Kthehu te kreu

Privacy Policy

E përditësuar së fundmi: May 8, 2026

Stoki ("we", "us", "our") respects your privacy. This policy explains what data we collect, how we use it, and what rights you have over it.

1. Who we are

Stoki is a B2B platform that helps Albanian restaurants order supplies from various suppliers in one place.

  • Operator: Klaus Doçi
  • Address: Rruga Tom Plezha, Tirana, Albania
  • Contact email: support@stoki.io
  • Phone: +355 69 826 0091

2. What data we collect

When you create an account (restaurant or supplier):

  • First and last name
  • Email and phone number
  • Business name
  • NIPT (tax ID)
  • Business address

When you use Stoki:

  • Order history (products, quantities, prices, dates)
  • Suppliers and restaurants you work with
  • Messages you send to Stoki AI (to interpret your order)
  • Your activity in the app (pages viewed, buttons clicked)
  • IP address and device information

What we do NOT collect:

  • Banking or payment information (Stoki does not process payments)
  • Personal photos
  • Your precise real-time location
  • Data from other applications

3. How we use your data

Your data is used to:

  • Create and manage your account
  • Connect restaurants with suppliers
  • Process orders and notifications
  • Send order confirmation emails
  • Improve the service (analytics)
  • Protect your account from misuse
  • Comply with legal obligations

We do NOT sell your data to third parties. We do NOT use it for personalized advertising outside the platform.

4. Who has access to your data

Inside Stoki:

  • Only Klaus (founder) and authorized Stoki staff have access for technical support

Restaurants see:

  • Suppliers and their products
  • Their own order history
  • Their personalized prices

Suppliers see:

  • Restaurants that have ordered from them
  • Order details (including contact name and delivery address)

Third parties processing data on our behalf:

  • Supabase (database) — servers in Europe
  • Resend (email delivery)
  • Sentry (technical error monitoring)
  • OpenAI / GPT-5 (via Lovable — for the Stoki AI feature)
  • Lovable (platform hosting)
  • Apple App Store and Google Play Store (if you downloaded the app)

5. How long we keep your data

  • Your account: until you delete it or up to 3 years of inactivity
  • Order history: 5 years (legal requirement for taxes)
  • AI messages: 30 days after analysis
  • Identification data: as long as you are a customer + 5 years
  • Analytics data: maximum 2 years, anonymized

6. Your rights

Under Albanian law and international rules, you have the right to:

  • See the data we hold about you
  • Correct inaccurate data
  • Delete your account and related data
  • Export your data
  • Withdraw consent for processing
  • File a complaint with the Commissioner for the Right to Information and Protection of Personal Data (idp.al)

To exercise these rights, write to us at privacy@stoki.io. We respond within 30 days.

How to delete your account

To delete your account, email privacy@stoki.io with the subject "Account Deletion Request". We will delete your data within 30 days.

7. Security

We use technical and organizational measures to protect your data:

  • Encrypted connections (HTTPS) for every communication
  • Encrypted passwords (not stored in readable text)
  • Limited access to data (only authorized staff)
  • Regular database backups
  • 24/7 monitoring for suspicious behavior

No system is 100% secure. If a security incident occurs that affects your data, we will notify you within 72 hours as legally required.

8. Notifications and communications

You may receive from us:

  • Essential emails (order confirmation, status changes)
  • In-app notifications (new order, new message)

These are part of the service and cannot be disabled while you have an active account. You can change your preferences in Profile → Notifications.

Marketing and promotional communications: only with your explicit consent, and always with an opt-out option.

9. Children

Stoki is a B2B platform for businesses. It is not for users under 18. We do not knowingly collect data from children. If we learn we have collected data from a person under 18, we delete it immediately.

10. Policy changes

We may update this policy from time to time. When we change something material, we will notify you by email and with an in-app banner at least 30 days before the change takes effect.

11. Contact

For questions, requests, or complaints regarding privacy:

  • General email: support@stoki.io
  • Privacy & rights: privacy@stoki.io
  • Address: Rruga Tom Plezha, Tirana, Albania
  • Phone: +355 69 826 0091

Thank you for using Stoki.

Keni pyetje? Na shkruani në support@stoki.io

Terms of UseKthehu te kreu

Përmbajtja

  1. 1. Who we are
  2. 2. What data we collect
  3. 3. How we use your data
  4. 4. Who has access to your data
  5. 5. How long we keep your data
  6. 6. Your rights
  7. 7. Security
  8. 8. Notifications and communications
  9. 9. Children
  10. 10. Policy changes
  11. 11. Contact