Privacy notice
Clear handling for your account and business data.
BloxLoop Systems operates the shared account platform and its available apps. Last updated September 1, 2026.
BloxLoop Systems does not sell personal data or use it for targeted advertising.
App records are restricted by authenticated account and active workspace membership.
Service providers support authentication, email delivery, database operations, and hosting.
Information BloxLoop Systems handles
Account data can include your email address, authentication identifiers, verification status, app memberships, and security events. Password authentication is handled by Supabase; BloxLoop Systems does not store or display readable passwords. If Google or Apple sign-in is enabled, BloxLoop Systems receives the provider identifier and account details the provider is authorized to share, such as an email address. BloxLoop Systems does not receive your Google or Apple password.
Business-app data includes the company, location, catalog, partner, receipt, balance, movement, and related records that authorized users enter. Hosting and security logs may also record technical details such as IP address, browser information, request time, route, status, and errors.
Why the information is used
BloxLoop Systems uses this information to create and secure accounts, provide the selected app, route users to authorized workspaces, deliver verification messages, maintain traceability, investigate failures or abuse, support users, and meet applicable operational or legal obligations. It is not repurposed for unrelated advertising profiles.
Service providers
- Supabase provides account authentication and the hosted database used by the current service.
- Resend delivers account verification and sign-in email initiated through BloxLoop.
- Amazon Web Services Lightsail hosts the BloxLoop web application.
- Google or Apple acts as an identity provider only when that sign-in option is enabled and chosen.
These providers process data for their service roles and may handle it in locations described by their own terms and privacy notices. BloxLoop Systems does not place provider credentials or authentication tokens in public application content.
Workspace separation and access
Public product pages do not display company inventory. Protected records require authentication and an active app or workspace membership. The current database uses tenant-scoped records and row-level access policies, while privileged operations repeat membership and role checks. No technical control eliminates every risk, so access is monitored and the production scope remains deliberately limited.
Retention, deletion, and correction
Account and workspace data is retained while needed to provide the service and for reasonable security, audit, recovery, support, and legal purposes. Automated self-service deletion is not yet available. You may ask to access, correct, export, or delete your data. Some limited records may need to remain where required for security, accounting, dispute handling, backup rotation, or law.
Contact and changes
For privacy questions or a data request, contact BloxLoop Systems at support@bloxloop.com. BloxLoop Systems may update this notice as products, providers, or legal requirements change; the updated date on this page will show the current version.
