Privacy Policy
This policy explains what ArrayCart collects through its website and platform, how GA4, Meta Pixel and our payment provider are used, and how business data you enter into ArrayCart is handled.
- Per-workspace data isolation
- No sale of personal data
- Analytics and ad measurement disclosed
- Controller
- ArrayCart
- Product
- ArrayCart platform
- Effective date
- April 10, 2026
- Last reviewed
- July 19, 2026
Scope
This policy covers the ArrayCart website and the ArrayCart platform, including marketing, signup, newsletter, support, contact, subscription and billing flows.
ArrayCart operates the marketing website at arraycart.bd and the ArrayCart cloud platform. This policy applies when you visit the website, register for the launch waitlist, submit a signup, newsletter, support or contact form, start or manage an ArrayCart subscription, request a refund, use the platform, or contact us about privacy rights.
Two kinds of data on the platform
ArrayCart processes two categories of data. First, account and identity data for the people who sign in to the platform. Second, the business data that a tenant enters into ArrayCart, such as employees, customers, orders, inventory, accounting entries and messages. ArrayCart hosts and processes that business data on the tenant's behalf and on the tenant's instructions to provide the service, with each workspace's data isolated from other tenants.
Data we collect
ArrayCart collects the account and identity data needed to run the platform, plus the business data that tenants choose to enter into it.
| Source | Data collected | Purpose |
|---|---|---|
| Waitlist and signup forms | Waitlist: name, phone number and interested package. Other signup forms may collect email, business type and optional product-update consent. | Reserve a launch seat, prevent duplicate registrations and manage ArrayCart signup workflows. |
| Newsletter forms | Name and email | Send product updates and allow unsubscribe management. |
| Support and contact forms | Name, email, subject and message body | Reply to questions, support requests and account inquiries. |
| Platform account and identity data | User names, emails, roles, sign-in and two-factor authentication records and audit-trail entries | Authenticate users, enforce per-workspace access control and maintain audit trails. |
| Business data entered into the platform | Employee, customer, order, inventory, accounting and message records that a tenant adds to ArrayCart | Provide the platform features to the tenant. ArrayCart processes this data on the tenant's behalf and on the tenant's instructions. |
| GA4 website analytics | Page views, sessions, referral source, approximate location, browser and device information | Understand aggregate website usage and improve pages. |
| Meta Pixel | Page visits, pricing-page visits, browser and device signals, and successful new waitlist registrations recorded as a Purchase event with zero revenue. Form names and phone numbers are not sent in Pixel events. | Measure Meta ad performance, attribute conversions and improve campaign delivery. |
| Payment provider | Checkout, transaction, tax, invoice and subscription records needed to process purchases | Complete payments, manage subscriptions, issue refunds, prevent fraud and meet legal obligations. |
ArrayCart does not store card numbers, CVC codes or full payment credentials. Card handling is performed by our third-party payment provider.
Legal basis
ArrayCart uses personal data only where there is a lawful reason to do so.
| Activity | Legal basis | Explanation |
|---|---|---|
| Waitlist, signup, support and contact handling | Contract or pre-contractual steps | We use your details to respond, provide requested information or manage platform access. |
| Providing the platform and processing tenant business data | Contract and processor instructions | We process the business data a tenant enters in order to deliver the platform features the tenant has subscribed to. |
| Newsletter | Consent | You can unsubscribe at any time from newsletter messages. |
| GA4 analytics | Legitimate interests | Analytics scripts and cookies load automatically to measure website use and improve pages. |
| Meta Pixel advertising measurement | Legitimate interests | Meta Pixel loads automatically to measure page visits, ad attribution and waitlist conversions. |
| Payments, subscriptions, tax and refunds | Contract and legal obligation | Our payment provider processes checkout, subscription and transaction records needed for the purchase. |
| Security and abuse prevention | Legitimate interests | We use security logs, audit trails and provider controls to protect the website, platform and payment flows. |
Cookies, analytics and advertising measurement
GA4 and Meta Pixel load automatically when a visitor uses the website.
| Cookie | Type | Purpose | Duration | Control |
|---|---|---|---|---|
| _ga | Analytics | Google Analytics client identifier used for aggregate website analytics. | Up to 2 years | Set when Google Analytics loads on a website visit. |
| _ga_* | Analytics | Google Analytics session and measurement cookie. | Up to 2 years | Set when Google Analytics loads on a website visit. |
| _fbp, _fbc | Advertising measurement | Meta browser and click identifiers used for advertising and site-analytics measurement. | Up to 90 days | Set when Meta Pixel loads on a website visit. |
Google Analytics and Meta Pixel load by default. Visitors can delete or block cookies through their browser settings and can use their Google or Meta account controls to manage provider-level advertising and activity preferences.
ArrayCart uses Meta Pixel for advertising measurement, including PageView, PricingPageView and Purchase events. The Purchase event represents a successful new launch-waitlist registration with zero revenue; it does not mean that payment was taken. ArrayCart does not use heatmaps or session recordings. For more detail, read Data Safety.
Third-party providers
| Provider | Purpose | Notes |
|---|---|---|
| Google Analytics 4 | Website analytics | Loads automatically to measure page visits, sessions and website performance. |
| Meta Platforms, Inc. | Advertising and conversion measurement | Meta Pixel loads automatically and receives page and conversion events without waitlist form names or phone numbers. |
| Payment provider | Payment processing and subscription billing | Handles checkout and payment details for ArrayCart subscriptions. |
| Hosting provider | Platform and website hosting and security | Hosts the platform and may process server logs for security, reliability and abuse prevention. |
Data retention
| Data | Retention |
|---|---|
| Waitlist, signup, support and contact details | Kept while needed to manage launch access, respond or manage the relationship, then deleted or minimized. |
| Newsletter data | Kept until unsubscribe or deletion request. |
| Business data entered into the platform | Kept while the tenant's subscription is active and deleted or returned according to the tenant's instructions after the account ends. |
| Payment, invoice, tax, refund and subscription records | Kept as required for tax, accounting, fraud prevention, legal and subscription-management obligations. |
| GA4 analytics | Collected when Google Analytics loads and retained according to the active GA4 property settings. |
| Meta Pixel events and identifiers | Collected when Meta Pixel loads and retained according to Meta's active settings and policies. |
| Security and server logs | Kept only as long as needed for security, reliability and abuse prevention. |
Your rights
Depending on your location, you may have rights to access, correct, delete, restrict, port or object to processing of your personal data. California residents may also have rights under the CCPA/CPRA, including the right to know, delete, correct and opt out of sale or sharing. ArrayCart does not sell personal data.
Email [email protected] to exercise your rights. We respond within 30 days unless a legally permitted extension applies. More details are available on the GDPR and CCPA compliance page.
Children's privacy
The ArrayCart website and platform are intended for business users and business owners. They are not directed to children under 16, and ArrayCart does not knowingly collect personal data from children.
Changes and contact
ArrayCart may update this policy when data practices, providers, legal requirements or product workflows change. Material updates are reflected by the last reviewed date on this page.
Contact: [email protected]
Policy owner
ArrayCart is the controller for website, signup, newsletter, support, contact and commercial relationship data, and the processor for the business data tenants enter into the platform.
Related policies
Each page covers one part of how ArrayCart handles privacy, payments, subscriptions, refunds, and accessibility.
Data Safety
How website data, payment data, and per-tenant workspace data are separated.
Read policyRefund Policy
The 60-day ArrayCart subscription refund guarantee and how refund requests are handled.
Read policyTerms of Service
The terms for using the ArrayCart website and ArrayCart subscriptions.
Read policyNeed a privacy, billing, or accessibility answer?
Email ArrayCart. We route rights requests, refund questions, and accessibility reports to the right place.
