Privacy Policy
Consign POS ("we", "the service") is a point of sale for consignment, antique and resale shops, distributed through the GoDaddy Poynt App Center. This policy explains what data the service handles, why, and what control you have over it.
Two roles matter throughout: the merchant (the shop that installs Consign POS) and the shop's customers and consignors. For the shop's records about its customers and consignors, the merchant is the data controller and Consign POS processes that data on the merchant's behalf and instructions.
What we collect
- Business identity from GoDaddy Poynt. When a merchant authorizes the app, we receive the business identifier, store identifier and shop name from Poynt. We never see or store card numbers — payments are processed entirely by GoDaddy Poynt on the merchant's terminal.
- Staff accounts. Usernames, display names and roles. Passwords are stored only as salted scrypt hashes and are never retrievable.
- Shop records. Inventory, item photographs, sales, payouts and consignor records the shop creates in the ordinary course of business.
- Customer records. If the shop uses clienteling, it may record a customer's name, contact details, purchase history and what they are looking for. Contact consent is recorded as an explicit fact with a date, and it is shown to staff before they make contact.
- Operational logs. An audit log of significant actions (who did what, when) and a log of webhook events received from Poynt, kept for support, security and billing reconciliation.
Cookies
One cookie: the session cookie that keeps a member of staff signed in. There are no analytics, advertising or tracking cookies of any kind.
AI photo capture
If the shop uses the optional photo appraisal feature, the item photographs taken for it are sent to Anthropic (the maker of Claude) to identify the piece and suggest a price, and the model may search the public web for comparable sold items. Only the item photographs and item details are sent — never customer, consignor or staff personal data. The result is a draft that a member of staff reviews before anything is saved.
Where data lives and how it is protected
- Data is stored in a PostgreSQL database, isolated per shop: every record carries the shop's tenant identifier, and cross-shop access is refused at the application layer and covered by automated tests.
- Stored secrets (such as API keys a shop enters) are encrypted with AES-256-GCM and are never returned by any endpoint once entered.
- All traffic is served over HTTPS.
- The public page behind a price tag's QR code shows only an explicit allow-list — the photograph, description, condition and today's price. Cost, consignor and margin never leave the database, and each tag's link can be revoked.
Who we share data with
We share data only with the service providers needed to run the product, and never sell it or use it for advertising:
- GoDaddy / Poynt — merchant identity, orders sent to the shop's terminal, and subscription billing.
- Anthropic — item photographs, only when the shop uses AI photo capture (above).
- Our hosting and database providers — the infrastructure the service runs on.
Retention and deletion
- Customer erasure is built in. A shop owner can delete a customer record; the shop's sales history survives with the buyer removed, and the audit log records that the request was carried out.
- Staff accounts are disabled, not deleted, so the record of who rang up each sale stays honest. Disabled staff lose access immediately.
- Ending a subscription closes access but does not destroy data, so a shop that returns finds its records intact. A merchant may request full deletion of their shop, which removes all of its data permanently.
Your rights
Merchants can access, correct, export or delete their shop's data by contacting us. A shop's customers should direct requests to the shop, which holds their records; we will assist the merchant in fulfilling them.
Changes
If this policy changes materially, we will update this page and note the new date at the top.
Contact
Questions or requests: support@consignpos.com
Consign POS