1. Introduction
JDS Delivery ("JDS Delivery," "we," "our," or "us") provides ordering, delivery, merchant, rider, customer support, and administrative tools through our website and mobile applications. This Privacy Policy explains what information we collect, how we use it, when we share it, and the choices available to you.
This policy applies to customer, rider, vendor, and administrator accounts that use JDS Delivery. The public Privacy Policy URL for App Store submission is https://www.jds-delivery.com/privacy.html.
2. Information We Collect
The information we collect depends on your role, the features you use, and the permissions you grant. It may include:
- Account information such as name, email address, phone number, account role, login method, user ID, account identifiers, and account status.
- Authentication information processed through email/password login, Firebase Authentication, Google Sign-In, Sign in with Apple, and related authentication services.
- Saved delivery addresses, pickup contact names, pickup or delivery phone numbers, address labels, and precise delivery or pickup coordinates.
- Location information used for customer address selection, service-area availability, delivery fee estimates, rider navigation, rider assignment, and active delivery tracking.
- Order and purchase history, including merchant, items, quantities, prices, delivery fees, service fees, tips, vouchers, order status, scheduled order details, delivery mode, receipts, and related accounting records.
- Payment method labels, such as cash on delivery or other selected payment labels. JDS Delivery does not directly collect full payment card numbers, bank account credentials, or full card security codes unless a future payment feature clearly asks for that information.
- Order notes, reviews, ratings, Pabili request descriptions, pickup and drop-off instructions, support details, and other content you choose to enter.
- In-app chat messages, typing status, message metadata, and chat images connected to an order or support interaction.
- Microphone audio, transcripts or other structured representations, and editable request drafts produced when you choose to use the AI Pabili Voice Assistant.
- Profile images, item-reference images, vendor or product images, receipt images, rider images, and proof-of-delivery photos.
- Push notification tokens, including Firebase Cloud Messaging and Apple Push Notification service tokens, notification preferences, badge counts, and notification delivery metadata.
- Device platform, app version or build context, device-level or technical identifiers needed for notifications and app operation, and last-seen device information.
- App interaction, analytics, diagnostic, and performance data, such as feature usage, page or screen activity, search and product interaction trends, loading performance, errors, and reliability information.
3. How We Use Information
- Create, authenticate, secure, and manage customer, rider, vendor, and administrator accounts.
- Process, route, fulfill, track, cancel, complete, and support orders.
- Calculate delivery fees, service fees, voucher eligibility, collection amounts, rider earnings, remittances, and order totals.
- Show nearby merchants, determine service-area availability, and personalize available delivery options based on location and saved addresses.
- Assign riders, support rider navigation, and display active delivery progress to customers, riders, vendors, and authorized administrators.
- Send account, order, rider, vendor, chat, scheduled-order, service, and support notifications.
- Enable in-app chat, proof-of-delivery, item-reference photos, reviews, customer support, and voice assistant workflows.
- Investigate fraud, safety concerns, delivery disputes, charge or collection issues, policy violations, and technical abuse.
- Improve app reliability, measure product performance, understand usage trends, fix errors, and maintain analytics and service monitoring.
- Maintain accounting, tax, operational, safety, compliance, audit, and legal records.
4. Location Information
JDS Delivery uses location information only when it is relevant to delivery, routing, order tracking, safety, or service availability.
- Customers may use location to select a delivery address, save an address, estimate delivery fees, and see whether a merchant can serve their area.
- Riders may use location for job dispatching, route calculation, navigation, safety tools, and active delivery tracking.
- Rider location may be shared with customers, merchants, and authorized administrators during active delivery operations so orders can be fulfilled and monitored.
- JDS Delivery may collect rider location while the app is open or while the rider is actively using delivery features. We do not claim true closed-app location collection unless that capability is separately implemented, configured, disclosed, and permitted by the user.
You can manage location permission through your device settings. Some delivery features may not work properly if location access is denied.
5. Camera, Photos, Messages, and User Content
JDS Delivery requests Camera and Photo Library permissions only when you explicitly choose to upload images or capture photos within the app.
- Camera & Photo Gallery: Used to capture or select profile photos, vendor catalog images, product reference photos, receipt photos, in-app chat attachments, and rider proof-of-delivery photos.
- In-App Messages & Photos: Exchanged between customers, riders, vendors, and support staff for active order fulfillment, delivery verification, and support communication.
- We use this content solely to operate delivery services, verify order completions, handle disputes, and maintain platform safety. We do not sell or use your photos for advertising.
You can grant or revoke Camera and Photo access at any time in your device settings.
6. AI Pabili Voice Assistant
The AI Pabili Voice Assistant is optional. Before an AI voice session starts, JDS Delivery displays a separate disclosure and asks for your consent. If you decline, dismiss the disclosure, or withdraw consent later, the manual Pabili form remains available.
- After you consent and allow microphone access, microphone audio is transmitted through JDS Delivery's authenticated server-side voice service and may be processed by OpenAI during the active session.
- OpenAI is JDS Delivery's third-party AI service provider for this feature. A transcript or structured representation of the conversation may be produced as part of the live service.
- Information processed may include item names, quantities, specifications, store choices, purchasing instructions, an address label such as Home or Work, and only the delivery-address text needed to prepare the draft.
- The service uses that information to understand the request, ask follow-up questions, apply restricted-item and motorcycle-suitability checks, and prepare an editable Pabili draft.
- The assistant does not select a payment method, authorize payment, or complete checkout. You must review the draft and separately use the application's checkout controls.
- JDS Delivery filters tool and session payloads to avoid sending internal account, merchant, saved-address, order, product, payment, authentication, and precise-coordinate identifiers when they are not needed by the model.
- Do not provide passwords, one-time passwords (OTPs), authentication tokens, complete payment credentials, or other secrets to the assistant.
- JDS Delivery does not save raw microphone audio or conversation transcripts in its application database through this voice flow and does not create persistent OpenAI Realtime application state. OpenAI may retain API customer content in abuse-monitoring logs for up to 30 days by default, unless stricter approved retention controls apply; longer retention may occur when required by law or reasonably necessary to prevent harm. JDS Delivery does not promise immediate or universal deletion from third-party systems.
- You may deny or revoke microphone permission in device settings, and you may withdraw AI consent in Account > Privacy & Security. Withdrawal prevents new AI sessions but does not delete unrelated order history or necessarily recall information already processed.
7. Push Notifications
If you allow notifications, JDS Delivery collects and stores push notification tokens from Firebase Cloud Messaging and Apple Push Notification service so we can send order updates, rider job alerts, chat notices, reminders, system notices, and other service-related notifications. We may also store notification preferences and whether push notifications are enabled.
You can manage notification permission in your device settings. Some real-time delivery, rider, vendor, or chat updates may be delayed or unavailable if notifications are disabled.
8. Third-Party Service Providers
We use service providers to operate JDS Delivery. These providers may process necessary data on our behalf or as independent service providers under their own privacy terms. Providers used by the app may include:
- Firebase and Google services for authentication, cloud messaging, analytics, and related app services.
- Sign in with Apple for Apple account authentication on supported Apple devices.
- Supabase for authentication support, database hosting, file storage, realtime features, and serverless functions.
- OpenAI for the optional AI Pabili Voice Assistant, including live voice understanding, follow-up questions, request validation assistance, and editable draft preparation after consent.
- Google Maps and mapping/geolocation providers for maps, address selection, route calculation, and delivery-area features.
- Hosting, deployment, analytics, and performance providers used to host the site, run the app, measure reliability, and improve performance.
- Push notification providers used to deliver app notifications to customer, rider, vendor, and administrator devices.
We do not authorize these providers to sell your personal information for us. Their processing is used to provide, secure, analyze, and improve JDS Delivery.
We require service providers that process personal information on our behalf to protect it consistently with this Privacy Policy and to provide the same or equivalent privacy and security protections required by applicable law and our agreements with them.
9. Data Sharing
We share personal information only as needed to operate JDS Delivery, protect users, comply with law, or fulfill your requests. This may include sharing:
- Customer order, contact, location, and instruction details with merchants and riders involved in fulfilling an order.
- Rider profile, location, status, and delivery progress with customers, merchants, and authorized administrators during active delivery operations.
- Vendor profile, menu, image, availability, and order information with customers, riders, and authorized administrators.
- Account, order, support, safety, and operational information with authorized administrators and support staff.
- Necessary technical, account, notification, location, content, analytics, and diagnostic information with service providers that help us run the app.
- Information when required by law, legal process, government request, safety concern, fraud investigation, dispute resolution, or to protect rights, property, and users.
JDS Delivery does not sell personal data.
10. Data Retention
We retain personal information only as long as reasonably needed for service operation, account management, delivery fulfillment, accounting, fraud prevention, safety, dispute resolution, analytics, backups, security, and legal obligations.
If you use the in-app customer account-deletion flow, we immediately revoke sign-in and all sessions and delete or de-identify active profile details (including name, email, phone, avatar, birthday, gender, emergency contacts, and optional profile fields), saved addresses, favorites, carts, search history, marketing and notification preferences, device/push tokens, customer notifications, drafts, and temporary AI conversation or voice-session data held by JDS Delivery. Customer avatar files and unreferenced temporary uploads are removed through a server-side cleanup process.
Active-order contact and delivery data remains available only as needed to finish the order. Once an order is completed, exact latitude/longitude and coordinate snapshots are retained for no more than 30 days; recipient names, recipient phone numbers, exact pickup/delivery addresses, and delivery instructions for no more than 90 days; and delivery/rider chat, proof photos, receipts, and chat media for no more than 180 days. Standalone customer-support conversations may be retained for up to 365 days. A documented open dispute, fraud/safety investigation, or legal hold may extend chat or evidence retention until the hold ends. Automated cleanup runs hourly and is safe to retry.
We keep non-identifying historical order totals, line items required for accounting, invoices, payment history, taxes, merchant and rider earnings, accounting records, audit logs, and fraud-prevention records unless policy or law later requires a different period. These records no longer expose identifiable customer contact, address, location, instruction, chat, or media data after the periods above. The profile is shown as “Deleted User.” AI session processing may involve OpenAI as described in Section 6, including default abuse-monitoring retention of up to 30 days unless stricter approved controls apply, with longer retention only where required by law or reasonably necessary to prevent harm.
11. Data Security
We use reasonable technical and organizational safeguards designed to protect personal information, including access controls, authentication, secure service providers, and operational security practices. However, no internet, mobile, or cloud service is completely secure, and we cannot guarantee absolute security.
12. Your Rights and Account Deletion
Depending on your location and applicable law, you may have the right to access, correct, update, delete, or request a copy of your personal information. You may also withdraw AI consent in the app and withdraw device permissions, such as microphone, location, camera, photos, or notifications, through your device settings.
Customer accounts may be deleted through Account > Settings > Delete Account. The app requires explicit confirmation, revokes the account, clears local account data, and signs the device out. You may also request access, correction, deletion, or review of retained transaction data by emailing privacy@jds-delivery.com.
13. Children's Privacy
JDS Delivery is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided personal information to JDS Delivery, please contact us so we can review and take appropriate action.
14. Changes to This Policy
We may update this Privacy Policy from time to time. When we make changes, we will update the "Last updated" date above. If changes are material, we may provide additional notice through the app, website, email, or another reasonable method.
15. Contact Information
If you have questions, concerns, support requests, or privacy requests, please contact us:
- Privacy: privacy@jds-delivery.com
- Support: support@jds-delivery.com
- Support URL: https://www.jds-delivery.com/contact.html
- Terms: https://www.jds-delivery.com/terms.html
- Address: Cabanatuan City, Nueva Ecija, Philippines