Privacy Policy
E përditësuar së fundmi: May 8, 2026
Stoki ("we", "us", "our") respects your privacy. This policy explains what data we collect, how we use it, and what rights you have over it.
1. Who we are
Stoki is a B2B platform that helps Albanian restaurants order supplies from various suppliers in one place.
- Operator: Klaus Doçi
- Address: Rruga Tom Plezha, Tirana, Albania
- Contact email: support@stoki.io
- Phone: +355 69 826 0091
2. What data we collect
When you create an account (restaurant or supplier):
- First and last name
- Email and phone number
- Business name
- NIPT (tax ID)
- Business address
When you use Stoki:
- Order history (products, quantities, prices, dates)
- Suppliers and restaurants you work with
- Messages you send to Stoki AI (to interpret your order)
- Your activity in the app (pages viewed, buttons clicked)
- IP address and device information
What we do NOT collect:
- Banking or payment information (Stoki does not process payments)
- Personal photos
- Your precise real-time location
- Data from other applications
3. How we use your data
Your data is used to:
- Create and manage your account
- Connect restaurants with suppliers
- Process orders and notifications
- Send order confirmation emails
- Improve the service (analytics)
- Protect your account from misuse
- Comply with legal obligations
We do NOT sell your data to third parties. We do NOT use it for personalized advertising outside the platform.
4. Who has access to your data
Inside Stoki:
- Only Klaus (founder) and authorized Stoki staff have access for technical support
Restaurants see:
- Suppliers and their products
- Their own order history
- Their personalized prices
Suppliers see:
- Restaurants that have ordered from them
- Order details (including contact name and delivery address)
Third parties processing data on our behalf:
- Supabase (database) — servers in Europe
- Resend (email delivery)
- Sentry (technical error monitoring)
- OpenAI / GPT-5 (via Lovable — for the Stoki AI feature)
- Lovable (platform hosting)
- Apple App Store and Google Play Store (if you downloaded the app)
5. How long we keep your data
- Your account: until you delete it or up to 3 years of inactivity
- Order history: 5 years (legal requirement for taxes)
- AI messages: 30 days after analysis
- Identification data: as long as you are a customer + 5 years
- Analytics data: maximum 2 years, anonymized
6. Your rights
Under Albanian law and international rules, you have the right to:
- See the data we hold about you
- Correct inaccurate data
- Delete your account and related data
- Export your data
- Withdraw consent for processing
- File a complaint with the Commissioner for the Right to Information and Protection of Personal Data (idp.al)
To exercise these rights, write to us at privacy@stoki.io. We respond within 30 days.
How to delete your account
To delete your account, email privacy@stoki.io with the subject "Account Deletion Request". We will delete your data within 30 days.
7. Security
We use technical and organizational measures to protect your data:
- Encrypted connections (HTTPS) for every communication
- Encrypted passwords (not stored in readable text)
- Limited access to data (only authorized staff)
- Regular database backups
- 24/7 monitoring for suspicious behavior
No system is 100% secure. If a security incident occurs that affects your data, we will notify you within 72 hours as legally required.
8. Notifications and communications
You may receive from us:
- Essential emails (order confirmation, status changes)
- In-app notifications (new order, new message)
These are part of the service and cannot be disabled while you have an active account. You can change your preferences in Profile → Notifications.
Marketing and promotional communications: only with your explicit consent, and always with an opt-out option.
9. Children
Stoki is a B2B platform for businesses. It is not for users under 18. We do not knowingly collect data from children. If we learn we have collected data from a person under 18, we delete it immediately.
10. Policy changes
We may update this policy from time to time. When we change something material, we will notify you by email and with an in-app banner at least 30 days before the change takes effect.
11. Contact
For questions, requests, or complaints regarding privacy:
- General email: support@stoki.io
- Privacy & rights: privacy@stoki.io
- Address: Rruga Tom Plezha, Tirana, Albania
- Phone: +355 69 826 0091
Thank you for using Stoki.