Privacy policy
Last updated: 2 August 2026
PosSwift is an offline-first point-of-sale system. Your shop's operational data — sales, stock, customers, invoices — is created and stored on your own device, not on our servers. This policy explains the narrow set of data we do handle, why we handle it, and how you control it.
The short version
- Your point-of-sale data stays on your device. We do not upload your sales, stock, customer records, or invoices to our servers.
- We do not sell personal data. We never have and this policy forbids it.
- Analytics and error reporting are off until you turn them on. Nothing loads before you consent.
- We collect the minimum needed to license the software, answer your questions, and keep the product working.
- You can request access, correction, export, or deletion of your data at any time.
Who we are
PosSwift provides point-of-sale software for small and independent retailers. For anything in this policy, and for any request about your personal data, contact us at contact@posswift.com.
Where data protection law requires it, PosSwift acts as the data controller for the account, billing, and website data described below. For the operational data you enter into the POS application, you are the controller and PosSwift is, at most, a processor — in practice that data does not reach us at all.
What we collect
We group the data by why it exists. If a category is not listed here, we do not collect it.
| Data | Why | Kept for |
|---|---|---|
| Email address, business name, phone number, number of tills, current POS, city, and any notes you type | Only when you submit the enterprise contact form so a person can reply to you | Until the enquiry is closed, then 24 months |
| Licence and device identifier | To activate your licence, run the trial, and stop one licence being used on unlimited devices | Life of the licence plus 90 days |
| Billing records and invoices | To take payment and meet tax and accounting obligations | As long as accounting law requires, typically 7–10 years |
| Product analytics events | Only with your consent, to see which features get used | 12 months rolling |
| Crash and error reports | Only with your consent, to find and fix defects | 90 days |
| Support correspondence | To answer you and keep a record of what was agreed | 24 months from last contact |
We do not ask for, and you should never send us, payment card numbers by email. Card details are handled by our payment provider and never reach PosSwift systems.
Your point-of-sale data
This is the part most policies get vague about, so we will be blunt. The sales you ring up, the stock you count, the customers you record, and the invoices you print are written to storage on your own device. The application is built to keep working with no internet connection at all, which is only possible because that data is local.
We do not have a copy of it. We cannot read it, restore it, or hand it to anyone. That also means backups are your responsibility — if the device is lost, wiped, or damaged and you have no backup, the data is gone.
If we later offer an optional sync or backup service, it will be opt-in, announced before it ships, and covered by an updated version of this policy. We will not silently start uploading your shop data.
Consent, and what happens before you give it
Analytics and error-reporting tools are not loaded into the page until you accept them. Before consent, your browser makes no request to any third-party analytics or monitoring provider. This is enforced in code, not by policy alone.
If you decline, or simply ignore the banner, the optional tools stay off and any queued events are discarded. Declining does not degrade the website.
Who else processes data
We use a small number of service providers. Each is bound by a data processing agreement and may only act on our instructions.
| Provider | Purpose |
|---|---|
| Hosting and content delivery | Serving this website |
| Product analytics | Usage statistics — only with your consent |
| Error monitoring | Crash diagnostics — only with your consent |
| Transactional email | Sending replies, licence details, and confirmations |
| Payment processing | Taking payment and issuing invoices |
| Customer relationship tooling | Tracking enterprise enquiries |
Some providers operate in countries other than yours. Where personal data moves across borders, we rely on the safeguards offered by the provider, such as standard contractual clauses. You can ask us which providers are in use at any time.
Why we are allowed to process it
- Performance of a contract — to license the software to you, activate it, and support it.
- Consent — for analytics, error reporting, and any future marketing cookie. Withdrawable at any time.
- Legal obligation — to keep tax, accounting, and billing records.
- Legitimate interests — to keep the service secure, prevent abuse of trials and licences, and reply to enquiries you send us. We balance this against your rights and keep the data minimal.
Your rights
Wherever you are, we honour the following requests. You do not need to cite a law to make one.
- Access — get a copy of the personal data we hold about you.
- Correction — have inaccurate data fixed.
- Deletion — have your data erased, unless we are legally required to keep it.
- Export — receive your data in a portable, machine-readable format.
- Objection and restriction — ask us to stop or pause a particular use.
- Withdraw consent — turn analytics or error reporting back off, without affecting anything you did before.
Submit a request through the data request form on this site, or email contact@posswift.com. We reply within 30 days. If we need longer for a complex request, we will tell you why before that deadline passes.
If you are unhappy with our response, you may complain to the data protection authority where you live or work.
Security
- All traffic to this website and our APIs is encrypted in transit.
- Licence tokens are cryptographically signed and verified by the application.
- Access to systems holding personal data is restricted to staff who need it.
- We keep the amount of personal data we hold deliberately small, because data we never collect cannot leak.
No system is perfectly secure. If a breach affects your personal data and is likely to present a risk to you, we will notify you and the relevant authority without undue delay.
Children
PosSwift is business software sold to traders. It is not directed at children and we do not knowingly collect personal data from anyone under 18. If you believe a child has given us data, contact us and we will delete it.
Changes to this policy
If we make a material change — a new category of data, a new purpose, or a new class of recipient — we will update the date at the top of this page and give notice in the product or by email before the change takes effect.
Contact
Privacy questions and data requests, and anything else: Contact@PosSwift.com.