Legal

Privacy Policy.

Last updated: 19 July 2026

Data controller: Carlos Andrés Rosas Curilén, RUN 17.411.258-4, domiciled in Santiago, Chile. Direct email: contact@sololander.com

Governing law: this policy is governed by Chilean law (Ley 19.628 and, from the date it comes into force, Ley 21.719). If you are in the European Union, you also have the rights granted by the GDPR.

1. Who we are and scope

Sololander is a software as a service (SaaS) that helps dropshipping merchants generate and publish product pages for their Shopify stores.

This Privacy Policy explains how we handle the personal data of our subscriber users (the merchants who create an account and use Sololander) and also of those who leave us their details in the sololander.com forms (for example, to receive the launch notice or news), even if they are not yet customers.

Important: this policy covers the subscriber user's data. It does not cover the data of the end consumers who buy from the user's Shopify store; that data is collected and managed by the merchant themselves as an independent controller (see section 9).

If you have questions about this policy, you can contact us through the means indicated in section 14.

2. What data we collect

We collect only the data necessary to provide the service:

We do not request or process special categories of data (sensitive data) to provide the service.

3. How we use the data

We use the above data to:

We do not sell your personal data or use it for third-party advertising.

4. Basis for processing

Where applicable (for example, under the GDPR or other equivalent rules), we process your data on the following legal bases:

5. Who we share data with (sub-processors and third parties)

To provide the service we use external providers that process data on our behalf or as independent controllers depending on their role. We share with them only the data necessary for their function:

ProviderWhat we use it forWhat data it receives
SupabaseAuthentication and account management (USA)Email, login credentials, account identifiers
ShopifyConnection with your store and publication of pages (Canada / USA)Your store's domain and access token, generated content
Dodo Payments (Merchant of Record)Payment processing and billing (USA)Payment and billing data (card data is handled by Dodo; we do not store it)
AnthropicText/copy generation using AI (USA)Product data extracted from the link you give us
Kie / GPT ImageOn-demand image generation using AI (USA)Instructions and product data necessary to generate the image
CloudflareDelivery and protection of the dashboard and the landing page (global network, headquartered in the USA)Technical connection data (for example, IP, requests)
HostingerHosting of the control plane and the database (EU). The same server hosts our automation engine (self-hosted n8n), through which internal service notices and lead data passAccount, usage, connection and log data stored on the server
BrevoSending of transactional emails and service notices (EU)Email address and message content
Microsoft ClarityBehavioural analytics (heatmaps and session recording) on the landing page and the dashboard, only if you accept analytics cookies (USA)Browsing interactions and technical device data

In brackets we indicate the main country or region where each provider processes the data (see also section 6 on international transfers).

These providers have their own privacy policies. We may update this list as our providers change; in that case we will reflect the changes in this policy (see section 13).

We may also disclose data when required by law or a competent authority, or to protect our rights, safety or those of third parties.

6. International transfers

Some of our providers are located in or process data outside your country of residence (for example, in the United States). This means that your data may be transferred and processed in jurisdictions with data protection rules different from those of your country.

Our providers process data in the United States and the European Union (see the table in section 5). These transfers are covered by each provider's data processing agreements (DPA), which incorporate standard contractual clauses and, where the provider is certified, the EU-US Data Privacy Framework. Chile does not have an adequacy decision from the European Union; as controller, we apply those same contractual safeguards.

7. Retention and deletion

We retain your data while your account is active and for as long as necessary to provide the service.

You can request the deletion of your account through the contact means in section 14.

8. Your rights

Depending on your jurisdiction, you may have the right to:

To exercise these rights, contact us through the means in section 14. We may ask you to verify your identity before handling the request. If you believe we have not respected your rights, you can complain: if you are in Chile, to the Agencia de Protección de Datos Personales; if you are in the European Union, to the supervisory authority of your Member State.

9. Data of your own end customers

Sololander helps you create product pages, but it does not manage the data of the consumers who buy from your store. That data (orders, addresses, payments of your customers) is collected and processed by your Shopify store, and you are the controller of its processing towards those consumers.

As a merchant, you are responsible for having your own privacy policy and for complying with the applicable regulations regarding your end customers.

10. Cookies and local storage

We use cookies and browser local storage for the operation of the service and, only if you accept it, for usage analytics. In particular:

We do not use third-party advertising cookies. You can manage or delete cookies from your browser settings, although disabling them may affect the operation of the service.

11. Security

We apply reasonable technical and organisational measures to protect your data, among them: access through authentication, use of tokens instead of credentials where possible, and separation of responsibilities (for example, card data is processed by Dodo Payments and is not stored in Sololander).

No system is completely secure, so we cannot guarantee absolute security. If we detect a security incident that affects you, we will act in accordance with the applicable regulations.

12. Minors

Sololander is a service aimed at people who operate a business and is not aimed at people under 18 years of age. We do not knowingly collect data from minors. If you believe a minor has provided us with data, contact us so we can delete it.

13. Changes to this policy

We may update this policy to reflect changes in the service, in our providers or in the applicable regulations. We will publish the updated version with a new "last updated" date. If the changes are significant, we will endeavour to notify you by a reasonable means.

14. Contact

For privacy queries or to exercise your rights, contact us:

15. Language of this document

This document exists in Spanish and in English. The Spanish version is the original and, in the event of any discrepancy between the two versions, the Spanish version prevails.