1. Who we are
Boosted+ POS is a business operations and point-of-sale service provided by Boosted Technologies. References to “Boosted+ POS”, “we”, “us” or “our” in this policy refer to Boosted Technologies when it determines how personal data is processed.
2. Information we may process
Depending on how the service is used, we may process:
- Account information: name, email address, password hash, email-verification status, account preferences and authentication/security records.
- Business information: business name, branches, country, currency, timezone, registration or tax identifiers when voluntarily supplied, team memberships and role information.
- Customer and supplier records: contact details, balances, transaction references and other records entered by an authorised business user.
- Commerce records: products, inventory movements, purchases, sales, returns, quotations, invoices, receipts, customer advances, credit, expenses, payables and related accounting records.
- Payment-operation data: payment-link references, payer phone number where required for the payment method, transaction amount, fee, provider status, payout destination information and reconciliation records. We do not ask users to submit mobile-money PINs, card PINs or passwords to Boosted+ POS.
- Files and media: product images, documents or other files voluntarily uploaded through features that support them.
- Security and technical data: IP address, timestamps, audit events, authentication activity, device/browser information made available through normal web requests, security-reset records and error/diagnostic information.
- Support communications: messages and information users provide when requesting assistance, including through WhatsApp or email where those channels are enabled.
3. Why we use information
- Provide and operate the POS, inventory, reporting, accounting, customer, supplier, team and payment-related features.
- Authenticate users, prevent unauthorised access and support two-factor authentication and account recovery.
- Generate receipts, invoices, quotations, reports and business records requested by users.
- Process or coordinate supported payment workflows with enabled third-party payment providers.
- Prevent fraud, investigate abuse, enforce platform controls and maintain auditability.
- Provide support, respond to user requests and improve reliability and usability.
- Comply with legal, accounting, tax, security and regulatory obligations that apply to us or to the service.
4. Business-controlled data
Businesses may enter information about their own customers, staff, suppliers and transactions. In many such situations the business decides why that information is used, and Boosted+ POS processes it to provide the service. Business administrators are responsible for having an appropriate basis to enter and use that information and for giving any notices required by applicable law.
5. How information may be shared
We do not sell personal data. Information may be shared only as reasonably necessary with:
- authorised members of the same business workspace according to their role;
- hosting, email, communications, security, storage and other service providers that help operate the platform;
- enabled payment providers or financial networks when a business uses supported payment functionality;
- professional advisers, auditors or insurers where reasonably necessary;
- public authorities or other parties where disclosure is required by law, necessary to protect rights or safety, or needed to investigate fraud or misuse;
- a successor entity in connection with a lawful business reorganisation, acquisition or sale, subject to appropriate data-protection obligations.
6. Payment information
Where payment links or related services are enabled, the payment provider may independently collect information necessary to authorise or settle the payment. Provider privacy terms may also apply. Boosted+ POS may retain transaction references, payer contact information required by the integration, amounts, fees, status and reconciliation information needed to keep the business record accurate.
7. Data retention
We keep personal data only for as long as reasonably necessary for the purposes described above. Retention periods vary by record type. Business transaction, accounting, fraud-prevention, audit, security and legal records may need to be retained after an account is deleted. Where feasible, personal identifiers are removed or anonymised when they are no longer needed.
8. Account deletion and user choices
Users can initiate account deletion from account security settings while signed in. Users who cannot access the app can use our public account deletion page. Confirmed deletion removes sign-in access and deletes or anonymises personal identifiers that are not required for legitimate retention purposes. Business records that belong to a workspace or must be retained for accounting, fraud prevention, security, legal obligations or the rights of other users may remain in a non-personally identifying or legally required form.
9. Security
We use technical and organisational measures appropriate to the nature of the service, including password hashing, role-based access, organisation scoping, two-factor authentication support, audit records and controlled approval flows. No system can guarantee absolute security, and users should protect their credentials and immediately report suspected compromise.
10. International processing
Service providers or infrastructure may process information in countries other than the user’s own. Where required, we take reasonable steps to use appropriate contractual, organisational or legal safeguards for cross-border processing.
11. Children
Boosted+ POS is a business service and is not directed to children. We do not knowingly offer personal accounts to children who are not legally able to enter into the relevant service agreement in their jurisdiction.
12. Website technologies
The service may use cookies, sessions, local storage or similar technologies that are necessary for authentication, security, preferences and application functionality. We do not describe optional advertising or analytics technologies as active unless they are actually enabled.
13. Your rights
Depending on applicable law, users may have rights to access, correct, delete, restrict or object to certain processing, and to request information about how personal data is used. Some rights may be limited where records must be retained for legal, accounting, fraud-prevention or security reasons.
14. Changes to this policy
We may update this policy as the service, law or our processing practices change. The effective date at the top of this page will be updated when a revised policy is published.
15. Contact
Privacy or data requests can be submitted through the Boosted+ POS support page.
