Legal
Privacy policy
How Estampo handles the personal data of the businesses that use the service, their staff, their customers and the people who visit our sites.
This policy covers estampo.co; the business dashboard and scanner (app.estampo.co); the sign-up pages and the web card (join.estampo.co and card.estampo.co); the cards we issue for phone wallets; and the emails we send. We apply it under Peru's Personal Data Protection Law (Ley N.º 29733) and its regulations.
Who is responsible for your data
Estampo is a brand of Omiru E.I.R.L. ("Estampo", "we"), tax ID (RUC) 20616471440, registered at Urb. La Florida, PJ Los Geranios E12, Wanchaq, Cusco, Peru. For anything privacy-related, write to privacidad@estampo.co.
Depending on who you are, we play one of two roles:
- We are the controller of the data of business owners who create an account, their staff, people who join our waitlist, visitors to our sites and people who write to us. We decide why and how that data is used, and this policy explains it.
- We are a processor of the data of each business's customers: the people who join its loyalty program. There, the business is the controller. It decides to run a program and what to do with its customers; we process that data only to provide the service to it, following its instructions and the Personal Data Processing Notice it accepts when creating its account.
If you're a business's customer and have questions about how it uses your data, ask the business first. You can also write to us and we'll pass your request on.
What data we process
If you run a business on Estampo
- Your account: first name, last name, email, mobile number and password. The password is stored in hashed form by our authentication provider; we don't keep it.
- What your browser already knows: your language and time zone, so we can write to you in your language and count days by your business's clock.
- Proof of your acceptance: the version of the documents you accepted when signing up, the date and time, and the IP address you did it from.
- Your business: trading name, the address of each location and, if you place it on the map, its position; your logo, your colors and how your program and promotions are set up.
- Your passcode (PIN) for the scanner, which we store only as a hash.
- Billing: your plan, the status of your subscription and the invoices our payment provider issues. We never receive or store your card details.
- What you tell us: feedback you send from the dashboard and emails you write to us.
If you work at a business that uses Estampo
- Your name, the email your invitation was sent to and your PIN, which we store only as a hash.
- Your activity at the counter: every stamp or redemption you record is logged with your name, the location, the device and the time. The business owner can see it.
- Devices: the name the business gives each terminal, the location it belongs to and when it last connected.
If you joined a business's loyalty program
- What you type when joining: your first name, your email and, if you like, your birthday (day and month only, never the year).
- Your choice about promotions: whether you ticked the box to hear from the business. It starts unticked.
- Your card: stamps, rewards earned and redeemed, at which location and when, and the codes that identify it.
- Technical details of joining: the page's language and your type of device (iPhone, Android or other), so we can offer you the right wallet.
The business owner can see this data in their dashboard. Staff at the counter see only your first name and the state of your card.
If you join the waitlist
- What you type into the form: your email, your business's name and type, and its city and country.
- Context: the language of the page and of your browser, your time zone, the page you signed up from, the campaign or site you came from, if any, and the date you accepted this policy.
- Your device: whether it is a phone, a tablet or a computer, its operating system and browser, and the technical identifier the browser sends with every visit (the "user agent"). We do not store your IP address.
If you visit our sites
- Browsing data collected by Google Analytics, if you accept it: the pages you visit, where you came from, your type of device and browser, and an approximate location (city or country). See Cookies and browser storage.
- How you use the page, collected by Microsoft Clarity, if you accept it, on estampo.co and on the dashboard screens for signing in, creating an account and setting up your business: clicks, scrolling and cursor movement, which we see as recordings of the visit and as heatmaps. What you type into forms is hidden and never sent. We don't use it in the rest of the dashboard or on the sign-up and card pages.
- Your IP address and technical details of each request, which we use to protect the service: limiting repeated attempts and checking that whoever signs up is a person.
- Error reports: if something breaks in our applications, we receive a technical report. Before it is sent, we strip from web addresses anything that works as a key, such as a card's link.
We don't ask for sensitive data, such as health, origin or beliefs. Please don't type it into free-text fields.
What we use it for
- Providing the service: creating and managing accounts, issuing and updating cards, recording stamps and redemptions, applying the promotions each business sets up and showing it its statistics.
- Sending service emails: confirming your email, resetting your password, inviting your staff, sending you your card or letting you know about a reward. They are part of the service and don't depend on the promotions box.
- Billing paid subscriptions, through our payment provider.
- Protecting the service and the people who use it: preventing abuse, fraud and unauthorized access, for example by locking a PIN after several failed attempts.
- Understanding and improving the product through usage statistics and visit recordings. In them a business is identified only by an internal code, and we never send data that identifies its customers.
- Letting you know when access opens, if you joined the waitlist: we use that data only to invite you to create your account and to decide the order of the invitations. We send you nothing else.
- Helping you when you write to us, and meeting our legal obligations.
We process this data because it is necessary to provide the service you or the business signed up for, to meet legal obligations, or because you gave your consent, such as by ticking a business's promotions box, by joining the waitlist or by accepting the measurement or recording cookies. You can withdraw consent at any time; that doesn't affect what was done before. If you are in the European Union or the United Kingdom, for the security of the service we also rely on our legitimate interest, and you can object.
Also:
- We don't sell or rent personal data.
- We don't use it for advertising. Advertising features are switched off in our statistics.
- We never use a business's customer data for anything of our own, nor combine it across businesses: if you're a customer of two businesses, to us you are two separate records that know nothing of each other.
- We don't make decisions that significantly affect you based solely on automated processing. Automatic promotions, like an extra stamp on your birthday, only add benefits.
- If you run a business, we may write to you about important changes to the service. We will only send you marketing if you agree to receive it, and you can unsubscribe at any time, effective immediately.
Who we share it with
- With the business you joined, if you're its customer: it is the controller of your data (see Who is responsible for your data).
- With our providers, who help us run the service and may use the data only for that:
| Provider | What for | Where |
|---|---|---|
| Google Cloud · Firebase | Servers, database, authentication, files (such as logos) and technical logs. | United States |
| Google Wallet | Issuing and updating the card when you save it to Google Wallet. | United States |
| Apple Wallet | Issuing and updating the card when you save it to Apple Wallet. | United States |
| Amazon Web Services (Amazon SES) | Sending email. | United States |
| Lemon Squeezy | Charging paid subscriptions, taxes and invoices. | United States |
| Cloudflare (Turnstile) | Checking that whoever signs up, joins a program or joins the waitlist is a person and not an automated program. | United States (global network) |
| Sentry | Technical error reports from our applications. | United States |
| Google Analytics | Usage statistics for our sites. | United States |
| Microsoft Clarity | Heatmaps and recordings of how our site and the dashboard’s sign-up and setup screens are used. | United States |
| Google Maps Platform | The map a business uses to place its locations in the dashboard. | United States |
- With Lemon Squeezy, for payments. It sells the subscription on our behalf as merchant of record and processes payment data as a controller, under its own privacy policy.
- With Google or Apple, if you save your card to their wallet. When you do, the business's name, your first name, your stamps and the card's code go into your phone's wallet app, and Google or Apple handle them under their own privacy policies. Nearby alerts for the business are decided by the wallet on your phone: Estampo never receives your location.
- With authorities, when a law or a valid order requires it.
- In a corporate transaction, such as a merger or a sale. Whoever continues the service must honor this policy, or we will tell you first.
International transfers
Our servers and our providers' servers are in the United States, so your data is transferred outside Peru and outside your country. We choose providers that offer adequate safeguards — contractual commitments and security measures in line with what Peruvian law requires — and give them only the data they need for their task.
How long we keep it
- Business account: for as long as it exists. If you ask us to close it, we delete its data within 90 days, except what the law requires us to keep, such as billing information, and the proof of acceptance, which we keep for as long as it may be needed to deal with a claim.
- A business's customers: for as long as the business runs its program, or until you or the business ask for deletion. If the business closes its account, the data goes with it, within the same 90 days. When a card is deleted, its stamp history is left with nothing that identifies you.
- A business's staff: for as long as the business keeps you on its team. If it removes you, your access ends immediately, but your name stays in the history of the stamps you recorded for as long as the business's account exists, because that history is the program's record.
- Waitlist: until you create your account or up to 12 months after we open access, whichever comes first. Sooner, if you ask us to delete you.
- Server technical logs: up to 30 days.
- Error reports: up to 90 days.
- Usage statistics: up to 14 months.
- Visit recordings: up to 30 days, except those we keep to look into a problem, which are kept up to 13 months, like the heatmaps.
- Emails you send us: as long as needed to help you and keep a record of how it was resolved.
How we protect it
- Everything travels encrypted (HTTPS).
- Each business can reach only its own data, and within it each person only what their role needs: staff never see emails or customer lists.
- Passwords and PINs are stored as hashes, never as readable text.
- Each web card's link is unique and impossible to guess. Treat it like a key: anyone who has it can see the card, so don't share it.
- No system is infallible. If an incident affects your data, we will notify the authority and the people affected as the law requires.
Your rights
You have the right to:
- Information: know what data we process, why and with whom.
- Access: get a copy of your data.
- Rectification: correct inaccurate or incomplete data.
- Deletion: ask us to erase your data when it is no longer needed or you withdraw your consent.
- Objection: object to processing on legitimate grounds and, always, to receiving promotions, effective immediately.
- Portability: receive your data in a structured, commonly used format.
- Withdraw your consent at any time.
How to exercise them: write to privacidad@estampo.co from the email you use with Estampo, saying which right you want to exercise and, if you're a business's customer, which business. We may ask for something more to confirm it's you. It's free.
We reply within the deadlines set by Peruvian law: 8 business days for a request for information, 20 for access and 10 for rectification, deletion or objection.
If you're a business's customer, the controller of your data is that business. You can write to it directly or write to us: we will let the business know and help it answer you within those same deadlines.
If you're not satisfied with the answer, you can file a complaint with Peru's National Personal Data Protection Authority (Autoridad Nacional de Protección de Datos Personales, Ministry of Justice and Human Rights), or with the data protection authority in your country.
Cookies and browser storage
Measurement and recording cookies are only switched on if you accept them, wherever you are. The first time you visit we ask with a notice: rejecting them is as easy as accepting them, and if you don't answer they stay off. If your browser sends the Global Privacy Control signal, we treat it as a rejection. Your answer applies to estampo.co, the dashboard and the sign-up and card pages, and lasts six months; then we ask again. You can change it at any time from “Cookies” at the bottom of estampo.co, of the sign-up and card pages and of the sign-in and create-account screens, or from Settings in the dashboard. If you withdraw it, we delete those cookies from your browser.
- Google Analytics, on estampo.co, in the dashboard and on the sign-up
and card pages, only if you accept measurement: it uses first-party cookies
(
_gaand_ga_…), which last up to 13 months, to count visits and tell new visitors from returning ones. Advertising features and Google Signals are switched off. You can also block these cookies in your browser settings or with the Google Analytics opt-out add-on. - Microsoft Clarity, on estampo.co and on the dashboard screens for
signing in, creating an account and setting up your business, only if you accept
recordings: it uses first-party cookies (
_clckand_clsk) to join the pages of one visit and recognize returning visitors. We tell it not to use advertising storage. - Necessary storage, on estampo.co, in the dashboard, the scanner and
the sign-up pages: we keep your session, the language you chose, the light or dark
theme if you switched it on estampo.co, the device's identity when it is a business
terminal, pending stamps if the internet drops, and your answer to the cookie notice
(the
estampo_consentcookie, for six months). The service doesn't work without it. - Bot check (Cloudflare Turnstile) on sign-up, joining and the waitlist: it may read technical signals from your browser, for that purpose only.
Minors
Estampo is for people aged 18 and over only: both to create a business account and to join a business's program. If we learn that we hold data of a minor, we will tell the business and delete it.
Changes to this policy
If we change this policy, we will publish the new version on this page with its date. If the change is significant, we will let businesses know by email or in the dashboard before it takes effect. We keep a record of which version each account accepted.
Contact
Omiru E.I.R.L. · RUC 20616471440
Urb. La Florida, PJ Los Geranios E12, Wanchaq, Cusco, Peru
privacidad@estampo.co
This policy is available in Spanish and English. If the two versions differ, the Spanish version prevails.