Privacy Policy
Last updated: 10 July 2026
1. Data Controller
HOGOIN SARL, a limited liability company under Beninese law that publishes the GOROGOO platform, with its registered office in Awakè, Godomey, Abomey-Calavi, Republic of Benin (RCCM RB/ABC/26 B 11921), is the controller of your personal data.
DPO contact: privacy@gorogoo.com
2. Legal Basis
The processing of your data is based on:
- Performance of the contract: processing your orders, managing your account, executing payments
- Your consent: push notifications, marketing emails, analytics cookies — timestamped and revocable at any time
- Legal obligation: KYC/AML, accounting and tax obligations
- Legitimate interest: platform security, fraud detection, service improvement
Regulatory basis: Law No. 2017-20 of 20 April 2018 establishing the Digital Code in the Republic of Benin (Title V: Personal Data Protection) and applicable OHADA Uniform Acts.
3. Personal Data Collected
| Category | Data | Purpose | Retention |
|---|---|---|---|
| Identification | Last name, first name, display name | Account creation and management | Account lifetime + 30 days |
| Email address + verification status + verification date | Login, transactional notifications, account recovery | Account lifetime + 30 days | |
| Phone | Phone number + verification status | SMS verification (Twilio), 2FA security | Account lifetime + 30 days |
| Profile photo | Avatar and cover image (Cloudinary URL) | Public profile display | Deleted upon account closure |
| Biography | Free-form introduction text | Seller profile visible to buyers | Deleted upon account closure |
| Location | Country, time zone, preferred language | Experience personalization, currencies, notifications | Account lifetime |
We collect your delivery addresses (street, city, region, postal code, country, contact phone, recipient name) to process and ship your orders. You can add multiple addresses and set a default address. Your addresses are shared with sellers and carriers only for the relevant orders.
Transactions and wallet| Category | Data | Purpose | Retention |
|---|---|---|---|
| Orders | Reference, items, amounts, status, dates | Processing, tracking, after-sales, accounting | 10 years |
| Payments | Method used, gateway reference, amount, status (never card data) | Accounting, refunds, disputes | 10 years |
| Wallet | Available balance, escrow balance, transactions, withdrawals | Seller financial management | 10 years |
| Withdrawal accounts | Mobile Money number, IBAN, or PayPal email provided during a withdrawal | Withdrawal execution | Account lifetime |
| Category | Data | Purpose | Retention |
|---|---|---|---|
| Sessions | Device, browser, operating system, IP, login date/time | Account security, intrusion detection | 1 year |
| Password | bcrypt hash only (never the password in plain text) | Authentication | Account lifetime |
| MFA | Encrypted TOTP secret (if 2FA enabled) | Two-factor authentication | Until disabled |
| Tokens | Password reset and email verification tokens (SHA-256 hashed, quickly expired) | Account recovery and verification | 1 hour maximum |
| Activity | Number of logins, failed attempts, lockout date | Protection against brute force attacks | 1 year |
| Last login IP | IP address of the last successful login | Detection of unusual access | 30 days |
For sellers, we collect as part of the KYC process:
- Official ID document (national card, passport, or license): number, validity dates, issuing country
- Verification selfie or biometric data (via accredited partner)
- Proof of address (for withdrawals over $500)
- For businesses (KYB): incorporation documents, IFU/RCCM, identity of ultimate beneficial owners (UBO)
This data is stored in encrypted form. It is processed in accordance with Law No. 2018-17 on the fight against money laundering (AML-CFT) and FATF recommendations. Retention period: 5 years after account closure, in accordance with AML obligations.
Specialized profilesDepending on your account type, additional data may be collected:
- Courier: vehicle type, delivery zones, availability, customer ratings
- Content creator: creator profile, content statistics, social links
- Artisan: specialty, portfolio, certifications, rates
- Ambassador: referral links, conversion statistics, reward tiers
- Affiliate: referral codes, commissions generated, conversion history
We collect push notification tokens (via the Web Push API) if you enable notifications in your browser. These tokens allow us to send real-time alerts (new orders, deliveries, messages). They are specific to your browser and can be revoked from your account settings or browser settings.
4. Purposes of Processing
- Account management: registration, login, settings, deletion
- Order processing: payment, shipping, tracking, delivery, refund
- Security: email and phone verification, MFA, suspicious login detection, account lockout after failed attempts
- Identity verification (KYC/KYB): anti-money laundering compliance, seller verification, withdrawal unlocking
- Transactional communications: order confirmations, shipments, deliveries, security alerts — via email (Resend) and SMS (Twilio)
- Customer support: support tickets, messaging, dispute resolution
- AI features: product description generation, price suggestions, translation, sales forecasts (anonymized product data transmitted to Anthropic)
- Developer API: API key authentication, usage logs, webhooks
- Fraud prevention: behavioral analysis, anomaly detection, reporting to authorities where required by law
- Legal compliance: accounting, tax obligations, response to court orders
We do not sell your data to third parties. Personalized advertising via Google AdSense is only enabled with your explicit consent (cookie banner) and remains revocable at any time; without consent, only non-personalized ads may be served (see the Cookies section).
5. Data Sharing
| Category | Data | Purpose | Retention |
|---|---|---|---|
| Sellers / buyers | Name, delivery address, contact for the relevant order | Transaction execution | Legal transaction period |
| Carriers | Order reference, delivery address, recipient phone | Physical delivery | Duration of delivery |
| Payment provider | Data strictly necessary for processing (FedaPay: bank card, MTN Mobile Money, Moov Money) | Payment and refund | Per provider |
| Vercel | Server logs, requests | Application hosting | 30 days |
| Supabase | All database data | Primary storage | Duration of the contract |
| Upstash Redis | Sessions, temporary cache | Performance and sessions | Until expiry |
| Cloudinary | Profile photos, product photos | Media storage and optimization | Until explicit deletion |
| Resend | Email, name (for emails) | Transactional emails | 90 days (logs) |
| Twilio | Phone number | SMS verification, 2FA | 90 days (logs) |
| Anthropic | Anonymized product data (name, category, statistics) | AI features | Not retained (instant processing) |
| Sentry | Anonymized technical error logs | Monitoring and debugging | 90 days |
All these providers are contractually required to protect your data and use it only for the specified purposes.
6. International Transfers
Several of our technical providers (Vercel, Supabase, Upstash, Anthropic, Cloudinary, Resend, Twilio) are based in the United States. These transfers are governed by contractual safeguards (Standard Contractual Clauses — SCC) compliant with international data protection standards.
For users residing in Benin, we apply the provisions of Title V of the Beninese Digital Code concerning cross-border transfers of personal data.
7. Cookies and Trackers
| Category | Data | Purpose | Retention |
|---|---|---|---|
| Essential cookies | Session token, cart, language/currency preferences | Platform operation (cannot be refused) | Session to 30 days |
| Security cookies | CSRF token, NextAuth token | Protection against cross-site attacks | Session |
| Analytics cookies | Pages visited, duration, device (anonymized) | Service improvement — refusable | 13 months |
| Advertising cookies | Google AdSense identifier | Contextual ads — refusable | 13 months |
Refusing analytics and advertising cookies does not affect the operation of the platform. You can manage your preferences through your browser settings.
Google advertising (AdSense): third parties, including Google, use cookies to serve ads based on your previous visits to GOROGOO and other sites. We apply Google's Consent Mode : by default, advertising cookies are refused and are only activated after your explicit consent. You can disable personalized advertising at any time via the Google Ads Settings and view Google's partners at policies.google.com/technologies/partner-sites. See also our cookie policy.
8. Data Security
- Encryption in transit: TLS 1.3 on all connections
- Encryption at rest: AES-256 (Supabase)
- Passwords: hashed with bcrypt (cost factor 12) — never stored in plain text
- Verification secrets: SHA-256 hashed with short expiry (10 minutes to 1 hour)
- MFA: TOTP two-factor authentication available for all accounts
- Brute force protection: automatic lockout after failed attempts, email alerts
- Multi-device sessions: visible and revocable from the Security page of your account
- Internal access: restricted to authorized personnel via role-based access control (RBAC)
- Audit: all administrative actions are recorded in audit logs
- API keys: stored as a hash — the secret value is shown only once at creation
In the event of a data breach posing a risk to your rights, you will be notified within 72 hours in accordance with the requirements of the Beninese Digital Code.
9. Retention Period
| Category | Data | Purpose | Retention |
|---|---|---|---|
| Account data | Profile, settings, preferences | Account management | Account lifetime + 30 days |
| Transaction data | Orders, payments, wallet | Accounting and legal obligation | 10 years |
| KYC/KYB data | ID documents, selfies, supporting documents | AML-CFT obligation (AML) | 5 years after closure |
| Security logs | Sessions, logins, failed attempts | Security and audit | 1 year |
| Delivery addresses | Saved addresses | Future orders | Account lifetime |
| AI data | Requests sent to Anthropic | Instant processing | Not retained |
| Verification tokens | Password reset, email verification | Security | 1 hour maximum |
| Error logs | Sentry — anonymized | Debugging | 90 days |
| Push tokens | Notification subscriptions | Real-time notifications | Until revoked |
10. Your Rights
In accordance with the Beninese Digital Code, you have the following rights:
Right of access
Obtain a readable copy of all your personal data held by GOROGOO
Settings → Privacy → Download my data
Right of rectification
Correct inaccurate or incomplete data
Settings → Profile → Edit
Right to erasure
Delete your account and data (subject to legal retention obligations)
Settings → Account → Delete my account, or email privacy@gorogoo.com
Right to portability
Receive your data in a structured, machine-readable format (JSON)
Settings → Privacy → Export my data
Right to object
Object to processing based on legitimate interest (e.g. marketing communications)
Settings → Notifications → Manage preferences
Right to withdraw consent
Revoke a given consent (analytics cookies, push notifications) at any time
Settings → Privacy
Right to restriction
Request suspension of the processing of your data during a verification
Email privacy@gorogoo.com
Requests are processed within 30 days. For complex requests, this period may be extended to 3 months with prior notice. For erasure requests, data subject to a legal retention obligation (transactions, KYC) cannot be deleted before the expiry of its legal retention period.
11. Minors
The GOROGOO platform is reserved for adults (18 years and older). We do not knowingly collect personal data concerning minors. If you notice that a minor has created an account, contact us immediately at privacy@gorogoo.com for deletion of the account and data within 72 hours.
12. Changes to the Policy
We may update this policy at any time. The last updated date is displayed at the top of the document. For any substantial change affecting your rights or our processing practices, you will be notified by email 15 days before it takes effect. Continued use of the platform after this period constitutes acceptance of the new terms.
13. Contact and Complaints
For any questions regarding your personal data: privacy@gorogoo.com
You may also file a complaint with the national authority competent for personal data protection in the Republic of Benin, or with the competent authority in your country of residence.
This policy is established in accordance with Law No. 2017-20 of 20 April 2018 establishing the Digital Code of the Republic of Benin and the OHADA Uniform Acts. See also our Terms of Use, Payment Terms and Legal Notice.