This policy describes what data the Quazko platform processes, why, and for how long, both for merchants and for buyers whose payments pass through the platform.
Payment data is shared with the payment provider processing the given payment, and with the merchant that owns the payment. We do not sell personal data and do not use it for advertising.
Payment records and the audit trail are retained for as long as required for financial record-keeping and dispute resolution, after which they are deleted or irreversibly anonymised. Technical logs are rotated on a short cycle.
Provider credentials are stored with authenticated encryption (AES-based). All transport is TLS. Inbound confirmations are verified over raw bytes with constant-time comparison. Access to production systems is key-based and restricted.
Buyers and merchants may request access, correction, or deletion of their personal data, subject to record-keeping obligations, by writing to support@quazko.com. Buyers should direct payment-specific questions to the merchant they purchased from in the first instance.
The public website and the cashier use only technically necessary cookies. No analytics or advertising trackers are used.