1. Introduction
This Privacy Policy ("Policy") explains how Find Stones ("Company", "we", "us", or "our") collects, uses, stores, and protects your personal data when you access or use the Find Stones platform, including the website at findstones.com and the Find Stones iOS mobile application (collectively, the "Platform").
By creating an account or using the Platform, you acknowledge that you have read and understood this Policy. If you do not agree with how we handle your data, please do not use the Platform.
2. Data We Collect
2.1 Account Information
When you sign up, we collect your email address and full name to create and manage your account. Authentication is handled via secure one-time password (OTP) email verification.
2.2 Profile & Business Information
Depending on your account type (buyer or seller), you may provide additional information such as:
- Company name and company type;
- Phone number and country of origin;
- Tax identification number (where required by law);
- Quarry name and location details.
2.3 Stone Sample Data
When you create or manage stone sample listings, we collect and store:
- Photos and images of stone samples (compressed and stored in cloud storage);
- Sample details including block code, material type, color, finish, dimensions, and pricing;
- Catalog organization data such as collections and categories.
2.4 Usage Data
We automatically collect certain technical information when you use the Platform:
- Device type, operating system, and browser information;
- IP address and approximate location;
- Session data and Platform usage patterns;
- Cookie data (see Section 8 below).
3. How We Use Your Data
We use your personal data for the following purposes:
- Account management: Creating, authenticating, and maintaining your user account;
- Platform functionality: Enabling you to create, edit, and manage your stone sample catalog;
- Public catalog: Displaying your stone samples to other users in the public marketplace (if you choose to make them public);
- Communication: Facilitating contact between buyers and sellers through the Platform;
- Excel export: Generating exportable catalogs of your stone samples;
- Platform improvement: Analyzing usage patterns to improve features and user experience;
- Security: Protecting accounts and preventing fraud or abuse;
- Legal compliance: Meeting our obligations under applicable laws and regulations.
4. Third-Party Services
We use the following third-party services to operate the Platform:
- Supabase: For user authentication, database storage, and file/image storage. Supabase may store data on servers located outside of Turkey;
- Vercel: For hosting and serving the web application;
- Apple App Store: For distribution of the iOS application.
These service providers have their own privacy policies and process data on our behalf in accordance with their terms of service.
5. Data Sharing
We do not sell your personal data to any third party. We may share your data only in the following circumstances:
- With other users: Your public catalog listings (including stone sample photos, descriptions, company name, and contact information) are visible to other Platform users;
- With service providers: As described in Section 4, to operate the Platform infrastructure;
- Legal requirements: When required by law, court order, or governmental authority;
- Protection of rights: To enforce our Terms of Use, protect our rights, or ensure the safety of our users.
6. Data Storage & Security
Your data is stored on cloud-based servers which may be located outside of Turkey. We implement industry-standard security measures to protect your personal data:
- Encrypted authentication and secure session management;
- Row-level security policies on database tables;
- Secure image storage with access controls;
- HTTPS encryption for all data in transit.
While we take reasonable steps to protect your data, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security.
7. Your Rights
You have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you;
- Correction: Request correction of inaccurate or incomplete data;
- Deletion: Request deletion of your personal data and account;
- Data portability: Export your stone sample catalog data (e.g., via Excel export);
- Objection: Object to certain processing of your data;
- Withdrawal of consent: Where processing is based on your consent, you may withdraw it at any time.
To exercise any of these rights, please contact us using the details provided in Section 11. We will respond to your request within 30 days.
8. Cookies
The Platform uses cookies and similar technologies for essential functionality:
- Authentication cookies: To keep you signed in and manage your session;
- Preference cookies: To remember your language selection and display preferences;
- Functional cookies: To ensure the Platform operates correctly.
We do not use advertising or tracking cookies. You can manage cookie preferences through your browser settings.
9. Children's Privacy
The Platform is intended for users aged 18 and above. We do not knowingly collect personal data from individuals under the age of 18. If we become aware that we have collected data from a minor, we will take steps to delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. Changes will be posted on the Platform with an updated "Last Updated" date. Continued use of the Platform after changes constitutes acceptance of the revised Policy.
11. Contact
If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at:
- Email: enes@findstones.com
- Platform: findstones.com