Privacy & Cookies
How Homineed handles personal data, cookies, privacy choices, service providers and privacy rights.
1. Controller
For Homineed commerce services, Homineed operating company to be confirmed before public checkout opens is expected to act as controller for account, order, checkout, support, returns, and store operations data unless a specific integration states otherwise.
For Witdrim Account, Auth, central identity, and WDRIM Rewards infrastructure, Witdrim may process related data under the Witdrim privacy policy and shared account terms.
2. Data We Process
| Category | Examples | Purpose |
|---|---|---|
| Account and identity | Name, email, Witdrim account id, login state, account settings | Account access, order history, support, rewards connection |
| Commerce and order data | Cart, products, quantities, billing and shipping address, phone, order totals, tax data | Checkout, shipping, returns, accounting, fraud prevention |
| Payment metadata | Provider ids, payment status, refund status, fraud signals | Payment processing, reconciliation, chargeback handling |
| Support and returns | Messages, request type, order number, photos or evidence you submit | Customer support, returns, refunds, product safety review |
| Rewards and vouchers | Eligible activity, pending rewards, reversals, coupon artifacts, redemption records | Operate WDRIM Rewards and Homineed vouchers |
| Device and usage | IP-derived region, browser, logs, cookies, pages viewed, cart/session identifiers | Security, preferences, analytics where allowed, fraud prevention |
3. Purposes and Legal Bases
For EU/EEA users, we rely on contract where processing is needed to provide the store, account, checkout, delivery, returns, and support; legal obligation for accounting, tax, consumer, and product-safety duties; legitimate interests for security, fraud prevention, service improvement, and basic analytics; and consent where required for marketing, non-essential cookies, or certain communications.
For US users, we process personal information for the business and commercial purposes described in this Policy and provide privacy choices where applicable state privacy laws require them.
4. Sharing and Service Providers
We share data with providers needed to operate Homineed, including hosting, WordPress/WooCommerce infrastructure, Witdrim Auth/API, payment providers, shipping providers, tax tools, email services, fraud/security tools, analytics providers where enabled, support tools, professional advisers, and authorities where legally required.
We do not sell personal information for money. If marketing, analytics, pixels, or advertising practices are treated as sale, sharing, or targeted advertising under applicable US privacy laws, we will provide opt-out choices through Privacy Choices.
5. International Transfers
Homineed is planned as an EU-operated service. Where practical, core commerce and account data should be hosted in the EU/EEA.
If data is transferred outside the EEA, including to US providers, we use an available transfer mechanism such as adequacy decisions, the EU-US Data Privacy Framework where applicable, Standard Contractual Clauses, and supplementary measures where needed.
6. Retention
| Record type | Typical retention |
|---|---|
| Account profile | Account lifetime plus limited closure, fraud, legal, and security retention where needed |
| Order, invoice, tax, refund, and payment records | Legal accounting and tax retention periods that apply to the merchant |
| Support and return requests | Normally until resolved plus a support, warranty, dispute, or legal retention window |
| Security and fraud logs | Normally 12 to 24 months unless incident or legal retention requires longer |
| Analytics data | Shortest useful period; prefer privacy-preserving analytics where practical |
| Rewards and voucher records | Account lifetime plus accounting, fraud, and dispute retention where needed |
7. Your Rights
Depending on where you live, you may have rights to access, correct, delete, export, restrict, object, opt out of marketing, opt out of sale/share or targeted advertising, limit use of sensitive data, or appeal a denied privacy request.
Use the Homineed Data Request page for Homineed-side commerce data. Use Witdrim privacy channels for central account, Auth, identity, and ecosystem data.
8. Children
Homineed is not directed to children under 13, and we do not knowingly collect personal information from children under 13. Purchases should be made only by adults or by users with any consent required by local law.
9. Security and Contact
We use technical and organizational measures designed to protect account, order, checkout, support, and rewards data. No system is perfectly secure, so security reports should be sent promptly to security@witdrim.com.
Privacy questions and requests can be sent to privacy@witdrim.com. Order support can be sent to support@homineed.com.
Privacy Choices
Privacy controls for marketing, targeted advertising, sale/share opt-outs, cookies, and data requests.
1. Available Choices
You can opt out of marketing emails by using the unsubscribe link in the message or contacting support.
You can ask Homineed not to use or disclose personal information for targeted advertising, sale, or sharing where applicable US state privacy laws provide that right.
You can manage optional cookies and similar technologies through the Homineed cookie preference panel, the Privacy Choices footer link, and your browser settings.
2. Global Privacy Control
If your browser or extension sends Global Privacy Control, Homineed should treat that signal as an opt-out of sale, sharing, and targeted advertising where applicable.
GPC applies to the browser and device sending the signal. If you use different browsers or devices, you may need to set your preference again there.
3. US State Privacy Rights
Residents of states with consumer privacy laws may have rights to know, access, correct, delete, port, opt out of sale or sharing, opt out of targeted advertising, limit certain sensitive data uses, and appeal a denied request, depending on the law that applies.
Homineed should not discriminate against users for exercising privacy rights. If a future loyalty or rewards feature is treated as a financial incentive under an applicable state privacy law, Homineed should provide the required notice before enrollment.
4. Data Rights Requests
Use the Data Request page for Homineed-side access, correction, deletion, export, restriction, objection, opt-out, or appeal requests.
For central Witdrim Account, Auth, identity, or WDRIM Rewards data, use the Witdrim privacy request route or contact privacy@witdrim.com.
5. Verification
We may need to verify your identity, account ownership, order details, or authorized-agent authority before completing a privacy request.
We will not discriminate against you for exercising privacy rights, but some features may require data that is necessary to provide the service.
Subprocessors and Service Providers
Provider categories Homineed uses to operate commerce, account, payment, shipping, support, rewards, and analytics services.
1. Provider Categories
| Category | Provider | Purpose | Notes |
|---|---|---|---|
| WordPress/WooCommerce hosting | Provider to be confirmed before public checkout opens | Storefront, cart, checkout, account, uploads, logs | Prefer EU/EEA region where practical |
| Database and backups | Provider to be confirmed before public checkout opens | Orders, account, cart, support, settings, logs | Access controls and backup retention required |
| Witdrim Auth/API | Witdrim | Central account, identity, rewards, vouchers, webhooks | Shared ecosystem infrastructure |
| Payments | Payment provider to be confirmed before public checkout opens | Payment authorization, fraud checks, refunds, chargebacks | Provider terms and privacy notices apply |
| Shipping and order operations | Provider to be confirmed before public checkout opens | Parcel delivery, tracking, returns, customs data | Provider depends on destination and product |
| Email and notifications | Provider to be confirmed before public checkout opens | Order confirmations, shipping updates, support, security messages | DPA and transfer mechanism required |
| Analytics | Provider to be confirmed before public checkout opens | Performance and product analytics if enabled | Use only with required consent/choices |
| Support and helpdesk | Provider to be confirmed before public checkout opens | Support tickets, returns, product safety reports | Limit access to support staff |
| Security and anti-fraud | Provider to be confirmed before public checkout opens | Abuse prevention, bot checks, payment risk, audit logs | Document retention and access limits |
2. Changes
Homineed may update service providers as the store, markets, payment methods, order operations, support tooling, or rewards integration changes.
Before public launch, production providers should be reviewed for DPAs, security posture, subprocessors, international transfer mechanisms, region settings, and retention controls.