Privacy Policy & Customer Data Protection
PIPEDA, CCPA/CPRA & Global Privacy Compliance · Maginut Inc. (iecsp.com)
1. Information We Collect
• Merchant Account Info: Name, corporate name, email, phone number, physical store address, and tax identification. • Operational Data: Product catalogs, menu BOM recipes, floor plans, table states, employee PINs, and inventory records. • End-Customer Transaction Records: Order item details, timestamp, payment method type, and masked card identifiers (we NEVER store full credit card numbers or CVV/CVC codes). • Technical Diagnostics: IP address, device telemetry, browser type, and system logs.
2. How We Use and Process Data
We process data strictly to deliver POS services, route kitchen tickets to KDS devices, calculate inventory deductions, generate accounting summaries, and protect against fraudulent transactions. We do NOT sell, rent, or monetize your restaurant data or customer lists to third-party advertisers.
3. Sub-processors & Cloud Security
Data is hosted in secure, SOC 2 compliant North American data center clusters. All data in transit is encrypted using TLS 1.3 encryption, and sensitive data at rest is protected with AES-256 encryption. Our sub-processors (Shopware Store-API infrastructure, transactional email dispatchers) are bound by strict Data Processing Agreements (DPA).
4. Merchant Data Ownership & DSAR Rights
Merchants retain 100% ownership of their operational data. Under PIPEDA and CCPA, you have the right to request an export of your store data, rectify inaccuracies, or request full account and data deletion upon service cancellation by contacting privacy@maginut.com.
