1. Introduction
This Retailer Privacy Policy ("Policy") supplements the general ActiPatch® Privacy Policy and describes how Electrome Corporation ("Electrome," "we," "us") collects, uses, discloses, and protects information when you use the ActiPatch® B2B retailer portal, wholesale ordering system, and related tools (collectively, the "Retailer Services"). To the extent this Policy conflicts with the general Privacy Policy, this Policy controls with respect to the Retailer Services.
2. Information We Collect from Retailers
Business Registration Data
- Legal business name, contact person name, email, and phone number
- Business address (billing and shipping)
- Employer Identification Number (EIN) or Tax ID for credit and tax purposes
- Business type, category, and estimated monthly order volume
- Resale certificate or sales tax exemption documentation
- Business license or pharmacy/DME license numbers (where applicable)
- Website URL
Ordering and Fulfillment Data
- Purchase orders, order history, and order status
- Shipping addresses and delivery preferences
- Inventory levels and reorder thresholds (if using integrated inventory management)
- Return merchandise authorizations (RMAs) and credit memos
Financial Data
- Payment method tokens for credit card or ACH payments (we do not store full card numbers; payments are processed by Stripe or Shopify)
- Invoice and payment history
- Net‑term credit applications and credit status
- Outstanding balances and aging reports
Platform Usage Data
- Portal login times, feature interactions, and session duration
- Device, browser, operating system, and IP address
- Communications with Electrome B2B support, sales, or operations teams
3. Legal Bases for Processing
We process retailer data under the following legal bases:
- Contract Performance: To fulfill wholesale orders, manage your retailer account, process payments, and provide the Retailer Services under the Retailer Terms of Service.
- Legal Obligation: To comply with tax reporting, anti‑money laundering regulations, product recall coordination, and other applicable laws.
- Legitimate Interest: To evaluate creditworthiness for net terms, prevent fraud, improve the Retailer Services, and maintain platform security.
- Consent: Where required by law, including for optional analytics and marketing communications.
4. How We Use Retailer Data
- Verify your business credentials and evaluate your retailer application
- Assign your account to the appropriate retailer tier (Self‑Serve, Mid‑Market, or Enterprise)
- Process wholesale orders, manage fulfillment, and coordinate shipping
- Evaluate and manage net‑term credit applications and outstanding balances
- Generate invoices, process payments, and issue credits or refunds
- Provide B2B customer support and respond to your inquiries
- Coordinate product recalls and safety communications
- Communicate order confirmations, shipping updates, and account notifications
- Analyze aggregate ordering patterns to improve product availability and logistics
5. How We Share Retailer Data
We do not sell retailer data. We share information only as needed to operate the Retailer Services:
- Payment Processors: Billing data is processed by Stripe and Shopify under their respective privacy policies and PCI DSS compliance programs.
- Fulfillment and Shipping Partners: Shipping addresses and order details are shared with authorized fulfillment centers and carriers to deliver your orders.
- Credit Evaluation: For net‑term applications, we may share limited business and financial information with credit reporting agencies to assess creditworthiness.
- Infrastructure Providers: Hosting, email, and analytics services operating under written confidentiality agreements.
- Legal and Regulatory: When required by law, subpoena, court order, or to investigate fraud or violations of the Retailer Terms.
- Product Recalls: In the event of a product recall, we may share your contact information with regulatory authorities as required by FDA regulations.
- Business Transfers: In connection with a merger, acquisition, or asset sale, with notice consistent with applicable law.
6. Data Security
We protect retailer data using:
- AES‑256 encryption at rest and TLS 1.2+ encryption in transit
- Role‑based access controls limiting access to financial and business data
- Multi‑factor authentication for all retailer portal accounts
- Audit logging of all access to ordering and financial records
- Regular vulnerability assessments and penetration testing
- PCI DSS compliance for all payment processing
7. Data Retention
- Account Data: Retained for as long as your retailer account is active, plus two (2) years following account closure for audit and dispute resolution purposes.
- Order and Invoice Records: Retained for seven (7) years in accordance with IRS and state record‑keeping requirements.
- Credit Application Data: Retained for the duration of any active net‑term arrangement plus three (3) years following closure.
- Tax Documentation: Resale certificates and EIN records are retained for four (4) years following the last tax year in which they were used.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access and receive a copy of your retailer account data and order history
- Correct inaccurate business, contact, or payment information
- Request deletion of your account, subject to our legal and financial retention obligations
- Opt out of non‑essential marketing communications
- Request a machine‑readable export of your retailer data within thirty (30) days of written request
- Appeal a denial of any privacy rights request
To exercise your rights, contact our Privacy team (mention "Retailer Privacy Request").
9. Cookies and Tracking
We use strictly necessary cookies for authentication and session management within the retailer portal. Limited analytics cookies measure platform performance and usage patterns. We do not use cross‑site behavioral advertising trackers within the Retailer Services. You can manage cookie preferences through your browser settings.
10. Changes to This Policy
We may update this Retailer Privacy Policy from time to time. Material changes will be communicated by email and through the retailer portal at least fourteen (14) days before they take effect. The "Last updated" date above reflects the most recent revision.
11. Contact
Electrome Corporation
Privacy Officer
200 N Vineyard Blvd
Ste. A325 # 5743
Honolulu, HI 96817
Phone: (808) 300-5703
Privacy: contact our Privacy team · B2B Sales: contact our B2B team