MallDrop
  • Home
  • Permissions
  • Data Handling
  • Privacy Policy
  • Terms & Conditions

Data Handling

A transparent look at what data Mall Drop collects, how it flows through our systems, and the measures we take to protect it.

Last Updated: 10 April 2026

1. Data We Collect

Mall Drop collects only the data necessary to provide our marketplace services. Here is a complete breakdown by category:

Personal Identity Data

Data FieldPurposeRequired
Full nameAccount identity, order processing, display to other usersYes
UsernameUnique account identifier, display nameYes
Email addressAccount login, notifications, password recoveryYes
Phone numberAccount recovery, delivery contactYes
Profile picturePersonalisation, identity in reviews and storesNo
User roleDetermines app features and access permissionsYes

Transaction Data

Data FieldPurposeRequired
Order detailsItems, quantities, prices for purchase processingYes (per order)
Delivery addressShipping and delivery logisticsYes (per order)
Payment recordsTransaction amounts, status, charge and transaction IDsYes (per payment)
Refund recordsRefund amounts, status, processingIf applicable
Payout recordsVendor and courier earnings and disbursementsIf applicable

Location Data

Data FieldPurposeRequired
Delivery coordinatesPickup and drop-off location for deliveriesYes (per delivery)
Courier live locationReal-time tracking during active deliveriesYes (couriers)
Store locationDisplay on maps, distance calculationYes (vendors)

Device and Security Data

Data FieldPurposeRequired
Device informationDevice type and OS for compatibility and securityAutomatic
Biometric enrolment statusSecure login via Face ID or fingerprintNo (optional)
Authentication tokensSecure session management (access + refresh tokens)Automatic
Last authentication timeSession expiry enforcement (30-minute timeout)Automatic

Content Data

Data FieldPurposeRequired
Product imagesProduct listings and displayYes (vendors)
Store assetsStore branding and presentationYes (vendors)
Reviews and ratingsCommunity feedback for products and storesNo (optional)
Support messagesCustomer support ticket communicationIf applicable

2. How Data Flows Through Our System

Understanding the journey of your data from collection to storage:

Step 1 — Collection: Data is collected through the Mall Drop app when you register, make purchases, list products, or use features like delivery tracking.

Step 2 — Transmission: All data is transmitted over encrypted HTTPS/TLS connections between your device and our backend servers hosted on Supabase.

Step 3 — Processing: Data is processed by Supabase server-side functions (Edge Functions) to handle business logic such as order creation, payment initiation, and delivery coordination.

Step 4 — Storage: Structured data is stored in a PostgreSQL database. Media files (images) are stored in dedicated object storage buckets. Authentication tokens are stored in encrypted device storage.

Step 5 — Third-Party Sharing: Specific data is shared with payment (Yoco, Ozow), shipping (ShipLogic, Easyship), and mapping (Google Maps) providers only as required to complete transactions.

3. Where Your Data Is Stored

Cloud Infrastructure (Supabase)

  • PostgreSQL Database: User profiles, orders, products, payments, support tickets, reviews, store information, and all relational data.
  • Object Storage Buckets:
    • product-images — Product photos uploaded by vendors.
    • store-assets — Store logos, banners, and branding images.
  • Supabase Auth: Password hashes, authentication sessions, and email/phone recovery tokens.

On Your Device

  • Flutter Secure Storage: Authentication tokens (access and refresh tokens) stored using platform-native encryption:
    • iOS: Keychain Services (hardware-backed encryption)
    • Android: EncryptedSharedPreferences (AES-256 encryption)
  • SharedPreferences: Non-sensitive app settings only:
    • Theme preference (light/dark mode)
    • Onboarding completion status
    • Language preference

Note: We do not store banking details, card numbers, or sensitive financial data on your device or in our database. All payment data is handled exclusively by Yoco (card payments) and Ozow (bank transfers and payouts).

4. Data Protection Measures

Encryption

  • In Transit: All API communication uses HTTPS with TLS 1.2+ encryption.
  • At Rest: Authentication tokens are encrypted using platform-native secure storage. Database connections use SSL.
  • Passwords: Hashed using bcrypt through Supabase Auth — plaintext passwords are never stored or transmitted after initial processing.
  • PIN Codes: Hashed using PBKDF2-HMAC-SHA256 with unique salts before storage. Plaintext PINs are never persisted.

Access Controls

  • Row Level Security (RLS): Database-level policies ensure users can only read and modify their own data. Vendors can only access their own store and products. Admins have broader access for platform management.
  • Role-Based Access: The app enforces role-based navigation and API access — buyers cannot access vendor management screens, couriers cannot access admin tools, etc.
  • JWT Authentication: Every API request includes a signed JSON Web Token that validates the user's identity and permissions.

Session Security

  • 30-Minute Timeout: Sessions automatically expire after 30 minutes of inactivity, requiring re-authentication.
  • Token Refresh: Access tokens have short lifespans and are refreshed automatically. Expired refresh tokens require a full login.
  • Biometric Verification: Users who enrol in biometric authentication can use Face ID or fingerprint for quick, secure re-authentication and payment confirmation.
  • PIN Verification: A secure PIN serves as both a login method and a payment confirmation step, providing an additional layer of identity verification.
  • Device Trust: Devices can be registered and tracked for additional security context.

5. Third-Party Data Sharing

We share data with the following third-party services, limited to what is strictly necessary for their function:

ProviderData SharedPurpose
Yoco Order amount, order reference, checkout session ID Primary card payment processing and refunds
Ozow Order amount, order reference, user email Bank transfer payments, vendor payouts, courier payouts
ShipLogic Pickup address, delivery address, parcel dimensions Domestic shipping quotes and deliveries
Easyship Pickup address, delivery address, parcel details International shipping quotes and deliveries
Google Maps Coordinates (latitude, longitude) Map display, route calculation, delivery tracking
Supabase All application data Backend infrastructure, database, authentication, storage

We do not sell your data. Third-party sharing is limited to operational necessities. Each provider is bound by their own privacy policies and data protection obligations.

6. Data Retention Schedule

Data TypeRetention PeriodReason
Account profile dataActive account + 30 days after deletionAccount operations and grace period for recovery
Order and transaction records5 years after transactionFinancial and legal compliance
Payment and payout records5 years after transactionTax and audit requirements
Support tickets2 years after resolutionService quality and dispute reference
Delivery tracking data90 days after deliveryDispute resolution and service improvement
Product imagesWhile product is active + 30 days after deletionMarketplace operations
Reviews and ratingsIndefinite (anonymised after account deletion)Community value and product quality signals
Authentication logs12 monthsSecurity monitoring and incident response

7. Your Data Rights

You have control over your personal data. Here's how to exercise your rights:

View Your Data

Access your profile, order history, payment history, and reviews at any time through the App.

Edit Your Data

Update your name, email, phone, avatar, and address through your profile settings.

Export Your Data

Request a full export of your personal data by emailing privacy@bountifulai.co.za.

Delete Your Data

Request account deletion through the App or by contacting support. Subject to legal retention requirements.

8. Data Breach Protocol

In the event of a data breach, Mall Drop commits to the following response:

  1. Detection & Containment: Immediately identify the scope and contain the breach to prevent further data exposure.
  2. Assessment: Evaluate the nature and extent of the compromised data.
  3. Notification: Notify affected users within 72 hours of breach confirmation, including details of what data was affected and recommended protective actions.
  4. Regulatory Reporting: Report to relevant data protection authorities as required by applicable law.
  5. Remediation: Implement corrective measures to prevent recurrence and communicate these to affected users.

9. Contact Our Data Team

For any questions about how we handle your data, or to exercise your data rights:

Data Protection Inquiries: privacy@bountifulai.co.za

General Support: contact@bountifulai.co.za

Mall Drop

The multi-vendor marketplace connecting buyers, vendors, and couriers. Shop, sell, and deliver — all in one app.

Legal

  • Privacy Policy
  • Terms & Conditions
  • Data Handling
  • Permissions
  • Open-Source Credits

Contact

  • contact@bountifulai.co.za
  • inquiry@bountifulai.co.za
  • privacy@bountifulai.co.za
  • +27 64 073 2359

© 2026 Mall Drop. All rights reserved.