548.

What we collect

From merchants

  • Account details — name, work email, phone, company name, role.
  • Billing details — plan, invoices and payment status. Card details are handled by our payment provider and never reach Factro's servers.
  • Operational data you enter — customers, vendors, items, orders, invoices, stock, production and maintenance records.
  • Store connection credentials for any connected store, encrypted at rest.
  • Technical logs — IP address, browser, timestamps and error traces, used for security and debugging.

From connected stores, about shoppers

  • Name, email address and phone number.
  • Billing and shipping address, including city, state or region — this supports invoicing, delivery and tax-region decisions.
  • Order details: order number, date, status, currency, total and line items.

We do not receive or store card numbers, CVVs, bank details or any payment credential from a connected store. The exact fields each connector sends are listed on the Shopify and WooCommerce pages.

Why we hold it

  • To run the service — creating the customer, sales order and invoice a merchant connected their store to produce.
  • To meet the merchant's legal obligations — invoices and accounting records may need buyer, address and tax-region information.
  • To keep accounts secure — authentication, single-device session enforcement, abuse and fraud prevention.
  • To support you — investigating a problem you report.

We do not sell personal data. We do not use shopper data to train models, build advertising profiles, or share it with any other merchant.

Who else sees it

Only the processors needed to operate the service: our cloud hosting and managed database provider, our email delivery provider for transactional mail, our payment provider for billing, and our error and performance monitoring. Each is bound by contract to process data only on our instructions. We disclose data to a public authority only where the law requires it.

Where it is stored, and for how long

Data is stored on managed infrastructure and is encrypted in transit. Store connection credentials are additionally encrypted at rest at the application layer, so they are not readable from a database copy alone.

  • Operational records are kept while the account is active.
  • Accounting records — invoices, credit notes and ledger entries — are retained for the statutory period applicable tax and accounting law requires, even after a deletion request.
  • Technical logs are kept for a short rolling window and then discarded.
  • Store install records for an abandoned installation expire within 30 minutes and are then deleted.

Erasure, and what has to be kept

Ask us to erase data by emailing support@factro.in from your registered address, or by sending the request through your store. Shopify merchants can use Shopify's own customer-redaction and data-request tools; those reach Factro automatically and are recorded against your store.

When we erase a shopper on request, we remove:

  • email address, phone number and contact person;
  • billing and shipping addresses;
  • any free-text notes on the customer record.

We keep:

  • the buyer name on tax invoices and other statutory accounting documents already issued where applicable law requires the record to remain intact; removing it would falsify the merchant's books.

Every request we receive is recorded with its date, the store it came from and what was done about it, so a merchant can evidence their own compliance.

Your rights

You may ask for access to your data, correction of it, a machine-readable copy, or its erasure subject to the retention limits above. Write to support@factro.in. We respond within 30 days.

Grievance officer: Raguram Sundaravadivel, reachable at support@factro.in.

Cookies

Factro sets only the cookies the product needs: your sign-in session and a signed device identifier that enforces one active device per user. There are no advertising or third-party tracking cookies.

Changes

If this policy changes materially we will say so in the app before the change takes effect. The date at the top always reflects the current version.