TodoUno
How it works Features Privacy
Get started

Legal

Privacy Policy

Effective date: September 19, 2026
Last updated: September 19, 2026
App: TodoUno (Android / iOS / Web)

This Privacy Policy explains what information TodoUno collects, why we collect it, how we use and share it, and the choices you have. It is written to meet Google Play Console User Data / Data safety disclosure expectations and applicable privacy laws.

Contents

  1. Who we are
  2. Scope of this policy
  3. Information we collect
  4. How we collect information
  5. How we use information
  6. App permissions
  7. How we share information
  8. Data security
  9. Data retention
  10. Your rights & choices
  11. Account & data deletion
  12. Children’s privacy
  13. International transfers
  14. Third-party services
  15. Changes to this policy
  16. Contact us

1. Who we are

TodoUno (“TodoUno,” “we,” “us,” or “our”) operates a multi-category marketplace and delivery platform that connects customers, merchants (shops), and delivery riders. This Privacy Policy applies to our mobile applications, websites, admin tools, and related services (collectively, the “Services”).

Privacy contact: privacy@todouno.com
Support: support@todouno.com

2. Scope of this policy

This policy covers personal data processed when you:

  • Create or use a customer, merchant, rider, or admin account
  • Browse, search, scan, order, pay, or track deliveries
  • Upload products, inventory, offers, or shop documents
  • Contact support or interact with notifications
  • Visit our marketing website or use linked web tools

3. Information we collect

Depending on your role and how you use the Services, we may collect:

3.1 Personal information you provide

  • Identity & contact: name, email, phone number, profile photo
  • Account credentials: authentication data (passwords are hashed; OTPs for verification)
  • Merchant / KYC data: shop name, address, business documents, verification details
  • Rider identity: ID / verification documents where required for delivery operations
  • Order details: cart contents, delivery address, special instructions, order history
  • Payment-related data: payment method selection and transaction references (card numbers are processed by payment providers; we do not store full card PANs on our servers when using providers such as Stripe)
  • Communications: support messages, in-app chat related to orders/issues
  • Content you upload: product images, catalogs (CSV/Excel), promotional creatives

3.2 Sensitive / special categories (where applicable)

  • Government ID or KYC documents for merchants/riders (used only for verification and compliance)
  • Precise location while using delivery / tracking features (see Permissions)

3.3 Device, usage & technical data (collected automatically)

  • Device type, OS version, app version, language
  • IP address, approximate network info, crash/diagnostic logs
  • In-app activity (pages viewed, search/scan events, feature usage)
  • Push notification tokens (e.g., Firebase Cloud Messaging)

3.4 Location data

  • Customers: delivery address and optional location to show nearby shops / ETAs
  • Riders: live location during active deliveries for navigation and customer tracking
  • Location access can be limited or revoked in device settings (service quality may be reduced)

3.5 Photos, camera & media

  • Camera access for product scanning / barcode workflows and optional profile or product photos
  • Images you choose to upload for inventory, issues, or verification

4. How we collect information

  • Directly from you when you register, order, upload, or contact us
  • Automatically through the app/website (logs, analytics, crash reports, tokens)
  • From third parties such as payment processors, SMS/OTP providers, maps, and cloud storage — only as needed to operate the Services

5. How we use information

We use personal data to:

  • Provide, operate, and improve the marketplace and delivery Services
  • Create and authenticate accounts; verify OTP / identity where required
  • Process orders, payments, refunds, payouts, and disputes
  • Enable scanning, search, inventory, offers, and merchant tools
  • Provide live tracking, ETAs, and rider navigation
  • Send transactional notifications (order status, security alerts)
  • Send optional marketing messages where permitted (you can opt out)
  • Detect fraud, abuse, and security incidents; enforce terms
  • Comply with legal, tax, AML/KYC, and accounting obligations
  • Analyze aggregated usage to improve performance and UX

We do not sell your personal information.

6. App permissions (Google Play / device)

TodoUno may request the following permissions. You can deny or revoke them in system settings; some features may not work without them.

Permission Purpose
Camera Product / barcode scanning; optional photo capture for products, profiles, or support issues
Photos / media / files Upload product images, documents, or attachments you choose
Location (approximate / precise) Nearby shops, delivery address assistance, rider tracking during active jobs
Notifications Order updates, delivery status, security and account alerts
Internet / network Core app connectivity to our API and third-party services

7. How we share information

We share personal data only as needed to run the platform:

  • Other users on the platform: e.g., merchants see order details needed to fulfill; riders see pickup/drop-off info; customers see rider tracking during delivery
  • Service providers: hosting, databases, analytics/crash tools, email/SMS (e.g., Twilio), push notifications (e.g., Firebase), maps, file storage (e.g., cloud buckets)
  • Payment partners: Stripe, PagoMóvil, Zinli, crypto/payment rails, and similar processors to complete transactions
  • Legal / safety: when required by law, court order, or to protect rights, safety, and integrity of users and TodoUno
  • Business transfers: in connection with a merger, acquisition, or asset sale, subject to appropriate protections

We require processors to protect data and use it only for instructed purposes.

8. Data security

We use industry-standard safeguards such as HTTPS/TLS in transit, access controls, hashed passwords, and restricted internal access. No method of transmission or storage is 100% secure; we work to prevent unauthorized access, disclosure, alteration, or destruction.

9. Data retention

We keep personal data only as long as needed for the purposes above, including:

  • Active account lifetime and a reasonable period afterward
  • Order, payment, and dispute records as required by law / accounting
  • KYC / verification records for compliance periods
  • Security and fraud logs for a limited operational window

When data is no longer needed, we delete or anonymize it where feasible.

10. Your rights & choices

Subject to applicable law, you may request to:

  • Access the personal data we hold about you
  • Correct inaccurate or incomplete data
  • Delete your data / account (see below)
  • Object to or restrict certain processing
  • Withdraw consent where processing is consent-based
  • Opt out of non-essential marketing communications
  • Control device permissions (camera, location, notifications)

Email privacy@todouno.com or support@todouno.com. We may verify your identity before fulfilling requests.

11. Account & data deletion (Google Play requirement)

You may request deletion of your TodoUno account and associated personal data. This supports Google Play’s account deletion requirements for apps that offer account creation.

How to request deletion

  1. In the app: Profile / Settings → Delete account (when available), or
  2. Email privacy@todouno.com from your registered email with subject “Delete my TodoUno account”

We will process verified deletion requests within a reasonable period (typically within 30 days), except where we must retain certain records for legal, fraud-prevention, accounting, or dispute purposes. After deletion, you will lose access to order history and account features.

12. Children’s privacy

TodoUno is not directed to children under 13 (or the minimum age required in your jurisdiction). We do not knowingly collect personal data from children. If you believe a child has provided data, contact us and we will take appropriate steps to delete it.

13. International data transfers

We may process and store data on servers or with providers located outside your country (including cloud regions used by our infrastructure). Where required, we use appropriate safeguards for cross-border transfers.

14. Third-party services & links

Our Services may integrate or link to third parties, including (examples):

  • Payment processors (Stripe, local payment rails, crypto gateways)
  • Communications (SMS/OTP, email)
  • Maps / geolocation providers
  • Firebase / FCM for push notifications
  • Cloud storage and hosting providers

Those services have their own privacy policies. We encourage you to review them. We are not responsible for third-party practices outside our control.

15. Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated version on this page and revise the “Last updated” date. Material changes may also be communicated in-app or by email where appropriate. Continued use of the Services after an update means you acknowledge the revised policy.

16. Contact us

For privacy questions, data requests, or complaints:

  • Privacy: privacy@todouno.com
  • Support: support@todouno.com
  • Website: todouno-website.vercel.app
Google Play Data safety note: This policy is intended to support your Play Console Data safety form. Keep the form aligned with the data types, purposes, sharing, and security practices described here. Update both when the app’s data practices change.
TodoUno

Marketplace & delivery for Venezuela.

Home Privacy Policy privacy@todouno.com