Privacy policy
Last updated
This policy tells you what data SellingIO processes, why, how long we keep it, and how to request deletion. It covers this marketing site and the sync product.
Who we are
SellingIO syncs products, inventory, and orders across TikTok Shop, Shopify, and offline stores.
The registered legal entity that operates SellingIO is LAR Technology Joint Stock Company (Vietnamese name: Công ty Cổ phần Công nghệ LAR), business registration number 0111362069, registered office at 2nd Floor, Detech Tower Building, No. 8 Ton That Thuyet Street, Cau Giay Ward, Hanoi City, Vietnam.
What this policy covers
Two groups of data, kept distinct.
Site visitors. Browsing this site does not connect a sales channel. We process the cookies and local storage described in the cookie policy. If you send the contact form, we process the name, email, company, monthly order volume, and message you enter. If you join the storefront waitlist, we process the email you enter.
Connected-channel data. Connecting a channel lets the sync run. We then process account data, store data, and order and buyer data, as listed below.
Data we process
| Group | What we process |
|---|---|
| Account data | The details you enter to create and sign in to a SellingIO account. |
| Store data | Products, variants, stock numbers, and warehouse records in your canonical catalogue, including what we pull from a connected channel and what you enter yourself. |
| Order and buyer data | Buyer and shipping details on each synced order: name, email, phone, the buyer's ID on the channel, order note, recipient name and phone, address lines 1–2, city, district, province, country code, postal code, full address, carrier, tracking number, delivery option, and fulfilment type. A field the channel does not supply stays empty. |
Not every channel supplies every field, and we do not ask every channel for the same fields. On Shopify orders we do not request the buyer's email address, name or customer ID: they are left out of the query we send Shopify, so none of them is stored on a Shopify order. From Shopify we keep the buyer's phone, the order note, and the recipient's name, phone and shipping address. The email, buyer name and buyer ID in the list above therefore only come from another channel. Separately, when Shopify has not approved Protected Customer Data access, the remaining buyer fields are empty as well. Empty is valid. The order still syncs.
Where it comes from
Shopify. At install, the app requests these scopes. Identifiers are not translated.
| Permission | What it is used for |
|---|---|
read_products | Pull product listings into your canonical catalogue. |
write_products | Push products from the canonical catalogue to Shopify. |
read_inventory | Read stock numbers on Shopify. |
write_inventory | Update stock numbers on Shopify. |
read_orders | Pull orders so you can manage them in SellingIO and match each one to the same order in Shopify: the buyer's phone, the order note, and the recipient's name, phone and shipping address. We do not request the buyer's email address, name or customer ID. |
read_locations | Read Shopify locations so warehouses can be mapped. |
From a connected Shopify store we process the shop data the sync reads and writes for that store — listings, stock numbers, locations, and orders.
TikTok Shop. TikTok Shop grants permissions from the app configuration in its partner portal, and returns the granted list when you authorise. These are the permission keys a connected shop grants. Identifiers are not translated, and one of them is spelled the way TikTok returns it.
| Permission | What it is used for |
|---|---|
seller.authorization.info | Read which shops the authorisation covers. |
seller.shop.info | Read basic shop details for the connection. |
seller.product.basic | Pull product listings, categories, brands, and stock numbers into your canonical catalogue. |
seller.product.write | Push products and images to TikTok Shop, and update listings and stock numbers. |
seller.product.delete | Deactivate a listing on TikTok Shop when you remove it from a channel. |
seller.order.info | Pull orders, including buyer and shipping details on each synced order. |
seller.logistics | Read TikTok Shop warehouses so they can be mapped to yours. |
seller.fulfillment.basic | Granted with the app. The sync does not call fulfilment APIs today. |
seller.global_product.info | Granted with the app. The sync does not call global product APIs today. |
seller.global_product.write | Granted with the app. The sync does not call global product APIs today. |
seller.global_product.delete | Granted with the app. The sync does not call global product APIs today. |
seller.global_product.category.info | Granted with the app. The sync does not call global product APIs today. |
seller.global_product.image_trans_task | Granted with the app. The sync does not call global product APIs today. |
serller.product.optimize | Granted with the app. The sync does not call product optimisation APIs today. |
From a connected TikTok Shop we process the channel shop data the sync reads and writes for that shop — listings, stock numbers, and orders.
You. Account details you type, catalogue edits you make in SellingIO, and anything you submit on this site (contact form, waitlist).
Why we process each group
| Group | Purpose |
|---|---|
| Account data | To create your account, sign you in, and operate the service for you. |
| Store data | To keep one canonical catalogue and one stock number, then pull from and push to the channels you connect. |
| Order and buyer data | To show orders from every connected channel in one list, with the buyer and shipping details that belong on each synced order, so you can manage and fulfil them in SellingIO and match each one to the same order on its channel. |
Site-visitor forms exist so we can reply to you.
Sharing
We send data to the channels you connect, because pull and push are how the sync works. A product you push to a channel is written to that channel. An order we pull from a connected channel is stored as an order record.
We also use a small number of providers to run SellingIO. We describe them by role:
- Hosting. A hosting provider in Vietnam runs our servers and databases. The same provider keeps server snapshots.
- Sign-in and notifications. Google processes your sign-in when you use Sign in with Google, and processes the browser token used for push notifications.
- Edge network. Cloudflare sits in front of sellingio.com and carries traffic between your browser and our servers.
- Chat apps you connect for alerts (Telegram, Slack, Discord, Lark, Google Chat) receive only the messages you configure, under your own account with that service.
Error tracking runs on our own servers. We do not sell data, and we do not share it for advertising.
How long we keep it
| Data | Kept for |
|---|---|
| Account data | While the account exists. Deleted within 30 days after you ask us to close the account. |
| Store, catalogue and stock data | While the channel is connected. Deleted or anonymised within 12 months after the channel is disconnected or the account is closed. |
| Order and buyer data | The same 12-month rule: deleted or anonymised within 12 months after the channel is disconnected or the account is closed. |
| Server snapshots | Rotated every 7 days, so deleted data leaves snapshots within 7 days. |
Disconnecting a channel, or uninstalling the Shopify app, stops the sync and removes the channel connection at once. You can ask for earlier deletion at any time.
Your rights and deletion requests
You can ask us what we hold, and you can ask us to delete it. Send the request through the contact form. Deletion is not automated, except for the Shopify requests below. We handle it after you ask.
Shopify buyer erasure requests. When a buyer asks a Shopify merchant to erase their data, Shopify sends us a redaction request. We then automatically remove the buyer's phone and order note, and the recipient's name, phone and shipping address, from the orders named in that request. The carrier, tracking number, delivery option and country code stay, so the order record still adds up.
Disconnecting a channel stops the sync and removes the channel connection. Data already synced is kept for the periods above, and you can ask for earlier deletion through the support contact.
Uninstalling the SellingIO app from Shopify. 48 hours after you uninstall, Shopify sends us a store erasure request. On receipt we automatically anonymise the buyer details on every Shopify order of that shop: the buyer's phone and order note, and the recipient's name, phone and shipping address. This happens within the 30-day window Shopify sets. Order totals, carrier and tracking number stay, so your sales history still adds up.
Security
We transmit data over HTTPS. Access is limited to people who operate the service.
- Access tokens for connected channels are encrypted before they are stored. The encryption key is held outside the database.
- Sign-in can be protected with two-factor authentication or a passkey.
- The hosting provider takes server snapshots, rotated every 7 days.
If you find a security issue, tell us at [email protected].
International transfers
Your account, catalogue, stock and order data is stored on servers in Vietnam. Snapshots stay with the same provider in Vietnam.
Some data leaves Vietnam:
- Google processes your sign-in when you use Sign in with Google, and the browser token used for push notifications.
- Cloudflare carries traffic between your browser and our servers, and may process it at the edge location nearest to you.
- The channels you connect receive what you push and supply what you pull, wherever they operate.
These providers process data under their own published data-processing terms. We rely on those terms as the basis for the transfer.
Changes to this policy
When this policy changes, we update this page and the date at the top.
Contact
For operational requests — including deletion — use the contact form.
The legal privacy contact address is [email protected].