Privacy Policy
Spiderweb mobile app (in.onechannel.spiderweb) · Last updated 10 August 2026
1. Who we are
Spiderweb is a work application used by beauty advisors and merchandisers in Flormar's retail stores in the United Arab Emirates. It is operated by Channelplay SaaS Private Limited (India), which is the controller of the information described in this policy. Flormar is our client and receives the audit results.
For any question or request about this policy, write to hello@1channel.co.
2. Who can use the app
Accounts are created and withdrawn by an administrator. There is no sign-up inside the app and the app cannot be used without an account issued to you. A login belongs to a store, and the advisors working in that store may share it.
3. What the app collects
- Account details, entered by the administrator who creates the account: name, work email address, work contact number (optional), role, and the store the account is assigned to.
- Audit records: the internal identifiers of the account, the store and the monthly audit; the answers given for each check (fixture counts, shelf sizes, whether an area is present); and the date and time each step was submitted.
- Photographs of store fixtures and displays, taken with the camera inside the app, or chosen by the advisor from the photo library on the device.
- Free-text remarks: the note an advisor types when flagging an automated reading as wrong.
That is the whole list. The app requests the camera permission, and — only when the advisor chooses to attach an existing photo instead of taking one — access to the photo picked from the device.
4. What the app does not collect
- Location or GPS data of any kind.
- Device identifiers, advertising identifiers or any other persistent identifier for your phone.
- Analytics, usage tracking or behavioural profiling.
- Crash reports or diagnostic telemetry.
- Contacts, calendar, microphone, call or message data, browsing history, or a list of your other apps.
- Payment or financial information.
The app contains no analytics SDK, no crash-reporting SDK, no advertising SDK and no attribution SDK. Nothing in it reports how you use your phone, to us or to anyone else.
5. About the photographs
Photographs are taken inside stores that are open for business, and show shelves, tables, screens and other fixtures. They are meant to show product displays, and advisors are instructed to frame the fixture — but store staff or customers who happen to be in the frame may appear incidentally.
Photographs are used only to check how products are displayed. They are never published, never sold, and never used for advertising. We do not run facial recognition or any other biometric processing on them, and we do not use them to identify anyone.
6. Why we use this information
To run the monthly retail-execution audit of Flormar's UAE stores: to record what each store looks like, to attribute each submission to the account that made it, to read display photographs automatically, and to report the results to Flormar. We process it to perform our contract with Flormar and for the legitimate business interest of both companies in auditing their own retail estate.
7. Who receives the information
We use these service providers, under written terms and only for the purposes above:
- Supabase — sign-in, the application database, and private storage for the photographs.
- Vercel — hosting of the API and the administration website at flormar.1channel.co.
- Amazon Web Services (Bedrock), running Anthropic's Claude model — automated reading of display photographs: planogram shelves, make-up beauty tables, nails fixtures and entrance screens.
- Google (Gemini) — one narrow task only: estimating the size of a nails fixture from a cropped shelf image.
Flormar, as our client, can see the audit results and the photographs through the administration website. We do not share this information with anyone else, and we do not sell it or pass it to data brokers or advertisers.
Photographs that are never sent to any AI service: the five visuals-area photographs (face, lips, eyes, nails and the cashier area), every Other Furniture photograph (tools, skincare, make-up), and entrance photographs where the advisor declares a lightbox rather than a screen. Those images are stored and looked at by authorised people only — they are never sent to Amazon Web Services, to Google, or to any other automated reading service.
8. Where the information is stored
Our database, image storage, API hosting and the automated reading services listed above run in provider data-centre regions outside the United Arab Emirates. Information covered by this policy is therefore transferred to and stored in other countries. Each provider is contractually bound to protect it and to process it only on our instructions.
9. How long we keep it
Photographs of store displays are kept for 36 months from the month they were taken, so that a store can be compared against the same month in previous years, and are then deleted.
Account details and audit records — the answers, scores and deviations, without the photographs — are kept for the term of our contract with Flormar plus 12 months, after which they are deleted. We keep anything the law obliges us to keep for as long as it obliges us.
You can ask for an account to be closed sooner — see account deletion.
10. How we protect it
- Photographs are held in private storage that is not publicly readable, and are served only through short-lived signed links to a signed-in account that is authorised for that store.
- The app talks to the API over HTTPS using a signed-in session token, which is held in the app's own storage on the device.
- Administration access is limited to named Channelplay and Flormar accounts, and what each account can see depends on its role.
- An account that is deactivated by an administrator stops working immediately, on every device.
11. Cookies
The administration website sets one strictly necessary cookie to keep an administrator signed in. There are no analytics, advertising or tracking cookies anywhere in the service, and this page and the account deletion page set no cookies at all.
12. Your rights
You can ask us what we hold about you, ask us to correct it, or ask us to close an account and erase its details. Because accounts are issued by an administrator and the app has no self-service sign-up, these requests are handled by email rather than in the app: write to hello@1channel.co, or speak to the administrator who issued your login. The account deletion page explains exactly what a deletion request removes and what it leaves behind.
13. Children
This is a workplace application for people employed in or servicing Flormar's stores. It is not directed at children and must not be used by anyone under 18.
14. Changes to this policy
If we change this policy we will update the date at the top of this page. Material changes are communicated to the administrators who manage the store accounts.
15. Contact
Channelplay SaaS Private Limited — hello@1channel.co
Powered by Channelplay SaaS Private Limited
© Channelplay SaaS Private Limited 2026