Trust and data
Privacy Policy
A plain-language account of the information involved when you visit our website, work with VikrAI or use merchant-directed platform services.
- Last reviewed
- 24 August 2026
- Applies to
- VikrAI website and platform context described below
Scope and privacy roles
This policy explains how VikrAI handles personal information when someone visits vikrai.shop, contacts us about the platform, becomes an authorized platform user, or interacts with a merchant that uses VikrAI.
In a contracted relationship, “VikrAI” means the service provider identified in the accepted Order Form. Before an Order Form exists, questions about this website or its operator can be sent to [email protected].
For our website, business correspondence, account administration and our own service operations, VikrAI decides why and how relevant information is handled. When VikrAI processes a merchant's customer, order or storefront data to provide contracted services, the merchant generally decides the purpose and instructions, and VikrAI acts on the merchant's behalf under the applicable agreement and data-processing terms.
A merchant remains responsible for its own storefront privacy notice, customer choices and lawful use of data. This policy does not replace that merchant notice or provide legal advice.
Information on this website
The current public website does not include analytics or advertising tracking code. Its plan finder operates in the browser. If you choose a plan, that selection may be kept in your browser's session storage so it can be carried into the contact experience during that browser session; it is not submitted to VikrAI by that feature.
The contact form prepares an email draft in your email application rather than posting the form to VikrAI. You can review or discard the draft. If you send it, we receive the information through email and handle it as business correspondence.
Hosting, network and security infrastructure may generate limited request or diagnostic records, such as an IP address, request time, requested page, browser or device signals, and error or security events. The exact record depends on the infrastructure serving the request.
Platform and relationship information
Depending on your relationship with VikrAI and the services selected, information handled may include:
- business contact details and the communications you choose to send;
- account identifiers, authentication and access-control information;
- workspace configuration, service selections, support requests and commercial records;
- service, device, network, audit, security and diagnostic events; and
- merchant-directed commerce data needed to operate contracted platform capabilities.
We aim to request or use only information relevant to the website interaction, business relationship, security need or contracted service. A specific Order Form or data-processing agreement may describe the applicable data more precisely.
Why information is used
We may use relevant information to:
- respond to enquiries and plan a walkthrough or implementation;
- create, administer and support authorized accounts and workspaces;
- deliver, maintain, troubleshoot and improve contracted services;
- protect users, merchants, the platform and connected systems from abuse or security threats;
- keep appropriate operational, commercial and audit records; and
- meet legal obligations, enforce agreements and resolve disputes.
Where applicable law requires a legal basis, processing may depend on performing a contract, taking requested pre-contract steps, meeting a legal obligation, protecting legitimate business or security interests, or consent where that is the appropriate basis.
International processing
VikrAI and its service providers may process information in places where their people or infrastructure operate. Data-protection rules can differ across locations. The actual processing locations and any required transfer safeguards depend on the selected service, provider and signed documents. These details should be confirmed before regulated personal data is transferred across borders.
Retention principles
Different records have different operational, security, contractual and legal retention needs, so VikrAI does not publish one retention period for every category. The applicable retention, export and end-of-service handling for merchant-directed data should be confirmed in the accepted Order Form or data-processing terms.
A website enquiry that you send by email can remain in email, backup or operational records until it is removed under the relevant business, security and legal process. Legal holds or technical backup cycles may delay deletion. You can ask about the handling of a specific record through the contact below.
Security
VikrAI uses administrative, technical and organizational measures intended to protect information in light of its nature, the service and reasonably foreseeable risks. Measures may include access controls, tenant separation, authentication, logging, transmission protections and incident response practices where applicable to the service.
No transmission or storage method is completely secure. Customers and authorized users are responsible for protecting credentials, managing permissions and promptly reporting suspected misuse.
Your rights and choices
Depending on your location and relationship with VikrAI, you may be able to ask for access, correction, deletion, restriction, portability or an objection to certain uses, or withdraw consent where processing depends on consent. You may also have a right to complain to an appropriate privacy authority.
Email [email protected] with enough context for us to locate the relevant relationship. We may need to confirm identity and authority, and a request can be limited by applicable law, another person's rights, security needs or record retention duties. You can separately choose not to send a prepared website email draft.
Requests about a merchant storefront
If your information came from a store or business using VikrAI, contact that merchant first. The merchant controls why its customer data is used and is best placed to identify the transaction and respond. If you send the request to VikrAI, we may direct it to, or coordinate with, the relevant merchant where permitted.
Children
The VikrAI website and platform are designed for business use and are not directed to children. We do not invite children to create business accounts or send personal information through this website. Merchants are responsible for determining whether their own storefronts serve children and for meeting the laws that apply to those experiences.
Changes and contact
We may revise this policy when the website, platform or applicable requirements change. The date at the top shows when the published text was last reviewed. Material changes should be presented through an appropriate website, account or contractual notice for the affected relationship.
Questions, privacy requests and security concerns can be sent to [email protected].