Privacy Policy
Last updated: 9 July 2026
Who we are
Sello is a product of Sello SARL, registered in Algeria. This policy explains what data we collect, how we use it, and how we protect it. Questions: services@sello.company.
What data Sello processes
Sello is a review layer for cross-border commerce. To generate a review, we process:
- Product data you send us: titles, descriptions, categories, images, source country, destination country.
- Store metadata from integrations you authorise (Shopify, WooCommerce): store name, currency, catalog structure.
- Account data: your name, email address, hashed password if not using SSO, billing information for paid plans.
- Usage data: which reviews you ran, when, from which IP, for observability and rate limiting.
We do not require end-customer personal data (buyer names, shipping addresses, payment details) to generate a review. If the merchant chooses to send us such data, we act as a processor under the merchant's controllership — see the Data Processing Addendum.
Where the data goes
- Product data is sent to OpenAI's API to generate the review. OpenAI processes the data under its API data usage policy and does not use API inputs or outputs to train its models. See openai.com/policies/api-data-usage-policies.
- Review results and account data are stored in our database, hosted in the European Union.
- Payment processing runs through Stripe. Stripe holds the card data; we hold a tokenised reference.
- We do not sell data. We do not share data with advertisers. We do not use merchant catalog data to train our own models.
Retention
Account data is retained while the account is active, plus 90 days after closure, then deleted. Review results are retained for 24 months so merchants can revisit historical reviews. Merchants can request earlier deletion at any time.
Your rights
If you are a resident of the EU, UK, or a jurisdiction with equivalent data protection laws, you have the right to access, correct, delete, or export your personal data, and to withdraw consent. Email services@sello.company.
For merchants operating as controllers, see our Data Processing Addendum at /dpa.
Security
Data in transit is encrypted with TLS. Data at rest is encrypted at the database level. Access to production data is restricted and logged. We do not currently hold formal certifications (SOC 2, ISO 27001); we will pursue these as we grow.
Cookies
The marketing site uses one first-party analytics cookie. The signed-in product uses a session cookie for authentication. No third-party advertising trackers. See /cookies for details.
Changes
Material changes will be notified to signed-in users by email and reflected in the "Last updated" date above.
Contact
Sello SARL — services@sello.company