🔒 Privacy Policy
Last Updated: November 7, 2025
Your privacy matters to us. This Privacy Policy explains how ErrandExpress collects, uses, and protects your personal information. We are committed to keeping your data safe and secure.
1. Information We Collect
📝 Information You Provide:
- Account Information: Full name, email address, phone number, password
- Profile Information: Bio, profile picture, role (task poster/doer)
- Payment Information: GCash number (stored securely)
- Skill Validation: Test scores, portfolios, proof documents
- Task Information: Task descriptions, requirements, deadlines
- Communications: Messages, ratings, reviews, reports
🔍 Information We Collect Automatically:
- Usage Data: Pages visited, features used, time spent on platform
- Device Information: IP address, browser type, operating system
- Location Data: General location (for task matching)
- Cookies: Session data, preferences, authentication tokens
2. How We Use Your Information
We use your information to:
- Provide Services: Create accounts, process tasks, facilitate payments
- Match Tasks: Connect task posters with qualified doers
- Process Payments: Handle transactions securely via PayMongo
- Verify Skills: Review and validate user skills
- Send Notifications: Task updates, messages, payment confirmations
- Improve Platform: Analyze usage patterns, fix bugs, add features
- Ensure Safety: Detect fraud, prevent abuse, resolve disputes
- Customer Support: Respond to inquiries and resolve issues
- Legal Compliance: Meet regulatory requirements
3. Information Sharing
✅ We Share Information With:
- Other Users: Your profile, ratings, and task-related information are visible to users you interact with
- Payment Processors: PayMongo (for GCash payments) - only necessary payment data
- Service Providers: Hosting (Supabase), email services - under strict confidentiality
- Legal Authorities: When required by law or to protect rights and safety
❌ We Never:
- Sell your personal information to third parties
- Share your payment details with other users
- Disclose your private messages without consent
- Use your data for unrelated marketing purposes
4. Data Security
We implement industry-standard security measures to protect your data:
- Encryption: All data transmitted via HTTPS/TLS encryption
- Secure Storage: Passwords hashed with bcrypt, data stored on secure servers
- Access Control: Limited employee access to personal data
- Payment Security: PCI-DSS compliant payment processing via PayMongo
- Regular Audits: Security reviews and vulnerability assessments
- Backup Systems: Regular data backups to prevent loss
⚠️ Important: While we take security seriously, no system is 100% secure. Please use strong passwords and never share your account credentials.
5. Your Privacy Rights
You have the right to:
- Access Your Data: Request a copy of all personal information we hold
- Update Information: Edit your profile, contact details, and preferences
- Delete Account: Permanently remove your account and associated data
- Control Visibility: Adjust privacy settings for profile visibility
- Opt-Out: Unsubscribe from non-essential emails and notifications
- Data Portability: Download your data in a structured format
- Object to Processing: Request restriction of certain data uses
To exercise these rights, go to Settings > Privacy or contact support.
6. Cookies & Tracking
We use cookies and similar technologies to:
- Essential Cookies: Keep you logged in, remember preferences
- Analytics Cookies: Understand how you use the platform
- Security Cookies: Detect and prevent fraudulent activity
You can control cookies through your browser settings, but some features may not work without them.
7. Data Retention
We retain your information:
- Active Accounts: As long as your account is active
- Deleted Accounts: Up to 30 days for recovery, then permanently deleted
- Transaction Records: 7 years for legal and tax compliance
- Dispute Records: Until resolution + 1 year
- Anonymized Data: May be retained indefinitely for analytics
8. Third-Party Services
We use trusted third-party services:
- PayMongo: Payment processing (GCash) - Privacy Policy
- Supabase: Database hosting - Privacy Policy
- Email Service: Transactional emails and notifications
These services have their own privacy policies. We recommend reviewing them.
9. Children's Privacy
ErrandExpress is intended for users 18 years and older. If you are under 18:
- You must have parental or guardian consent
- Your parent/guardian is responsible for your account
- We do not knowingly collect data from children under 13
If we discover a user is under 13, we will delete their account immediately.
10. International Users
ErrandExpress is based in the Philippines. If you access from outside the Philippines:
- Your data may be transferred to and stored in the Philippines
- We comply with Philippine data protection laws
- By using our service, you consent to this transfer
11. Changes to Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via:
- Email notification to your registered address
- Prominent notice on the platform
- Updated "Last Modified" date at the top
We encourage you to review this policy periodically.
Privacy Questions?
If you have questions about this Privacy Policy or how we handle your data:
- Email: privacy@errandexpress.com
- Support: support@errandexpress.com
- Settings: Manage privacy preferences in your account settings
Data Protection Officer: For formal privacy requests or complaints, contact our DPO at dpo@errandexpress.com