Privacy Policy

Last updated: April 2026

Who We Are

Pocket POS ("Pocket", "we", "us") operates the pocket.mk website and the Pocket Point Professional SaaS platform. This Privacy Policy explains how we collect, use, and protect your personal data.

We are the data controller for the personal information you provide to us. Our registered business is based in Skopje, Macedonia.

Data We Collect

We collect information you provide directly when creating an account or contacting us: name, email address, phone number, business name, and billing information.

We also automatically collect usage data: IP address, browser type, pages visited, time spent, and device information to help us improve our platform.

For restaurant staff and customers using the platform, we also process order data, session information, and user preferences necessary to operate the service.

How We Use Your Data

We use your data to provide, maintain, and improve our services; to process payments and manage your subscription; to send service-related communications (receipts, alerts, password resets); and to respond to your inquiries.

We may use anonymized, aggregated data for analytics to understand how our platform is used. We do not use your data for advertising or sell it to third parties.

Data Sharing

We do not sell your personal data. We share data only with service providers who help us operate the platform:

• Halkbank — payment processing • Resend — transactional email delivery • Cloudflare — infrastructure, CDN, and file storage (R2) • Supabase / PostgreSQL — database hosting

All processors are contractually bound to protect your data and may not use it for their own purposes. We may disclose data if required by law or to protect our legal rights.

Data Retention

We retain your account data for as long as your account is active plus 2 years after closure, unless a longer retention period is required by law (e.g., financial records must be kept 5 years under Macedonian law).

You can request deletion of your data at any time by contacting us. Some data may be retained in anonymized form for analytics after deletion.

Your Rights

Under GDPR and applicable law, you have the right to:

• Access your personal data • Correct inaccurate data • Request deletion of your data • Restrict or object to processing • Receive your data in a portable format (data export) • Withdraw consent at any time

To exercise any of these rights, contact us at hello@pocket.mk. We will respond within 30 days.

Cookies & Tracking

We use essential cookies to keep you signed in and remember your preferences. We use Google Analytics to understand how visitors use our website — this uses cookies and collects anonymized usage data.

You can control cookies through your browser settings. Disabling cookies may affect some functionality of the platform.

Security

We use industry-standard security measures including TLS encryption in transit, encrypted data storage, secure JWT authentication with expiry, and rate limiting on all API endpoints.

No system is 100% secure. If you discover a security vulnerability, please contact us immediately at hello@pocket.mk.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or by posting a notice on our platform. The "Last updated" date at the top of this page reflects the most recent revision.

Continued use of our services after changes take effect constitutes acceptance of the updated policy.

Contact

For privacy-related questions or to exercise your rights:

Email: hello@pocket.mk Phone: +389 78 204 427 Address: Скопје, Македонија