Updated 2 October 2026
Privacy policy
This policy describes the information used by Apparel Merchandising Hub, including visitor access, the merchandising desk, team workspaces and installed web app. For privacy requests, contact the site operator at ehbipul123@gmail.com.
Information we collect
Visitor registration collects your name, organisation and email. We retain access status, email-verification and expiry dates, sign-in token hashes, browser/device labels and session activity. A hash of your IP address is used to limit access requests. Hosting and email providers may also process request, security and delivery logs.
The desk stores the order details you enter, including buyer/factory contacts, prices, material BOMs, consumption, production routes, capacity and costing assumptions, specifications, quantities, dates, decisions, document references and revision history. Teams store their names, invitation email addresses, membership roles, invitation status and membership activity. Order changes record the account responsible for the update.
How information is used
We use this information to verify your email, manage access and browser sessions, save your orders, enable authorised team collaboration, record changes and prepare exports. After email confirmation, a registration notification containing your submitted details is sent to the site owner. Service emails include sign-in links and team invitations. The hub does not enroll you in a marketing mailing list.
Who can see your records
Personal orders are available to their account owner. Moving an order into a team workspace makes its full saved record and revision history available to that team’s authorised members. A team owner or manager can invite members and manage their roles; editors can update orders; viewers can read and export them. Membership access is checked on each request. Removing a member stops future online team access but cannot retract files they previously downloaded.
The site operator manages visitor records and can access service data through hosting and database administration. Service providers process data needed to operate the hub. We do not sell visitor details or order records, or publish them in the public demo. Demo orders are fictional.
Service providers and external links
The site is hosted using OpenAI Sites and Cloudflare services, including the database. Resend delivers service emails. Processing may take place outside your country. These providers have their own policies: OpenAI, Cloudflare and Resend.
Price publishers, standards sites and the original blog receive your browser requests when you open their links. Their policies apply to those sites. The hub’s price checks do not send your saved orders to price publishers.
Cookies and storage on your device
Essential secure cookies keep visitor and owner sessions signed in. Visitor access can last up to 365 days; returning sign-in normally preserves the existing expiry. Owner sessions last 12 hours. Email verification links expire after 30 minutes and are single-use.
Installing the PWA can cache interface assets and a price snapshot for offline use. Saving a calculator or planner draft uses local device storage only when you select Save on device. Private order and team API responses are not stored by the PWA cache. Browser caches and downloaded Excel files can remain on a shared device. Sign out, remove saved drafts and clear site data when needed. The app does not add advertising trackers.
Retention and your choices
Expiry, sign-out, archiving an order and removing a team member do not automatically delete their records. Visitor records, orders, revision history and team records remain in the service until the operator processes a deletion request or changes the retention arrangements. There is currently no automatic permanent deletion schedule. Provider logs, backups and copies already exported may have separate retention periods.
You can review and revoke browser sessions in My access, export saved orders, remove optional device drafts and leave a team. Contact the operator to request access to, correction of or deletion of personal information, or to raise a privacy concern. We may ask you to verify your identity and clarify which records are involved. Team business records may need separate review with their team owner.
Security and policy changes
We use signed sessions, server-side access checks and controlled revision saves. Keep sign-in links private and include only information necessary for merchandising. Store original approval documents in your controlled document system; the desk currently stores references rather than document uploads. No service can guarantee absolute security. Changes to this policy will be published here with an updated date.