Vertex Privacy Policy
Version: 1.1 · Effective: 2026-08-31 · Last updated: 2026-08-31
Vertex is operated by مؤسسة تيكنومايندز (Technominds Establishment), Unified/Commercial Registration No. 7053119298, Kingdom of Saudi Arabia.
This is the unified, operative Privacy Policy for the Vertex App suite. App-specific data-use schedules apply alongside it, including the Vertex SEO Data Use Schedule. It does not represent that commercial entitlement, billing, or deletion is decided locally by an App when authority belongs to a marketplace or central Vertex service.
1. Scope and roles
This Policy explains how Technominds Establishment (Vertex) handles personal data. Vertex is an independent controller for Vertex account, security, support, service-administration, and legal-compliance data. When it processes store or catalog data at a merchant's direction to provide an App, it acts as processor for that merchant. The Service is not directed to children.
2. Data we process
This Policy covers the current registered Apps: Vertex Profit, Vertex Loyalty, Vertex Reviews, Vertex SEO, Vertex Matrix, Vertex Upsell, Vertex Social, Vertex Joho, Vertex Recur, Vertex CRO, Vertex Refer, Vertex Signals, Vertex Digital Downloads, Vertex Store Audit. A shared Policy does not give one App access to another App's data; actual processing depends on the App enabled by the merchant, provider permissions, the stated purpose, and current authority.
Vertex Profit: may process store, order, refund, fee, tax, shipping, cost, inventory, attribution, and financial-performance data.
Vertex Loyalty: may process customer, order, product, points-ledger, tier, reward, redemption, and fulfillment data.
Vertex Reviews: may process customer, order, product, review, rating, moderation, media, and delivery-status data.
Vertex SEO: may process product, catalog, metadata, image, link, scan, recommendation, draft, apply, rollback, and evidence data.
Vertex Matrix: may process catalog, product, variant, category, inventory, file, mapping, validation, import, export, and rollback data.
Vertex Upsell: may process product, cart, offer, eligibility, exposure, interaction, conversion, order, and performance data.
Vertex Social: may process customer contact, consent, audience, campaign, message, template, delivery, engagement, and opt-out data.
Vertex Joho: may process customer profiles, order history, audience membership, interactions, tasks, notes, journeys, support, and insight data.
Vertex Recur: may process customer, product, order, subscription, schedule, renewal, payment-status, retry, cancellation, and fulfillment data.
Vertex CRO: may process storefront event, session, exposure, experiment, cart, checkout, order, conversion, and performance data.
Vertex Refer: may process referrer and referred-customer identifiers, links, attribution, visits, orders, eligibility, reward, and fraud-prevention data.
Vertex Signals: may process storefront, device, network, consent, customer-hash, cart, checkout, order, attribution, and delivery-result data.
Vertex Digital Downloads: may process product, order, customer contact, digital asset, license, entitlement, delivery, access, and download-event data.
Vertex Store Audit: may process store, installation, catalog, configuration, readiness, audit, evidence, opportunity, mission, and interaction data.
Data may include identity, membership, and role identifiers; store identifier, platform, installation and generation state; encrypted provider access tokens; catalog and SEO data such as product names, descriptions, SKU, price, images, links, and current or prior fields; scan results, recommendations, drafts, apply or rollback history; and security, support, webhook, and audit records.
When AI is used, Vertex SEO processes product context needed for a recommendation, output, invocation identifier, and token-usage or operational-error data. The certified SEO path does not require payment cards, passwords, order content, customer addresses, phone numbers, or messages. The App does not store raw Google query text or Google user data.
3. Purposes and basis
We use data to bind a user to the correct store, perform installation, read catalog data, create a recommendation, carry out a change you approve, show status, evidence, and rollback, and synchronize with a provider. We also use it for security, duplicate or abuse prevention, troubleshooting, entitlement administration, support, and compliance.
Where applicable, we rely on performance of the contractual relationship or a merchant request, legal obligation, permitted legitimate interests for security and support, and consent where law or a provider requires it. We do not sell personal data or use store or customer data for behavioral advertising or Vertex's own marketing.
4. Sharing, subprocessors, and platforms
We share data only as needed with the identity provider, hosting, infrastructure, database, backend-execution and workflow providers, Zid or Salla when a store is connected, and Vertex's central governed AI runtime. We may disclose data when required by law, to protect rights and security, or on merchant instruction. The public Subprocessor Register records only currently enabled services.
A Salla authorization path is now active for store identity, granted scopes, the encrypted credential, authorization and lifecycle events, and subscription observation. There is not yet a Salla commercial entitlement or paid SEO entry; that boundary fails closed. There is no publicly enabled Google Search Console flow.
5. International processing and security
Some services may process data outside Saudi Arabia. Before cross-border processing is enabled or expanded, we document the processor location, purpose, and appropriate safeguard under applicable law. We use reasonable measures including encryption of secrets, HTTPS, access limitation, installation-store-generation binding, audit records, webhook-signature verification, and separation of authority.
6. Retention, uninstall, and deletion
Uninstalling an App is not an account- or data-deletion request. On uninstall, Vertex stops authority and future work and disables or revokes provider tokens under the lifecycle flow. An account or data-deletion request is a separate process after verification of the requester's identity and authority.
The current system retains data as necessary to operate the Service, provide security and support, meet legal or accounting obligations, or apply a documented exception. Some security records and backups may be subject to documented exceptions. SEO does not yet operate a general time-based automatic purge for every record class, so this Policy does not promise a fixed deletion period that is not implemented. We will publish a specific period only after it is technically implemented and proven.
7. Your rights and requests
Depending on applicable law and Vertex's role, you may request access, correction, deletion, restriction, objection, withdrawal of consent, or portability. For customer data we process for a merchant, requests should ordinarily go to that merchant as controller. Do not email a password or access token; we verify authority to protect the store from unauthorized requests. For requests, email privacy@tryvertex.io with your organization name and a reasonable verification method.
8. Cookies, changes, and contact
Vertex SEO uses necessary secure session and lifecycle-decision cookies and local storage for the language preference. Review of the current SEO source found no enabled analytics, advertising, or third-party tracking SDK. See the Cookie Notice for details. We may update this Policy prospectively, post an effective date, and give appropriate notice for a material change where required.
The App-specific technical details are in the Vertex SEO Data Use Schedule.