Legal
Privacy Policy
Last updated 22 August 2026
Who we are
PUDZ RESELLZ (Pudz Resellz) operates pudzresellz.com and sells digital access to curated supplier research and sourcing information inside the Pudz Vault. You can reach us any time through our contact page. We handle personal information in line with the Australian Privacy Principles as a matter of good practice, whether or not we are currently required by law to do so.
What we collect and how we collect it
- Account information — your email address, collected when you sign in. Sign-in uses a passwordless email link or an optional password you set; passwords are handled by our authentication provider and are never visible to us.
- Order information — the email you enter at checkout, what you purchased, the amount, currency, order status and the resulting Vault access records.
- Delivery details — a name, address and phone number, only if you order a physical item that must be shipped.
- Payment information — collected and processed by Stripe on Stripe's own checkout pages. We receive a payment confirmation and reference; we never see or store your full card number.
- Support and marketing — the content of messages you send us, and your email address if you choose to subscribe to updates.
- Security and abuse-prevention data — your IP address and browser user agent when you request an access link, used to rate-limit and detect misuse.
Cookies and local storage
We use only the browser storage needed to run the site: a session token so you stay signed in, and local storage that remembers your cart. We do not run advertising or cross-site tracking cookies. If we later add website analytics it will be a privacy-friendly, cookie-free tool, and this policy will be updated first.
Why we use it
To process your order, grant and check Vault access, authenticate you, send transactional email (order confirmations, access links, shipping and refund notices), respond to support requests, prevent fraud and misuse, keep required business records and meet our legal obligations. We do not sell your personal information, and we only send marketing email if you have asked us to — every marketing email includes an unsubscribe option.
Who we share it with
Only the service providers needed to operate the store, each acting on our instructions: Stripe (payment processing), Supabase via Lovable Cloud (database, authentication and hosting) and Resend (transactional email). We may also disclose information where required by law, or to investigate suspected fraud, chargeback abuse or unauthorised sharing of Vault access.
Some of these providers may store or process data outside Australia. We take reasonable steps to use reputable providers with appropriate security and contractual protections.
Security and retention
Access to customer data is restricted by database row-level security so you can only see your own records, and private supplier data is only released to accounts with an active entitlement. We keep order and entitlement records while your access is active and for as long as Australian tax and business record-keeping obligations require. Abuse-prevention logs are kept for a short period and then deleted. No system is perfectly secure, but we take reasonable steps to protect your information from misuse, loss and unauthorised access.
Access, correction and complaints
You can ask us for a copy of the personal information we hold about you, ask us to correct it, or ask us to delete your account. Deleting your account ends your Vault access. Contact us through the contact page and we will respond within a reasonable time. If you are not satisfied with our response, you can complain to the Office of the Australian Information Commissioner.
Changes
We update this policy when our systems or practices change. The current version always appears on this page with its last-updated date.
