Privacy Policy

Last updated: June 8, 2026

1. Introduction

Rackzip Inc. (“we”, “us”, or “our”) operates the Rackzip warehouse management platform (“the Service”). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, password, company name, phone number, and business address when you register or update your profile.
  • Warehouse Data: Inventory records, SKU details, location data, shipment information, client/vendor records, and other operational data you enter into the Service.
  • Billing Information: Payment details are processed and stored by our payment processor, Stripe. We do not store full credit card numbers on our servers.
  • Communications: Messages you send through support tickets, help chat, or email correspondence.

2.2 Information Collected Automatically

  • Usage Data: Pages visited, features used, actions taken, and time spent within the Service.
  • Device Information: Browser type, operating system, device type, and screen resolution.
  • Log Data: IP address, access times, referring URLs, and error logs.
  • Location Data: GPS coordinates when you use features like zone check-in or shipment tracking (only with your explicit permission).
  • Cookies & Analytics: We use cookies and similar technologies (including Google Analytics) to analyze usage patterns and improve the Service.

3. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve the Service.
  • Process transactions and send related billing communications.
  • Send transactional emails (account verification, password resets, invoice notifications, alerts).
  • Provide customer support and respond to inquiries.
  • Monitor and analyze usage trends to improve features and user experience.
  • Detect, prevent, and address technical issues and security threats.
  • Comply with legal obligations.

4. Data Sharing & Disclosure

We do not sell your personal information. We may share data with:

  • Service Providers: Third-party services that help us operate (e.g., Stripe for payments, cloud hosting for data storage, email delivery services for notifications). These providers are bound by contractual obligations to protect your data.
  • Your 3PL Clients: If you use the client portal feature, your clients can access the specific inventory, shipment, and billing data you choose to share with them via their portal tokens.
  • Legal Requirements: When required by law, subpoena, or government request, or to protect our rights, property, or safety.
  • Business Transfers: In connection with a merger, acquisition, or sale of assets, where your data may be transferred as part of the transaction.

5. Data Security

We implement robust security measures to protect your data:

  • All data is encrypted in transit (TLS/SSL) and at rest.
  • Role-based access controls (RBAC) with 7 permission levels ensure users only access authorized data.
  • Tenant isolation ensures your data is strictly separated from other customers’ data.
  • Password hashing using bcrypt with industry-standard salt rounds.
  • Session management with secure, HTTP-only cookies.
  • Regular security reviews and audit logging of all sensitive operations.

While we take extensive precautions, no electronic transmission or storage method is guaranteed to be 100% secure. We cannot ensure absolute security of your data.

6. Data Retention

  • We retain your account and operational data for as long as your account is active.
  • After account termination, you may request a data export within 30 days.
  • We may retain certain data as required by law or for legitimate business purposes (e.g., billing records, audit logs).
  • Anonymized, aggregated data may be retained indefinitely for analytics and service improvement.

7. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete data.
  • Deletion: Request deletion of your personal data (subject to legal retention requirements).
  • Portability: Request your data in a machine-readable format (CSV export is available for most data types).
  • Opt-out: Unsubscribe from non-essential email communications at any time.

To exercise any of these rights, contact us at [email protected].

8. Cookies

We use essential cookies for authentication and session management. We also use analytics cookies (Google Analytics) to understand how the Service is used. You can control cookie preferences through your browser settings, though disabling essential cookies may affect functionality.

9. Children’s Privacy

The Service is not directed to individuals under 18. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal data, we will take steps to delete such information.

10. International Data Transfers

Your data may be processed and stored in the United States. By using the Service, you consent to the transfer of your information to the United States, which may have different data protection laws than your country of residence.

11. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via email or in-app notice at least 14 days before taking effect. The “Last updated” date at the top reflects the most recent revision.

12. Contact Us

For questions or concerns about this Privacy Policy or our data practices, contact us at: