Skip to main content

Last updated October 3, 2026

Privacy Policy

This Privacy Policy explains how Stampr handles personal data. It applies to shop owners who sign up for Stampr and to the customers of those shops whose data is processed through Stampr. For shop owner data, Stampr is the data controller. For the data of a shop's customers, including pass and stamp data and any payment data received from Square, the shop is the controller and Stampr processes that data on the shop's behalf.

Who we are

Stampr is operated by Axel Maynés (NIF 26893092C), registered as a sole trader (autónomo) in Spain, with fiscal address at Carrer de Bac de Roda, 100, 08019 Barcelona, Spain. You can reach us about any privacy matter at hola@stampr.es.

What we collect

From shop owners

  • Account details: your name and email. Sign-in is passwordless through an emailed magic link, so we never store a password.
  • Billing details: billing address and, for EU businesses, a VAT number. Payments are processed by Stripe; your card number never reaches our servers.
  • Shop details: business name, logo, branding, location.
  • Device pairing data for the counter scanner: device identifier, token, last seen timestamp.
  • Product usage: stamps issued, redemptions, login timestamps, IP address, browser metadata.

From shop customers

  • A pass identifier issued by Apple Wallet or Google Wallet when a customer adds the loyalty pass.
  • Stamp history tied to that pass: timestamps, the shop that issued each stamp, redemption events.
  • Push notification token, if the customer enables notifications.

We do not ask customers for their name, email, phone, or payment details. Unless a shop connects Square, as described below, we never collect what a customer buys.

From Square, for shops that connect it

A shop that uses Square can connect its Square account so card payments add stamps automatically. For each completed payment at that shop's Square locations, Square sends us:

  • The amount, currency, and time of the payment, and the Square location where it was made.
  • The card brand (for example Visa), the last four digits of the card, and whether it was paid with a phone wallet such as Apple Pay.
  • A short summary of what was bought, for example "1× Latte, 1× Croissant".
  • A card fingerprint: a code Square derives from the card that stays the same each time that card pays at the same business. It cannot be turned back into the card number.

Square does not send us, and we never receive, the full card number or the customer's name, email, or phone number.

The card fingerprint is pseudonymous personal data. We use it for one thing only: recognising a returning card at the one shop where the customer linked it, so the payment adds a stamp to their pass. It is never used to identify a person, never shared, and never matched across shops.

A card is only linked once the customer confirms it. After paying, the customer opens the shop's card page, which shows payments made at that shop in the last ten minutes one at a time, with the amount, items, card brand, and last four digits but never a name. The customer confirms the one that is theirs. From then on, payments with that card at that shop add stamps on their own.

Why we process it

  • To deliver the service. Legal basis: performance of a contract.
  • To keep Stampr secure, prevent fraud, and meet our legal obligations. Legal basis: legal obligation and legitimate interest.
  • To send service emails and a weekly digest to shop owners. Legal basis: performance of a contract.
  • To improve the product through aggregated analytics. Legal basis: legitimate interest.
  • To add stamps automatically at shops that connect Square, by recognising a card the customer has linked. Legal basis: the shop's legitimate interest in running its loyalty program. The data is limited to what is needed to match a payment to a pass, the customer starts the link themselves, and they can have it removed at any time.

Who we share it with

  • Apple and Google, to issue and update Wallet passes.
  • Vercel and MongoDB Atlas, which host the application and the database on our behalf.
  • Resend, which delivers our transactional and digest emails.
  • Stripe, which processes subscription payments. We never see or store card numbers.
  • Square, for shops that connect it. Square is the shop's payment provider and the source of the payment data described above. We read from Square; we do not send Square any data about the shop's customers.

We do not sell personal data. We do not share customer pass data with third parties for advertising.

Retention

Account data is kept for the life of the account and for up to six years after it closes, to meet tax and accounting obligations. Pass and stamp data is kept while the pass is active; an inactive pass and its stamp history are deleted within twelve months of going inactive.

For shops that connect Square, payments that no customer confirms are deleted automatically after seven days. A card link is kept until the shop unlinks that customer's cards from its dashboard or the shop's account is erased. The record of the payment the customer confirmed, which is how the link was made, is kept until the shop's account is erased. Disconnecting Square stops new payments from arriving but does not by itself delete existing links. Technical delivery records, which hold no payment details, are deleted after 48 hours.

Security

Data is encrypted in transit with HTTPS. Access to production data is limited to the people who operate Stampr. Because sign-in is passwordless, there is no password that can be leaked. No system is ever perfectly secure, but we work to protect your data and will notify you, and the AEPD, of a personal data breach where the law requires it.

Cookies

Stampr uses only the cookies it needs to work. A session cookie keeps you signed in to the dashboard, and a small preference cookie remembers your chosen language. We do not use advertising or third party tracking cookies, which is why Stampr shows no cookie banner. You can clear these cookies in your browser at any time; signing in again will simply set the session cookie back.

Your rights

Under the GDPR you may access, correct, delete, or export your data, and you may object to or restrict its processing. Write to hola@stampr.es. If you are not satisfied with our response you may file a complaint with the Spanish Data Protection Agency AEPD.

If you are a customer of a shop that uses Square and want your card unlinked, ask the shop, which can remove it from its dashboard, or write to us and we will pass the request to the shop. You can link a new card at any time from the back of your pass.

International transfers

Some of our processors may be located outside the EEA. Where that is the case, transfers are protected by Standard Contractual Clauses approved by the European Commission.

Minors

The Stampr dashboard is for business owners and requires you to be at least 18 years old. Loyalty passes hold no name or contact details, so we cannot know who carries one. If you believe we hold a child's personal data in any other form, write to hola@stampr.es and we will delete it.

Changes

If we change this policy in a material way we will notify shop owners by email at least 30 days before the change takes effect.