Privacy Policy
Last updated: July 26, 2026
At Elox Digital, we are committed to protecting the privacy, security, and confidentiality of our users' personal and operational data across all our platforms, software, web systems, and mobile applications, including the Pharmacy POS (PDV de Farmácia) App and related ecosystem solutions.
This General Privacy Policy governs how Elox Digital collects, uses, stores, shares, and safeguards data obtained through our official website (elox.digital), mobile applications available in app stores (Google Play Store, Apple App Store), desktop software, and SaaS platforms.
Our operational practices strictly comply with the General Data Protection Regulation (GDPR - EU 2016/679) and the Brazilian General Data Protection Law (LGPD - Law No. 13,709/2018).
1. Scope and Application
This policy applies to all users, clients, administrators, and end-users of systems developed or maintained by Elox Digital, including:
- The Elox Digital Website and integrated digital services;
- The Pharmacy POS (PDV de Farmácia) Mobile & Desktop Application;
- Commercial management, inventory, sales, and point-of-sale applications developed under the Elox Digital ecosystem;
- Custom software solutions, APIs, and client portals.
2. Information and Data We Collect
Depending on the product or service accessed, we may process different categories of data:
2.1 Personal & Billing Data
- Identity Information: Full name, company name (CNPJ/NIF/Tax ID), contact person details, and job title;
- Contact Information: Email address, phone number, and WhatsApp contact details;
- Billing Details: Billing address, postal code, tax registration details, and transaction history.
2.2 Operational Data (Pharmacy POS & Management Systems)
- Point-of-Sale Transactions: Sales records, product catalog info, stock movements, cashier session logs, and receipt issuance metadata processed through the Pharmacy POS application;
- Business Configuration: Establishment settings, tax parameters necessary for fiscal document generation, and store preferences.
2.3 Mobile & Device Permissions
Applications developed by Elox Digital (including the Pharmacy POS app) may request specific device permissions strictly required to execute core functionalities:
- Camera Access: Used exclusively for real-time barcode (EAN/GTIN) and QR code scanning for product lookup, inventory checks, or bill identification. Camera feeds are processed locally on the device and are never recorded, streamed, or stored externally;
- Local Storage & Database Access: Used to store local offline caches and SQLite databases, ensuring continuous point-of-sale operation even during network interruptions;
- Network & Internet Access: Required to establish encrypted HTTPS/TLS communication with central servers for license validation, data synchronization, and fiscal processing.
2.4 Technical Data & Telemetry
- Device Identifiers: Unique device ID (UUID) and hardware hardware hashes used solely for software license binding and unauthorized usage prevention;
- System Information: Operating system version, app build version, IP address, connection telemetry, and anonymized crash logs to ensure platform stability.
3. How We Use Your Information
Data processing is based on lawful grounds (contract performance, legal obligation, and legitimate interest) for the following purposes:
- System Operation: Enabling point-of-sale transactions, product management, license activation, and cloud data synchronization;
- Customer Support: Diagnosing technical issues, resolving tickets, and providing assistance;
- Fiscal & Legal Compliance: Issuing tax documents, maintaining required transaction records under commercial laws, and complying with statutory retention periods;
- Security & Abuse Prevention: Fraud detection, enforcing license agreements, and maintaining system integrity.
4. Data Sharing and Third Parties
We do not sell, rent, or trade your personal or operational data under any circumstances. Data is shared only with trusted service providers under strict confidentiality agreements for essential operational needs:
- Cloud Infrastructure: Certified cloud hosting and storage providers (such as AWS, Cloudflare) with high-level encryption standards;
- Payment Processors: Payment gateways when completing transactions;
- Government & Regulatory Bodies: When legally mandated for fiscal reporting or in response to official legal requests.
5. Data Retention & Security
All data transmitted between mobile/desktop applications and our servers is encrypted using industry-standard SSL/TLS (HTTPS) protocols. Local app storage employs device-level security controls.
Data is retained only as long as necessary to provide our services and satisfy legal, accounting, and regulatory obligations (typically up to 10 years for accounting records). Obsolete data is securely erased or permanently anonymized.
6. User Rights and Data Deletion Requests
Under GDPR and LGPD, users and account holders hold full rights regarding their personal information, including:
- Right to confirm data processing and request access to personal data;
- Right to rectify inaccurate or outdated information;
- Right to request account deletion or data anonymization (subject to legal retention requirements);
- Right to revoke consent at any time.
Account / Data Deletion Requests: To request the complete deletion of your account, app profile, or associated personal data, please send an email to contact@elox.digital with the subject line "Data Deletion Request". Our team will verify your request and process it within statutory deadlines.
7. Contact and Data Protection Officer (DPO)
If you have questions, concerns, or requests regarding this Privacy Policy, please contact our privacy team:
Email: contact@elox.digital
Website: https://elox.digital
← Back to Home