TopRete — Privacy Policy
Version: 1.0
Effective date: 20 August 2026
1. Data we process
TopRete may process a user's name, email address, profile information, city, avatar, posts, comments, photographs, messages, business information, goods and services, orders, account settings and technical data required to operate the service.
2. Authentication
TopRete may use email authentication and third-party authentication systems such as Google Sign-In. Passwords must not be stored by TopRete in plain text.
3. Geolocation
Geolocation is used for Nearby features, maps, determining a region or service area, and related scenarios. Access is requested through the device or browser. Refusing geolocation access should not prevent access to basic public information.
4. Business addresses
A business's physical address, service region, coordinates and public contact details may be displayed to other users.
5. Orders
TopRete may store party identifiers, the contents and value of an order, payment and fulfilment methods, status, status history and information necessary to fulfil the order.
6. Chats
Messages may be stored for delivery, conversation history, security, abuse prevention and the review of reports.
7. Push notifications
With the user's permission, TopRete stores a technical push subscription, including its endpoint and required cryptographic keys. This information is used to deliver notifications.
8. Files and images
Images may be stored in cloud storage and automatically compressed, resized, converted, stripped of unnecessary metadata and used to generate thumbnails.
9. Automated moderation
TopRete may use AI and other automated systems to detect hate speech, threats, harassment, fraud, spam, illegal content, potentially misleading advertising, personal-data disclosures and other violations. An automated signal is not conclusive proof of a violation.
10. Purposes of processing
Data is used for accounts, business profiles, posts, search, orders, chats, favourites, notifications, security, prevention of fraud and spam, moderation, bug fixing, analytics and compliance with law. TopRete does not sell users' personal data to third parties.
11. Public data
Public information may include a user's name, avatar, posts and comments, as well as business profiles, catalogues, photographs, descriptions, prices, addresses or service areas.
12. Infrastructure providers
TopRete may use third-party services for hosting, databases, cloud storage, maps, authentication, notifications, monitoring and security.
13. Security
TopRete uses authentication, access controls, RLS and protected server operations. Absolute security of an internet service cannot be guaranteed.
14. Retention
Data is retained for as long as necessary to operate the service, maintain security, fulfil orders, resolve disputes and comply with law.
15. Account deletion
After account deletion, personal data should be deleted or anonymised unless continued retention is required for lawful purposes.
16. User rights
Depending on applicable law, users may have rights of access, correction, deletion, restriction of processing, withdrawal of consent and complaint.
17. Contact details
Before public launch, the following must be specified:
Operator: [legal name]
Address: [legal address]
Data enquiries email: [email]