Privacy Policy

Last updated: October 10, 2026

This Privacy Policy explains how Frontline Digital ("we", "us") collects, uses, shares and protects information in connection with Counterline (the "Service"). It applies to business owners who hold accounts, their staff, visitors to our website, and the end customers whose details businesses record in the Service. Use of the Service is also subject to our Terms of Use and works alongside the Frontline Digital Privacy Policy.

  1. 1. Our role

    For account, billing and website information, we decide how information is used ("controller" or "business").

    For order information that a business records about its own customers ("Customer Data"), the business is responsible for that information and we process it on the business's behalf and instructions ("processor" or "service provider"). If you are a customer of a shop that uses Counterline, please contact that shop about your information; we will help the shop respond where required.

  2. 2. Information we collect

    • Account information: owner name or business name, email address, password (stored in hashed form), phone number, timezone, shop code and logo.
    • Shop password: stored only as a one-way hash; we cannot see it.
    • Customer Data entered by businesses: end-customer first and last name, phone number, pickup date and time, items ordered, notes and special instructions, and order status.
    • Catalog data: categories, items, units, prices and approval settings.
    • Billing information: subscription status and dates. Payment card details are collected and processed by our payment provider; we do not store full card numbers.
    • Device and usage information: IP address, browser and device type, pages viewed, referring pages, timestamps, approximate location derived from IP, performance and error logs.
    • Communications: messages you send us, such as support requests.
  3. 3. How we use information

    • to provide, operate and maintain the Service, including authenticating owners and unlocking staff devices;
    • to process subscriptions, trials, renewals and payments;
    • to secure the Service, prevent fraud and abuse, and enforce our Terms;
    • to monitor uptime, fix errors and improve features;
    • to send service, security, billing and legal notices;
    • to comply with law, respond to legal requests and protect our rights.
  4. 4. What we do not do

    We do not sell personal information, and we do not share it for cross-context behavioral advertising. We do not use Customer Data to market to a business's customers, and we do not contact those customers.

  5. 5. How we share information

    We share information only as follows:

    • Service providers who help us run the Service — such as cloud hosting, database and authentication, payment processing (Stripe), email delivery, and website monitoring and analytics — under obligations to protect it and use it only for our services;
    • Within your business: information you enter is visible to your owner account and to devices unlocked with your shop password;
    • Legal and safety: when we believe in good faith it is required by law or legal process, or needed to protect the rights, property or safety of us, our users or others;
    • Business transfers: in a merger, acquisition, financing or sale of assets, subject to this Policy;
    • With your permission or at your direction.
  6. 6. Retention

    We keep account and Customer Data for as long as your account is active and as needed to provide the Service. When an account is deleted, we delete or anonymize its data within a reasonable period, except where we must keep information for legal, tax, accounting, security or dispute-resolution purposes. Backups and logs may persist for a limited time before being overwritten.

  7. 7. Security

    We use reasonable safeguards designed to protect information, including encrypted connections (HTTPS), hashed passwords, signed device sessions and access controls that separate each business's data. No system is perfectly secure, and we cannot guarantee absolute security. Businesses are responsible for securing their devices and passwords. If we learn of a security incident affecting your personal information, we will notify you as required by law.

  8. 8. Your choices and rights

    You can opt out of promotional emails using the unsubscribe link or by contacting us; transactional, security and billing notices cannot be opted out of while your account is active. Owners can view and update account details in Settings and can request account deletion by contacting us. Depending on where you live, you may have the right to:

    • know or access the personal information we hold about you;
    • correct inaccurate information;
    • delete your information;
    • receive a portable copy;
    • object to or restrict certain processing;
    • opt out of sale or sharing (we do not sell or share);
    • not be discriminated against for exercising your rights.

    To make a request, email frontlinedigitalsd@gmail.com. We may need to verify your identity, and you may use an authorized agent where the law allows. If your request concerns Customer Data held by a shop, we will direct it to that shop. If we deny a request, you may appeal by replying to our decision.

  9. 9. California residents

    Under the California Consumer Privacy Act as amended (CCPA/CPRA), in the past 12 months we collected identifiers, commercial information, internet activity information and approximate geolocation, from the sources and for the purposes described above. We disclose these categories to service providers for business purposes. We do not sell or share personal information, and we do not knowingly sell or share the information of anyone under 16. We do not use sensitive personal information to infer characteristics.

  10. 10. Visitors outside the United States

    The Service is operated in the United States and information is stored and processed there. If you are in the European Economic Area, United Kingdom or elsewhere, our legal bases for processing are performing our contract with you, our legitimate interests in running and securing the Service, compliance with legal obligations, and your consent where required. Where required, we use appropriate safeguards for international transfers. You may lodge a complaint with your local data protection authority.

  11. 11. Children

    The Service is for businesses and is intended solely for businesses and adults, and is not directed to anyone under 18. We do not knowingly collect children's personal information. If you believe a child has provided us information, contact us and we will delete it.

  12. 12. Cookies and similar technologies

    We use browser storage and similar technologies as described in our Cookie Policy.

  13. 13. Do Not Track and Global Privacy Control

    Because we do not sell or share personal information for targeted advertising, there is nothing additional to opt out of. We honor Global Privacy Control signals as an opt-out request where the law requires.

  14. 14. Changes to this Policy

    We may update this Policy. We will post the new version with a new "Last updated" date and give notice of material changes by email or in the Service.

  15. 15. Contact

    Frontline Digital, frontlinedigitalsd@gmail.com, frontlinedigitalsd.com.