Privacy Policy
Last updated: 28 March 2026
1. Introduction
OEM Radio Codes(“we,” “us,” or “our”) respects your privacy and is committed to protecting the personal data you share with us when using localhost:3000(the “Website”). This Privacy Policy explains what data we collect, how we use it, and what rights you have.
2. Data We Collect
We collect the following categories of personal data:
- Account information: name, email address, hashed password (if you create an account).
- Order information: vehicle serial number, VIN, radio model, service type selected, and email address for delivery.
- Payment information: processed securely by our third-party payment provider (Stripe). We do not store your full card number or CVV.
- Technical data: IP address, browser type, device type, operating system, referral source, pages visited, and session duration — collected automatically via cookies and server logs.
- Communication data: messages you send through our contact form, email, or WhatsApp.
3. How We Use Your Data
We use your personal data to:
- Process and fulfil your orders.
- Deliver digital products (codes, files, reports) to your email.
- Communicate with you about your order status, delivery, or support requests.
- Prevent fraud, abuse, and unauthorized transactions.
- Improve our Website, services, and user experience through analytics.
- Comply with legal obligations and enforce our Terms of Service.
4. Legal Basis for Processing
We process your data under the following legal bases:
- Contract performance: processing necessary to fulfil your order.
- Legitimate interest: fraud prevention, service improvement, and analytics.
- Legal obligation: compliance with applicable laws and regulations.
- Consent: where you have given explicit consent (e.g., marketing emails).
7. Data Retention
We retain your personal data only as long as necessary to fulfil the purposes described in this policy, comply with legal obligations, and resolve disputes. Order data is retained for a minimum of 3 years for tax and audit purposes.
You may request deletion of your account and associated data at any time by contacting our support team.
8. Data Security
We implement industry-standard security measures to protect your data:
- 256-bit SSL/TLS encryption for all data in transit.
- Passwords are hashed using bcrypt with a strong work factor.
- Access to personal data is restricted to authorized personnel only.
- Regular security audits and vulnerability assessments.
No system is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
9. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate or incomplete data.
- Request deletion of your data.
- Restrict or object to the processing of your data.
- Data portability (receive your data in a structured format).
- Withdraw consent at any time (where processing is based on consent).
To exercise any of these rights, contact us through our Contact page.
10. Children's Privacy
Our services are not directed at individuals under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us immediately so we can delete it.
11. Changes to This Policy
We may update this Privacy Policy from time to time. The “Last updated” date at the top reflects the most recent revision. We encourage you to review this page periodically.
12. Contact
For privacy-related inquiries, please reach out through our Contact page or via WhatsApp.