Privacy Policy

This policy explains how Quorlyx collects, uses, and protects data for the website and plugin service.

Effective date: April 16, 2026
Last updated: April 16, 2026

1. Who We Are

Quorlyx provides WordPress plugin software and related services through this website.

2. Scope of This Policy

This Privacy Policy explains how personal data is processed when you:

  • visit this website
  • purchase Quorlyx products
  • contact support
  • subscribe to updates
  • use forms, chat, or interactive elements on this site

This policy applies to the Quorlyx website and business operations. If you use the Quorlyx plugin on your own WordPress site, you are the data controller for your visitors’ data and must provide your own compliant privacy notices.

3. Personal Data We Collect

3.1 Data You Provide

We only collect personal information when you provide it directly through chat, forms, or support requests on this site.

  • name
  • email address
  • billing information needed for orders and invoices
  • company details (if provided)
  • support requests, messages, and attachments
  • any information submitted through chat or forms

3.2 Order, Subscription, and License Data

When purchases are made via Paddle, we may receive:

  • order and transaction identifiers
  • product and plan details
  • subscription status (active, renewal, cancellation, refund)
  • license key status and activation metadata
  • basic customer identity and billing metadata required for fulfillment

We do not store full payment card numbers.

3.3 Technical and Usage Data

We may automatically collect anonymous behavior data for site analytics and product improvement. This data is stored under an anonymous profile and is not linked to identified personal details unless you submit information through chat or forms.

  • browser and device details
  • pages viewed and interaction events
  • referral and campaign parameters
  • cookie and similar technology identifiers
  • security and anti-abuse logs

4. Legal Bases Under GDPR

Where GDPR applies, we process personal data based on one or more of:

  • Contract performance: account creation, purchase fulfillment, licensing, and support
  • Legitimate interests: service reliability, abuse prevention, product improvement, and analytics
  • Consent: marketing communications and non-essential cookies where required
  • Legal obligation: accounting, tax, consumer law, and fraud-prevention compliance

5. Purposes of Processing

We process personal data to:

  • provide and maintain products/services
  • process purchases, renewals, refunds, and license operations
  • respond to support and account requests
  • send service-related communications
  • improve product quality, documentation, and customer experience
  • monitor performance, detect incidents, and prevent misuse
  • comply with legal and financial obligations

6. Payments via Paddle

Checkout and payment processing are provided by Paddle. During payments, Paddle may collect required billing, order, and transaction information directly. Quorlyx does not store full payment card numbers, and payment data is processed under Paddle's own privacy and legal terms.

Any data shared with Quorlyx from Paddle is used for order fulfillment, licensing, customer support, and compliance obligations only.

7. Cookies and Similar Technologies

This website may use:

  • strictly necessary cookies
  • analytics cookies
  • functional cookies
  • marketing/attribution technologies where consent is required

Where required by law, non-essential cookies are activated only after consent. Consent choices can be changed through available cookie controls and browser settings.

8. Data Sharing

Personal data may be shared with trusted processors that support operations, such as:

  • payment and licensing platforms
  • hosting and infrastructure providers
  • email and support providers
  • analytics and security services

Data is shared only where necessary and under appropriate contractual safeguards. Personal data is not sold.

9. International Transfers

If personal data is transferred outside the EEA/UK, appropriate safeguards are used, such as:

  • adequacy decisions where available
  • Standard Contractual Clauses (SCCs)
  • supplementary technical and organizational protections when required

10. Data Retention

Personal data is retained only as long as necessary for:

  • account, order, and license administration
  • support and dispute handling
  • security and anti-fraud controls
  • legal and accounting obligations

When retention is no longer required, data is deleted or anonymized where feasible.

11. Your GDPR Rights

You may have the right to:

  • access your personal data
  • rectify inaccurate data
  • erase data (“right to be forgotten”)
  • restrict processing
  • object to processing based on legitimate interests
  • data portability
  • withdraw consent at any time (without affecting prior lawful processing)
  • lodge a complaint with a supervisory authority

Requests are handled in accordance with applicable data protection law.

12. Security

Appropriate technical and organizational measures are applied to protect personal data, including access controls, monitoring, and incident response processes. No system can guarantee absolute security, but reasonable safeguards are continuously maintained.

13. Children

Services are not directed to children. Personal data from children is not knowingly collected.

14. Policy Updates

This policy may be updated from time to time. The latest version is always published on this page with an updated date.