Privacy Policy
Effective 24 April 2026
This Privacy Policy explains how Hauly ("we", "us", "our") collects, uses, and protects information when you use the Hauly website and service at hauly.net (the "Service"). If you have any questions, contact us at info@hauly.net.
1. Who this policy applies to
This policy applies to anyone who visits hauly.net, signs up for an account, or uses any part of the Service. We are the data controller for personal information you provide to us through the Service.
2. Information we collect
Account information. When you sign up, we collect your email address and a password (stored hashed by our authentication provider). We do not require your real name.
Subscription and payment information. If you subscribe to Hauly Pro, we collect a Stripe customer ID, subscription status, billing period, and cancellation flag. We do not store your card number, CVC, or full billing address. Payment details are handled directly by Stripe.
Inventory and sales data you enter. The Service exists to track your reselling business, so the data you choose to log is the core of what we store. This includes item names, categories, purchase prices and dates, sourcing locations and notes, sale prices and platforms, shipping costs, status, and any photos you upload (Pro plan).
Sourcing map data. If you mark where you bought an item on the map, we store the latitude, longitude, and a location label you choose. Coordinates are only stored when you actively place a pin.
Shipments. If you use the shipments feature, we store carrier name, tracking number, status, buyer name (if you enter one), shipped date, and any notes you add.
Find of the Week submissions. If you submit an item to Find of the Week, the item name, paid price, sold price, platform, description, image, and Instagram handle you enter are visible to all visitors of the homepage. Do not submit anything you do not want shown publicly.
Imported data. If you import a CSV or spreadsheet, the contents you upload are stored as items in your account.
Technical data. Our hosting provider automatically logs basic technical information such as IP address, browser type, and request timestamps for security and operational purposes.
3. How we use your information
- To provide the Service: store your data, calculate profit, render charts, generate reports, and so on.
- To authenticate you and protect your account.
- To process subscriptions, refunds, and billing for Pro plans.
- To respond to support requests you send us.
- To send essential service emails (account, billing, security). We do not send marketing emails without your explicit consent.
- To detect, prevent, and address fraud or abuse.
- To comply with legal obligations.
4. Third-party services we use
To run Hauly we share the minimum information necessary with the following processors:
- Supabase — authentication and database hosting. Stores your account, items, shipments, profile, and other application data.
- Stripe — payment processing for Pro subscriptions. You enter card details directly into Stripe; we receive a customer reference and subscription status.
- Vercel — application hosting and content delivery.
- OpenStreetMap and Nominatim — used to render maps and resolve place names. Coordinates and search queries you make on the map are sent to OpenStreetMap.
- Fontshare — serves the Satoshi font used in the interface.
We do not sell your personal information to anyone.
5. Cookies
We use cookies and similar local storage strictly to keep you signed in and to remember preferences. We do not currently use third-party advertising or cross-site tracking cookies. If we add analytics in the future, we will update this policy and, where required, ask for your consent.
6. Legal basis for processing
We process your personal information on the following bases:
- Contract — to provide the Service you have signed up for.
- Legitimate interests — to keep the Service secure, improve it, and prevent fraud.
- Consent — for any optional communications or features that require it.
- Legal obligation — to comply with applicable laws, including the Personal Information Protection and Electronic Documents Act (PIPEDA) and the British Columbia Personal Information Protection Act (PIPA) where applicable.
7. Data retention
We keep your account data for as long as your account is open. If you cancel a Pro subscription, your account remains on the Free plan and your data is preserved. If you delete your account, we delete your items, shipments, profile, and uploaded photos. Some records (such as billing receipts) may be retained for as long as required by law.
8. Your rights
Depending on where you live, you have the right to:
- Access the personal information we hold about you.
- Ask us to correct or delete your information.
- Export your data in a portable format.
- Object to or restrict certain types of processing.
- Withdraw consent where processing is based on consent.
- Lodge a complaint with the relevant privacy regulator. In Canada, this is the Office of the Privacy Commissioner of Canada (priv.gc.ca) or, for British Columbia residents, the Office of the Information and Privacy Commissioner for BC (oipc.bc.ca). UK and EU residents may also contact their local supervisory authority.
To exercise any of these rights, email info@hauly.net. You can also delete most of your data directly in the app.
9. Security
We rely on industry-standard infrastructure (Supabase, Stripe, Vercel) and use row-level security so that your inventory and sales data are only accessible to you. No system is completely secure, so we cannot guarantee absolute security, but we take reasonable steps to protect your information.
10. International transfers
Our processors may store or process data outside Canada, including in the United States, the United Kingdom, and the European Union. While stored or processed outside Canada, your information may be subject to the laws of those jurisdictions and accessible to their courts and law enforcement. Where a transfer involves UK or EU personal data, it is protected by the relevant safeguards (such as Standard Contractual Clauses or an adequacy decision).
11. Children
Hauly is not intended for children under 16. We do not knowingly collect personal information from children. If you believe a child has signed up, please contact us and we will delete the account.
12. Changes to this policy
We may update this policy from time to time. If we make a material change, we will post the updated version here and update the effective date above. Continued use of the Service after a change means you accept the updated policy.
13. Contact
Hauly
Email: info@hauly.net