Privacy Policy
Trust is part of the build.
Privacy Policy
Last Updated: August 17, 2026
Zommerce ("Zommerce," "we," "us," or "our") respects your privacy and is committed to protecting personal information.
This Privacy Policy explains how we collect, use, disclose, retain, and protect personal information when you visit zommerce.co, contact us, request our services, or otherwise interact with us.
Zommerce is a business brand operated by SLASH INTERNET, a sole proprietorship based in India.
This Privacy Policy is intended to address privacy requirements that may apply to visitors and clients in the United States, Canada, the European Economic Area (EEA), the United Kingdom, and other jurisdictions.
1. Information We Collect
We may collect information you provide directly to us, information automatically collected when you use our website, and information received from third-party sources.
Information You Provide
Depending on how you interact with Zommerce, we may collect:
Name
Business or company name
Job title or professional role
Email address
Phone number
Business contact information
Website or Shopify store URL
Project requirements
Technical requirements
Information contained in proposals, contracts, or project communications
Messages and correspondence you send to us
Information contained in documents or materials you voluntarily provide
Any other information you choose to provide
Information Collected Automatically
When you visit our website, certain information may be collected automatically, including:
IP address
Browser and device information
Operating system
Approximate location derived from IP address
Pages viewed
Referring websites
Date and time of visits
Website interaction information
Diagnostic, security, and performance information
We may collect this information through cookies, pixels, analytics tools, server logs, and similar technologies.
2. How We Use Personal Information
We may use personal information for the following purposes:
Responding to inquiries
Communicating with prospective and existing clients
Providing Shopify development and ecommerce technology services
Preparing proposals, estimates, contracts, and statements of work
Delivering and supporting projects
Managing business relationships
Processing payments
Maintaining business and financial records
Operating, maintaining, and improving our website
Understanding website usage and performance
Improving our services and user experience
Maintaining website and information security
Detecting and preventing fraud, abuse, or unauthorized activity
Complying with legal and regulatory obligations
Sending relevant business or marketing communications where permitted by law
We will not use personal information for materially incompatible purposes without providing additional notice where required.
3. Legal Bases for Processing — EEA and UK
If you are located in the European Economic Area or United Kingdom, we process personal data only where we have an applicable legal basis.
Depending on the circumstances, our legal bases may include:
Contract
We may process personal data when it is necessary to enter into or perform a contract with you.
Legitimate Interests
We may process information where necessary for our legitimate business interests, provided those interests are not overridden by your rights and interests.
Examples may include:
Responding to business inquiries
Managing client relationships
Improving our services
Securing our systems
Preventing fraud and abuse
Operating and promoting our business
Consent
Where required, we may process personal data based on your consent.
You may withdraw consent at any time. Withdrawal of consent does not affect the lawfulness of processing that occurred before withdrawal.
Legal Obligation
We may process information when necessary to comply with applicable legal, tax, accounting, regulatory, or governmental requirements.
4. Cookies and Similar Technologies
We may use cookies and similar technologies to operate, secure, analyze, and improve our website.
These technologies may help us understand:
How visitors use our website
Which pages are visited
How visitors navigate our website
Website performance
Marketing effectiveness
Website security
Depending on your location, certain non-essential cookies may require your consent.
Where legally required, we will request consent before placing non-essential cookies or similar tracking technologies on your device.
You may also control cookies through your browser settings and, where available, through our website's cookie preferences.
Disabling certain cookies may affect website functionality.
5. Analytics and Marketing Technologies
We may use third-party analytics, advertising, and marketing technologies to understand website usage and improve our marketing.
Depending on the technologies deployed on our website, these providers may process information such as:
IP address
Device information
Browser information
Website interactions
Pages viewed
Referring URLs
Approximate location
Advertising or campaign interaction data
Where required by applicable law, we will obtain consent before using technologies that require consent.
We may update our cookie or privacy notices when we introduce new tracking technologies.
6. How We Share Personal Information
We may share personal information with service providers and other third parties where reasonably necessary to operate our business or provide our services.
These may include:
Website hosting and infrastructure providers
Analytics providers
CRM platforms
Email and communication providers
Payment processors
Project management platforms
Cloud storage providers
Security and fraud-prevention providers
Professional advisers
IT and technology providers
Service providers may access personal information only to the extent reasonably necessary to perform services for us or support our legitimate business activities.
We may also disclose information:
When required by law
In response to valid legal or governmental requests
To protect our rights, property, or safety
To investigate fraud, abuse, or security incidents
In connection with a merger, acquisition, restructuring, sale of assets, or similar business transaction
7. Sale and Sharing of Personal Information
Zommerce does not sell personal information for monetary consideration.
We do not intentionally provide personal information to third parties for their independent sale or commercial exploitation of that information.
Where applicable privacy laws define certain advertising or analytics activities as "sharing," "sale," or similar concepts, we will provide the rights and controls required by those laws.
8. International Data Transfers
Zommerce is operated from India and provides services to clients internationally.
Your personal information may therefore be transferred to, stored in, or processed in countries outside the country in which you reside, including India and other countries where we or our service providers operate.
Privacy and data protection laws in these countries may differ from those in your jurisdiction.
EEA and UK
Where personal data is transferred from the EEA or UK to a country that has not been recognized as providing an adequate level of protection, we will rely on an appropriate lawful transfer mechanism where required, such as:
Standard Contractual Clauses
An adequacy decision
Other lawful transfer mechanisms recognized under applicable data protection law
You may contact us for additional information about applicable international transfer safeguards.
9. Data Retention
We retain personal information only for as long as reasonably necessary for the purposes described in this Privacy Policy.
Retention periods may depend on:
The nature of the information
The purpose for which it was collected
Our relationship with you
Contractual requirements
Legal and regulatory requirements
Accounting and tax requirements
The need to establish, exercise, or defend legal claims
When information is no longer reasonably necessary, we may delete, anonymize, or securely dispose of it, subject to applicable legal requirements.
10. Data Security
We use reasonable administrative, technical, and organizational measures designed to protect personal information from unauthorized access, disclosure, alteration, misuse, or destruction.
However, no internet transmission or electronic storage system can be guaranteed to be completely secure.
Accordingly, while we take reasonable precautions to protect information, we cannot guarantee absolute security.
11. Your European Economic Area and UK Privacy Rights
If you are located in the EEA or UK, you may have rights under applicable data protection laws, including the GDPR or UK GDPR.
Depending on the circumstances, these may include:
Right of Access
You may request a copy of personal data we hold about you.
Right to Rectification
You may request correction of inaccurate or incomplete personal data.
Right to Erasure
You may request deletion of your personal data in certain circumstances.
Right to Restriction
You may request restriction of processing in certain circumstances.
Right to Data Portability
Where applicable, you may request personal data in a structured, commonly used, machine-readable format and request its transfer to another organization.
Right to Object
You may have the right to object to certain processing, including processing based on legitimate interests.
You may also object to direct marketing at any time.
Right to Withdraw Consent
Where processing is based on consent, you may withdraw that consent at any time.
Withdrawal does not affect processing that occurred before consent was withdrawn.
Rights Relating to Automated Decision-Making
Where applicable, you may have rights relating to solely automated decision-making and profiling that produces legal or similarly significant effects.
12. Exercising European or UK Privacy Rights
To exercise your rights, contact us using the privacy contact information provided below.
We may need to verify your identity before fulfilling a request.
We will respond within the timeframe required by applicable law.
If you are located in the EEA or UK, you also have the right to lodge a complaint with the relevant data protection supervisory authority.
You may contact the data protection authority in the country where you live, work, or believe a violation occurred.
13. Your Canadian Privacy Rights
If you are located in Canada, applicable federal or provincial privacy legislation may provide you with rights concerning your personal information.
Depending on the circumstances and applicable law, these rights may include:
Requesting access to personal information we hold about you
Requesting correction of inaccurate information
Asking how personal information is collected, used, or disclosed
Withdrawing consent where applicable
Making inquiries or complaints regarding our privacy practices
For Canadian residents, our handling of personal information may be subject to applicable Canadian privacy laws, including the Personal Information Protection and Electronic Documents Act (PIPEDA) where applicable, as well as applicable provincial privacy legislation.
We will process Canadian privacy requests in accordance with the laws applicable to the particular situation.
14. Marketing Communications
We may occasionally send business communications, including information about our services, projects, or relevant ecommerce technology.
Where required by law, we will obtain appropriate consent before sending electronic marketing communications.
You may unsubscribe from marketing communications at any time by:
Using the unsubscribe mechanism included in the communication; or
Contacting us using the privacy contact information below.
You may continue to receive transactional or service-related communications where necessary.
15. Do Not Track and Privacy Signals
Some browsers provide "Do Not Track" settings.
Because there is no universally accepted technical standard for responding to Do Not Track signals, our website may not respond to such signals unless required by applicable law.
Where applicable law requires recognition of a legally recognized privacy preference signal, we will process such signals in accordance with applicable requirements.
16. Third-Party Websites and Services
Our website may contain links to third-party websites, applications, platforms, or services.
We are not responsible for the privacy practices, security, or content of third-party websites.
Third-party services may have their own privacy policies and terms.
We encourage you to review those policies before providing personal information to third parties.
17. Shopify and Client Data
Zommerce provides Shopify development and ecommerce technology services.
If you engage us to work on your Shopify store or other technology systems, we may receive access to information relating to your business, website, Shopify store, products, orders, customers, or other systems.
Where we process personal information on behalf of a client, we generally do so according to the client's instructions and the applicable contract, statement of work, or data processing agreement.
We do not use client data for unrelated purposes unless authorized by the client or required by applicable law.
Clients remain responsible for determining their own legal obligations concerning information they provide to us and for providing appropriate privacy notices and obtaining required permissions or consents.
Where appropriate, clients may request a separate data processing agreement.
18. Children's Privacy
Our website and services are intended for businesses and adults.
We do not knowingly collect personal information from children under 13.
If you believe that a child has provided personal information to us, please contact us so that we can take appropriate steps to delete it.
Where local law establishes a higher age threshold for certain processing activities, we will comply with applicable requirements.
19. California Privacy Rights
If you are a California resident and applicable California privacy law applies to our processing of your personal information, you may have additional rights under the California Consumer Privacy Act (CCPA), as amended.
These may include rights to:
Know what personal information is collected, used, disclosed, or otherwise processed
Delete personal information, subject to applicable exceptions
Correct inaccurate personal information
Opt out of certain sales or sharing of personal information
Limit certain uses of sensitive personal information
Receive equal treatment for exercising applicable privacy rights
Zommerce does not sell personal information for monetary consideration.
Where required, California residents may submit privacy requests using the contact information below.
20. Privacy Requests
To submit a privacy request, question, complaint, or other inquiry concerning your personal information, contact:
Zommerce
Operated by SLASH INTERNET
India
Privacy contact: rayyan@zommerce.co
Please include sufficient information for us to understand and process your request.
We may request additional information where necessary to verify your identity or authority to make a request.
We will not discriminate against you for exercising privacy rights available under applicable law.
21. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes to:
Our services
Our website
Technology we use
Our data practices
Applicable privacy laws and regulations
When we make changes, we will update the "Last Updated" date at the top of this Privacy Policy.
Where required by law, we may provide additional notice or obtain consent for material changes.
22. Contact Information
For privacy questions, data protection requests, or concerns regarding this Privacy Policy:
Zommerce
A brand operated by SLASH INTERNET
India
Email: rayyan@zommerce.co
For general business inquiries, please use the contact information provided on the Zommerce website.
Last Updated: August 17, 2026

Your next million in revenue may already be in your store
We build the Shopify infrastructure that helps you capture it.
