Last updated September 17, 2026
Dell's Software ("we," "us") builds Tindahan POS. This notice explains what personal information we collect through this website and the Dell's Software apps — Tindahan POS, Accounting and Inventory, on the web and on phones — why, and what choices you have. It's written to reflect what the product actually does today, not a generic template — if something here doesn't match your experience of the product, please tell us.
Depending on how you use the website and the apps, we collect:
The app records the e-load, cash-in and cash-out transactions you handle, but it does not connect to any payment or e-load provider, so no transaction details are sent to one.
We do not sell your information, and we do not use advertising trackers.
On the public pages of this website only — the home page, pricing, this notice and the terms — we use two measurement tools from Vercel, who host the site: Web Analytics, which counts page views, and Speed Insights, which measures how quickly pages load. They record the page (without anything after a "?" or "#" in its address), the referring site, and the visitor's country, browser and device type. Nothing is measured once you are signed in, and nothing is measured inside the app.
The app itself sets no cookies. It does keep some things on the device you use it on:
Every store's data is isolated from every other store's, enforced by the database itself rather than only by the app, and within a store what each person can see depends on their role.
These companies process data on our behalf:
These providers operate outside the Philippines, so your data is transferred and processed abroad, mainly in Japan.
Passwords and PINs are stored only as secure hashes, and PIN hashes are never sent to the app. Repeated wrong PINs lock the PIN for a while. Every store's rows are fenced off in the database, so a request from one store cannot read another's even if the app is bypassed. Sensitive actions — voiding a sale, changing prices or stock, deleting a customer — are written to an activity log that cannot be edited or deleted. Sign-ins kept on phones are encrypted.
No system is perfect. If personal data is exposed in a way that puts you at real risk, we will tell you and the National Privacy Commission within 72 hours of knowing, as the Data Privacy Act requires, and say what happened and what we are doing about it.
As a data subject under the Data Privacy Act of 2012 (Republic Act No. 10173), you have the right to:
To exercise any of these, contact us at the email below. We haven't yet formally confirmed whether NPC registration applies to us at our current size — we intend to comply with whatever the law requires as the business grows.
Questions about this notice or your data can go to dobluis.lyndell@gmail.com. This is a temporary contact address while we finish setting up a dedicated domain.
This notice is a work in progress as the product grows, and hasn't yet been reviewed by legal counsel — treat it as a good-faith description of current practice rather than a final legal document.