Privacy Policy

WovenIQ ("we," "us," or "our") provides cloud-based customer relationship management and integration software for luxury retail organizations. This Privacy Policy explains how we collect, use, disclose, and protect information when you visit our website, use the WovenIQ platform, or otherwise interact with our services (collectively, the "Services").

If you use WovenIQ on behalf of your employer or another organization, that organization controls the customer and operational data processed in the platform. In those cases, we process such data as a service provider on the organization's instructions, and your organization's own privacy notices may also apply.

1. Information We Collect

The information we collect depends on how you interact with WovenIQ. We may collect the following categories of information:

  • Account and contact information — name, business email address, phone number, job title, company name, billing details, and credentials used to access the Services.
  • Customer and clienteling data — information your organization stores in WovenIQ, such as customer profiles, purchase history, preferences, communications, tasks, and related retail records.
  • Integration and connection data — configuration details, API tokens, OAuth authorizations, webhook payloads, and synchronization logs for connected systems (for example, Salesforce, LightSpeed, Adaptive, Podium, or systems you connect through bring-your-own-system workflows).
  • Usage and technical data — IP address, browser type, device identifiers, log files, feature usage, performance metrics, error reports, and security event data.
  • Communications — support requests, survey responses, release-note subscriptions, and other messages you send to us.

We may also receive information from third parties you authorize to connect to WovenIQ, such as identity providers, payment processors, email delivery services, and integrated business applications.

2. How We Use Information

We use collected information to:

  • Provide, operate, maintain, and improve the WovenIQ platform and integrations.
  • Authenticate users, administer accounts, and enforce access controls.
  • Process transactions, send service-related notices, and respond to support requests.
  • Monitor platform performance, troubleshoot issues, and protect against fraud or abuse.
  • Develop new features, analyze usage trends, and enhance security.
  • Comply with legal obligations and enforce our agreements.
  • Send product updates or marketing communications where permitted by law and your preferences.

3. Legal Bases for Processing

Where applicable data protection laws require a legal basis, we rely on one or more of the following: performance of a contract with you or your organization; legitimate interests in operating and securing our Services; compliance with legal obligations; and consent where required (for example, for certain marketing communications or optional cookies).

4. How We Share Information

We do not sell personal information. We may share information in the following circumstances:

  • With your organization — when you use WovenIQ as an authorized user of a customer account.
  • Service providers — vendors that host infrastructure, deliver email, provide analytics, payment processing, customer support tools, or security monitoring, subject to contractual confidentiality and data protection obligations.
  • Integrated third-party systems — when you or your administrator connects external applications and authorizes data exchange.
  • Legal and safety — to comply with law, respond to lawful requests, protect rights and safety, or investigate security incidents.
  • Business transfers — in connection with a merger, acquisition, financing, or sale of assets, with appropriate notice where required.

We may share aggregated or de-identified information that cannot reasonably be used to identify an individual.

5. Data Retention and Security

We retain information for as long as necessary to provide the Services, fulfill the purposes described in this policy, comply with legal obligations, resolve disputes, and enforce agreements. Retention periods for customer-submitted data may be governed by your organization's subscription terms and configuration.

Security Measures

  • Encryption in transit and at rest where appropriate
  • Role-based access controls and authentication safeguards
  • Monitoring, logging, and incident response procedures
  • Vendor security reviews for critical subprocessors

Your Responsibilities

  • Maintain strong credentials and access policies
  • Configure integrations and permissions appropriately
  • Ensure you have lawful grounds to submit customer data
  • Notify us promptly of suspected security incidents

6. International Transfers

WovenIQ may process and store information in countries other than where it was collected. When we transfer personal information internationally, we implement appropriate safeguards consistent with applicable law, such as standard contractual clauses or equivalent mechanisms where required.

7. Your Rights and Choices

Depending on your location, you may have rights to access, correct, delete, restrict, or port personal information, and to object to certain processing or withdraw consent. If we process your information on behalf of an organization, please contact your organization first; we will assist them as required by our agreement and applicable law.

You may opt out of marketing emails by using the unsubscribe link in those messages. Service-related communications may still be sent when necessary to administer your account.

8. Cookies and Similar Technologies

Our website and Services may use cookies, local storage, and similar technologies to remember preferences, maintain sessions, measure usage, and improve performance. You can control cookies through your browser settings; disabling certain cookies may affect functionality.

9. Children's Privacy

WovenIQ is a business software platform and is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us personal information, please contact us so we can take appropriate action.

10. Changes and Contact

We may update this Privacy Policy from time to time. When we make material changes, we will post the updated policy on this page. Continued use of the Services after changes become effective constitutes acceptance of the updated policy where permitted by law.

Questions about this Privacy Policy or our data practices may be directed to WovenIQ Support or your account representative. For data subject requests relating to information processed on behalf of your organization, please contact your organization's WovenIQ administrator.