OptiCheckout
Templates Builder Grow revenue Pricing FAQ
Get OptiCheckout
Templates Builder Grow revenue Pricing FAQ Get OptiCheckout
Legal

Privacy Policy

This policy explains what personal data OptiCheckout collects when you visit our site or buy the plugin, how we use and protect it, and the rights you have. It also explains an important point about our software: the OptiCheckout plugin runs inside your own WordPress store and does not send us your customers' checkout data.

Effective: 23 July 2026 Last updated: 23 July 2026

On this page

1. Who this covers 2. What we collect 3. Cookies & tracking 4. Your store customers' data 5. How we use data 6. Who we share it with 7. Payment data 8. How long we keep it 9. International transfers 10. Your rights 11. Security 12. Children 13. Changes 14. Contact & grievances

1. Who this policy covers

OptiCheckout is operated by [Proprietor legal name], an individual proprietor based at [Registered business address, India] ("we", "us"). For the personal data described in this policy, we are the data controller (a "data fiduciary" under India's Digital Personal Data Protection Act, 2023).

This policy applies to people who visit opticheckout.com, who buy or evaluate our plugin, or who contact us for support. It does not govern how you, as a store owner, handle your own customers' data — see section 4.

2. What we collect

Information you give us

  • Purchase details — your name, email address, billing details and the plan you bought. Card/bank details go directly to our payment provider (see section 7); we do not receive or store them.
  • Support and enquiries — the email address and any information you include when you contact us, so we can help you.
  • Licence activation — the site domain(s) where you activate your licence key, so we can validate the licence and deliver updates for your plan.

Information we collect automatically

  • Server logs — when you visit the site or when your licence key checks for updates, our server may log an IP address, timestamp, requested URL, and basic browser/user-agent information. This is standard security and diagnostic logging.

We do not knowingly collect special-category or sensitive personal data through the site, and we ask that you do not send it to us.

3. Cookies & tracking

Our marketing website is intentionally lightweight. It does not set advertising cookies and does not run third-party analytics or ad-tracking scripts. Any cookies used are strictly necessary for the site to function.

The site loads the Geist web font from Google Fonts. When your browser requests the font files, your IP address is shared with Google as part of that request, under Google's own privacy policy. If you prefer to avoid this, you can block third-party font requests in your browser; the site remains fully readable with a system font.

4. Your store customers' data

This is important for a checkout product. When you install the OptiCheckout plugin on your WooCommerce store, it renders and enhances the checkout inside your own WordPress site. Your customers' details — names, addresses, order contents, payment status — are processed within your site and your existing systems (WooCommerce, your host, your payment gateway).

OptiCheckout does not transmit your store customers' personal data to us. The plugin's analytics and A/B-testing features store their data in your own site's database, not on our servers. For that customer data, you are the data controller and are responsible for your own privacy notice and legal compliance toward your customers. The only data that reaches us from an installed plugin is the licence-validation and update information described in section 2.

5. How we use data

We use the personal data above to:

  • process your purchase and deliver the software, licence key and updates;
  • provide support and respond to your enquiries;
  • validate licences and prevent misuse or fraud;
  • send essential service messages (for example, receipts, renewal reminders, security or compatibility notices);
  • keep our site and service secure and working, and meet our legal, tax and accounting obligations.

We do not sell your personal data. We will only send you marketing email if you ask us to or as otherwise permitted by law, and every such email includes an unsubscribe link.

Where the law requires a legal basis (for example, the EU/UK GDPR), we rely on: performance of our contract with you (to deliver and support the software), our legitimate interests (to secure and improve the service and prevent fraud), your consent (where we ask for it), and compliance with legal obligations. Under India's DPDP Act, we process personal data on the basis of your consent or other lawful uses permitted by that Act.

6. Who we share it with

We do not sell your data. We share it only with service providers who help us run the business, under contracts that require them to protect it and use it only for our purposes. These currently include:

  • Dodo Payments — payment processing and, where applicable, acting as merchant of record (invoicing and tax);
  • Railway — website hosting;
  • our email/support and accounting providers, as needed to answer you and keep records.

We may also disclose data if required by law, to enforce our terms, or to protect our rights, safety or property, and we may transfer data as part of a business reorganisation or sale, subject to this policy.

7. Payment data

Payments are handled by our payment provider, Dodo Payments. Your full card or bank details are entered on the provider's secure checkout and are processed by them under their own terms and privacy policy — we never see or store your full payment-card number. We receive only confirmation of the transaction and the limited billing details needed for our records, tax and support.

8. How long we keep it

We keep personal data only as long as needed for the purposes above: for the life of your licence and support relationship, and after that for as long as we must for legal, tax and accounting reasons (invoices, for example, are kept for the period required by law). Server logs are kept for a short period for security and diagnostics and then deleted or anonymised. When data is no longer needed, we delete or anonymise it.

9. International transfers

We are based in India and our providers may process data in other countries. Where personal data is transferred across borders, we take steps to ensure it remains protected in line with applicable law, including through appropriate contractual safeguards with our providers.

10. Your rights

Subject to the law that applies to you, you may have the right to: access the personal data we hold about you; ask us to correct or update it; ask us to delete it; object to or restrict certain processing; withdraw consent you previously gave; and receive a copy of certain data in a portable form. Residents of the EU/UK have these rights under the GDPR; residents of California have rights under the CCPA/CPRA (including the right not to be discriminated against for exercising them); residents of India have rights under the DPDP Act.

To exercise any right, email [email protected]. We will respond within the time the applicable law requires. You also have the right to complain to your local data-protection authority.

11. Security

We use reasonable technical and organisational measures — including encryption in transit (HTTPS), access controls and reputable service providers — to protect personal data. No method of transmission or storage is completely secure, so we cannot guarantee absolute security, but we work to protect your data and to handle any incident responsibly and as required by law.

12. Children

OptiCheckout is a business product intended for adults. We do not knowingly collect personal data from children. If you believe a child has provided us personal data, contact us and we will delete it.

13. Changes to this policy

We may update this policy from time to time. When we do, we will change the "Last updated" date above and, for material changes, take reasonable steps to notify you. Please check back periodically.

14. Contact & grievances

For any privacy question or to exercise a right, email [email protected].

In line with Indian law (the DPDP Act and the Consumer Protection (E-Commerce) Rules, 2020), our grievance contact is:

Grievance officer
[Grievance officer name]
Email
[email protected]
Address
[Registered business address, India]

See our Contact page for full business details.

OptiCheckout

Checkout templates built on cart-abandonment research and a visual builder for classic WooCommerce. HPOS-first, WCAG 2.2 AA, and built to leave your extensions alone.

Product

Templates Builder Grow revenue How it works

Before you buy

Pricing FAQ

Legal

Terms of Service Privacy Policy Refunds & Cancellations Contact

Compatibility

WooCommerce 8.2+ HPOS-first WCAG 2.2 AA
© 2026 OptiCheckout. Not affiliated with or endorsed by Automattic or WooCommerce. WooCommerce and WordPress are trademarks of their respective owners.