Privacy Policy

Your privacy matters. Learn how Selmi collects, uses, and protects your data.

Last updated: January 2025

Privacy at a Glance

Transparent

We clearly explain what data we collect and why

Secure

Your data is encrypted and protected

Your Control

Export or delete your data anytime

1. Introduction

Selmi ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our digital business card service ("Service").

By using Selmi, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

We collect information you voluntarily provide when using our Service:

  • Account Information: Email address, name, and profile picture (via Google or Apple Sign-In)
  • Business Card Information: Name, job title, company, phone number, email, website, and social media links
  • Profile Photo: Images you upload for your digital business card
  • Payment Information: Billing details processed securely by Stripe (we do not store full card numbers)

2.2 Information Collected Automatically

When you use our Service, we automatically collect:

  • Usage Data: Pages viewed, features used, and time spent on the Service
  • Device Information: Browser type, operating system, and device identifiers
  • Log Data: IP addresses, access times, and referring URLs
  • Analytics Data: Card views, QR code scans, and download statistics

2.3 Information from Third Parties

We may receive information from:

  • Authentication Providers: Google and Apple provide basic profile information when you sign in
  • Payment Processors: Stripe provides transaction status and billing information

3. How We Use Your Information

We use your information to:

  • Provide the Service: Create and manage your digital business cards, generate QR codes, and deliver wallet passes
  • Process Payments: Handle subscription billing and refunds
  • Improve the Service: Analyze usage patterns to enhance features and user experience
  • Communicate: Send service updates, security alerts, and support messages
  • Provide Analytics: Show you statistics about your card views and engagement
  • Prevent Fraud: Detect and prevent abuse, fraud, and security threats
  • Legal Compliance: Comply with applicable laws and regulations

4. How We Share Your Information

We do not sell your personal information. We may share your information with:

4.1 Service Providers

Third parties who help us operate the Service:

  • Amazon Web Services: Cloud hosting and data storage
  • Stripe: Payment processing
  • Apple & Google: Wallet pass delivery

4.2 With Your Consent

When you share your digital business card (via QR code, link, or wallet pass), the recipient can view your public card information. You control what information appears on your card.

4.3 Legal Requirements

We may disclose information when required by law, court order, or government request, or to protect our rights, safety, or property.

5. Data Retention

We retain your information for as long as your account is active or as needed to provide the Service. Specifically:

  • Account Data: Retained until you delete your account
  • Analytics Data: Retained for the duration specified by your subscription tier (7 days for free, up to 365 days for premium)
  • Backup Data: Retained for 30 days after deletion for recovery purposes

You can request deletion of your data at any time through your account settings or by contacting us.

6. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: All data is encrypted at rest (AES-256) and in transit (TLS 1.3)
  • Access Controls: Strict role-based access controls for our team
  • Monitoring: 24/7 security monitoring and incident response
  • Compliance: Regular security assessments and compliance audits

For more details, see our Security page.

7. Your Rights

Depending on your location, you may have the following rights:

7.1 Access and Portability

You can access and export your data at any time through your account settings.

7.2 Correction

You can update your information directly in your account or by contacting us.

7.3 Deletion

You can delete your account and associated data through Settings → Privacy → Delete Account, or by contacting us at privacy@selmi.app.

7.4 Objection and Restriction

You can object to certain processing activities or request restrictions by contacting us.

7.5 Withdraw Consent

Where processing is based on consent, you can withdraw consent at any time.

8. GDPR Compliance (EU Users)

If you are in the European Economic Area (EEA), you have additional rights under GDPR:

  • Right to access your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to data portability
  • Right to object to processing
  • Right to lodge a complaint with a supervisory authority

Legal Basis for Processing: We process your data based on: (a) your consent, (b) performance of a contract, (c) compliance with legal obligations, or (d) our legitimate interests.

9. CCPA Compliance (California Users)

If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information we collect
  • Right to delete your personal information
  • Right to opt-out of the sale of personal information (we do not sell your data)
  • Right to non-discrimination for exercising your privacy rights

To exercise your CCPA rights, contact us at privacy@selmi.app.

10. Cookies and Tracking

We use cookies and similar technologies for:

  • Essential Cookies: Required for the Service to function (authentication, security)
  • Analytics Cookies: Help us understand how you use the Service
  • Preference Cookies: Remember your settings and preferences

You can control cookies through your browser settings. Disabling essential cookies may affect Service functionality.

11. Children's Privacy

Selmi is not intended for users under 16 years of age. We do not knowingly collect information from children under 16. If you believe a child has provided us with personal information, please contact us at privacy@selmi.app.

12. International Data Transfers

Your information may be transferred to and processed in the United States, where our servers are located. We ensure appropriate safeguards are in place for international transfers, including Standard Contractual Clauses where required.

13. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or through the Service. Your continued use of the Service after changes constitutes acceptance of the updated policy.

14. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

Your Privacy, Your Control

At Selmi, we believe you should have full control over your personal data. If you have any questions or concerns about how we handle your information, we're here to help.

Contact Our Privacy Team →