BlueFinch Privacy Policy

Last updated: 1st April 2025

1. Introduction

At BlueFinch Commerce Limited (”BlueFinch,” “we,” or “us”), we are committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when using our website, software, or services.

2. What Information We Collect

We may collect the following types of information:

  • Personal Information: Name, email address, company details (if applicable).

  • Feedback and Communications: Information you provide through surveys, forms, or direct communications.

  • Usage Data: Automatically collected data when you interact with our software or website, including IP address, browser details, device information, and cookies.

  • GitHub Repository Data (when using BlueFinch Patch): See Section 9.

3. Legal Basis for Processing (UK GDPR & EU GDPR)

We process personal data based on:

  • Your consent (e.g., when subscribing to emails).

  • Contractual necessity (e.g., providing our services).

  • Legal obligations (e.g., fraud prevention).

  • Legitimate interests (e.g., improving security and functionality).

4. How We Use Your Information

We use personal data to:

  • Deliver and improve our products and services.

  • Respond to inquiries and provide support.

  • Enhance user experience.

  • Evaluate feedback to improve our services.

5. Data Retention

We store your personal data only as long as necessary for our purposes, after which we securely delete or anonymise it.

6. Data Sharing & Third-Party Services

We do not sell personal data. We may share data:

  • With service providers for hosting, analytics, or customer support.

  • To comply with legal obligations or protect our rights.

  • For international transfers, we implement safeguards such as Standard Contractual Clauses (SCCs).

7. Cookies & Tracking Technologies

We use cookies to enhance your experience. You can manage preferences through browser settings.

8. Your Data Rights (GDPR & CCPA)

Under GDPR (EU/UK) and CCPA (California law), you can:

  • Access: Request details on data we hold.

  • Correct: Request corrections to inaccurate data.

  • Delete: Request deletion of personal data.

  • Opt-Out (CCPA): California users can opt out of data sharing (we do not sell data).

  • Data Portability: Request a copy of your personal data.

To exercise these rights, contact us at hello@bluefinchcommerce.com.

9. GitHub Integration & Repository Access

BlueFinch Patch enables users to connect their GitHub repositories via the official GitHub application. When you authorise this integration, we request access to your repositories for the following purposes:

  • Analysing code compatibility with security patches and updates.

  • Identifying potential issues related to Magento and Adobe Commerce upgrades.

  • Generating reports on compatibility risks and potential fixes.

  • Creating branches and raising Pull Requests to support automated patching workflows.

We do not modify or delete existing content in your repositories outside the scope of the Pull Requests we create. We do not store your source code, except where temporarily required to generate compatibility reports. These reports are stored securely and are accessible only to you.

You may revoke BlueFinch Patch’s access to your GitHub repositories at any time via your GitHub account settings.

10. Security & Confidentiality

Limited access: Our GitHub integration requires permission to read repository data and to create branches and raise Pull Requests. We do not make any other changes to your codebase, and our write access is used solely to support patching workflows.

  • No persistent code storage: We do not store or share your source code beyond what is required to generate compatibility reports. Any temporary data processed is encrypted and securely stored.

  • Access controls: Only authorised personnel have access to repository-related data, and only when required for support, debugging, or report generation.

  • Encryption & Secure Storage: All processed data is encrypted in transit and at rest using industry best practices.

You may revoke BlueFinch Patch’s access to your GitHub repositories at any time via your GitHub account settings.

11. Policy Updates

We may update this Privacy Policy periodically. The latest version will be posted on our website.

12. Contact Information

For privacy-related inquiries, contact us at:

Email: hello@bluefinchcommerce.com

Address: 20 Middle Street, Brighton, BN1 1AL

If you are in the UK or EU, you can also lodge a complaint with your local Data Protection Authority.

By signing up, you agree to our Privacy Policy.

© BlueFinch 2025

Privacy Policy