Back to Sign In

Privacy Policy

Last updated: 7/26/2026

1. Information We Collect

We collect information you provide directly (name, email address, phone number, account credentials), information Merchants provide when configuring their storefront (business name, address, hours, service listings, staff), transaction data generated when you book appointments or place orders, payment metadata returned by Stripe after processing (last-four card digits, card brand, transaction status — we do not store raw card numbers or full card details), and device and usage information (IP address, browser type, pages visited, referral source).

2. How We Use Your Information

We use your information to operate the Platform and process bookings and orders, facilitate secure payments through Stripe, send appointment confirmations, reminders, and OTP verification codes, prevent fraud and unauthorized access, improve our services and Platform experience, and comply with applicable laws and legal obligations. We do not sell your personal information to third parties.

3. Data Sharing

We share your information only as necessary: • With the Merchant whose storefront you interact with, so they can fulfill your booking or order. • With Stripe, Inc. to process payments (Stripe's Privacy Policy governs their handling of payment data). • With service providers who help us operate the Platform (hosting, transactional email, analytics) under strict confidentiality agreements. • With legal authorities when required by applicable law, regulation, or valid legal process.

4. Payment Data & Stripe

All payment card transactions on the Platform are processed by Stripe, Inc., a PCI-DSS Level 1 certified payment processor. When you enter payment card details, that information is transmitted directly to Stripe and is never stored on our servers. We receive only limited, non-sensitive payment metadata (last-four digits, card brand, transaction status). By making a payment you also agree to Stripe's Terms of Service and Privacy Policy, available at stripe.com.

5. Security

We store data in North America with industry-standard encryption in transit (TLS) and at rest. Access to personal data is restricted on a need-to-know basis and protected by access controls. Payment security is enforced by Stripe's PCI-DSS-compliant infrastructure. No method of data transmission over the internet is 100% secure; you use the Platform at your own risk.

6. Cookies

We use cookies and similar technologies to maintain your session, remember your preferences, prevent fraud, and measure Platform performance. You may disable cookies in your browser settings, but some features (such as staying signed in) may not function correctly without them.

7. Your Rights

You may request access to, correction of, or deletion of your personal data by contacting support@newordr.com. We will respond within the timeframe required by applicable law. Some data may be retained for legal, tax, or fraud-prevention purposes even after a deletion request is honored.

8. Data Retention

We retain your personal data for as long as your account is active or as needed to provide our services. Appointment and transaction records may be kept for up to 7 years for tax and legal compliance. You may request earlier deletion of personal data subject to our legal obligations.

9. Children's Privacy

The Platform is intended for users 18 years of age or older. We do not knowingly collect personal information from children under 13. If you believe a child has submitted personal data to us, please contact support@newordr.com immediately and we will take steps to delete it.

10. Changes to This Policy

We may update this Privacy Policy at any time. When we make material changes, we will notify you by email or by posting a prominent notice on the Platform before the changes take effect. Your continued use of the Platform after changes take effect constitutes your acceptance of the updated Policy.

11. Contact Us

For privacy inquiries or data requests, contact us at: Compubility, Inc. — NewOrdr Email: support@newordr.com

State & Territory-Specific Privacy Addendum

No additional regional privacy requirements apply beyond those described in this Policy.