Legal

Privacy Policy

Last updated: June 10, 2026

This policy describes how Baseplate Digital handles information across our website and marketplace apps. If you use one of our apps on a platform such as Wix, that platform's own privacy policy also applies to how it processes your data.

1Overview

Baseplate Digital ("we", "us", "our") builds apps and tools for online businesses, distributed through marketplaces such as the Wix App Market. This Privacy Policy describes what information we collect, how we use it, and the choices you have when you use our website and apps (collectively, the "Services").

By using our Services, you agree to the practices described here.

2Who this applies to

Our apps are used by online businesses ("merchants") and, in some cases, their customers ("shoppers").

  • Merchants (for example, a Wix site owner who installs our app) — we process account and app configuration data needed to provide the app, support, billing, and usage limits.
  • Shoppers(customers checking out on a merchant's store) — we generally do not receive shopper data directly from shoppers. Where an app needs checkout information to function, the marketplace passes it to our app only for that purpose. See DeliverSure below for address validation.

3Information we collect

Information you provide

  • Contact details you send us, such as your email address and message content
  • Account or store identifiers needed to provide support for an app

Information collected automatically

  • Basic usage and diagnostic data (such as app events and error logs) to keep the app working
  • Standard technical information like device or browser type, where provided by the marketplace platform

Information from the marketplace

When you install one of our apps, the marketplace (for example, Wix) may share limited information needed to run the app — such as your site ID, app instance ID, subscription or plan status, and the permissions you grant. We only access what's required for the app to function.

Operational and metering data

  • App usage metrics (for example, monthly validation session counts for metered features)
  • Diagnostic and product events (such as app dashboard loads or validation outcomes) tied to an app instance, not used for advertising

4DeliverSure (address validation)

DeliverSure helps merchants validate shipping addresses at checkout. When a shopper enters a shipping address on a store that uses DeliverSure:

  • The marketplace sends us the shipping address fields needed for validation (such as street, city, postal code, state or province, and country).
  • We send those fields to Google's Address Validation API to assess whether the address appears deliverable. Google processes the address under Google's privacy policy.
  • We store a short-lived cache of the validation result (including normalized address components returned by Google) in Cloudflare KV for up to about 10 minutes per checkout session, so repeat checks in the same checkout do not re-call Google unnecessarily.
  • We store a one-way hash of the address for cache lookup. We do not persist full shipping addresses in our primary database.
  • We store merchant configuration (validation mode, enabled countries, custom messages) in Wix app data and a secured backend mirror used at checkout.

DeliverSure is designed not to block checkout when validation infrastructure is unavailable; in those cases no Google call is made and no new validation result is stored.

5How we use information

  • To provide, operate, and maintain our apps and website
  • To respond to support requests and communicate with you
  • To diagnose problems, improve reliability, and develop new features
  • To comply with legal obligations and marketplace requirements

We do not sell your personal information.

6When we share information

We share information only where necessary:

  • Service providers who help us operate the Services, under appropriate confidentiality and security obligations. Our current infrastructure providers include:
    • Cloudflare — application hosting, edge compute, and short-lived session cache
    • Supabase — encrypted database storage for app installations, settings mirrors, usage metering, and operational logs
    • Google — address validation for DeliverSure (Address Validation API only, when a checkout address is validated)
  • Marketplace platforms as required to distribute and run our apps
  • Legal reasons, if required by law or to protect rights, safety, and security

7Data retention

We keep information only as long as needed to provide the Services, meet legal obligations, resolve disputes, and enforce our agreements. When information is no longer needed, we delete or anonymize it.

  • DeliverSure validation cache — up to about 10 minutes per checkout session (automatic expiry).
  • Usage metering — monthly session counts for the current and recent billing periods.
  • Merchant app settings — until the merchant changes or uninstalls the app.
  • Support email — as long as needed to resolve the request and for reasonable record-keeping.

8Your rights

Depending on where you live, you may have the right to access, correct, delete, or export your personal information, or to object to certain processing. To make a request, email us at the address below and we'll respond in line with applicable law.

9Security

We take reasonable technical and organizational measures to protect information, including:

  • Encrypted connections (HTTPS/TLS) for data in transit
  • Encryption at rest provided by our cloud infrastructure providers
  • Access controls on backend services (authenticated API access, secrets stored outside application code, limited database access)
  • Collecting and retaining only what is needed for each app

No method of transmission or storage is completely secure, but we work to safeguard your data and limit access to what's necessary.

10Changes to this policy

We may update this policy from time to time. When we do, we'll revise the "Last updated" date above. Significant changes will be communicated where appropriate.

11Contact us

Questions about this policy or your data? Email hello@baseplatedigital.com. For app-specific support, see our Support page.