Last Updated: [July 7, 2026]
This Privacy Policy describes how your personal information is collected, used, and shared when you install and use the **Beyli** (also referred to as **Tokshop** or **Tokshop Live**) mobile application (the "App"), developed and operated by Beyli .
By using the App, you agree to the collection and use of information in accordance with this policy. We are committed to protecting your privacy in compliance with the Google Play Developer Policies and global privacy regulations (such as GDPR and CCPA).
---
## 1. Information We Collect
To provide a seamless live-shopping, e-commerce, and live-streaming experience, we collect several types of information from and about our users:
### A. Personal Information You Provide
* **Account Credentials:** When you register, we collect your name, email address, phone number, username, and password.
* **Social Login Data:** If you choose to log in using third-party services (such as Google Sign-In, Sign in with Apple, or Facebook Login), we receive basic profile details (e.g., name, email, profile picture, and identifier tokens) from those providers.
* **Profile Information:** User-uploaded profile pictures, bio, and other details.
* **E-Commerce & Shipping Details:** Shipping addresses, billing addresses, country, and city details necessary to fulfill orders, deliver products, and calculate shipping costs.
### B. Device and Technical Information
* **Device Identifiers:** We collect details about your device, including your IP address, device model, operating system version, unique device tokens, and network connection status.
* **Log & Diagnostics Data:** We collect performance data, crash logs, and diagnostics information to ensure the stability of the App.
### C. Financial & Payment Information
* All payments (such as purchase of products, auctions, tips, or payouts) are securely processed by our third-party payment gateway, **Stripe**.
* We do not directly collect, store, or process your credit/debit card numbers. Stripe's privacy practices govern the handling of your financial information.
### D. Audio, Video, and Media Content
* Because the App features live shopping, live auctions, and audio/video chat rooms, we stream and process live video/audio feeds during active sessions.
* We also process and store product images and chat messages that you submit within the App.
---
## 2. Device Permissions We Request
To enable core app features, the App requests permissions to access certain device resources. You can grant or revoke these permissions at any time via your device settings:
1. **Camera Permission (`android.permission.CAMERA` / `NSCameraUsageDescription`):** Used to record live video streams, capture profile photos, and take pictures of products for seller listings.
2. **Microphone Permission (`android.permission.RECORD_AUDIO` / `NSMicrophoneUsageDescription`):** Used to capture your voice during live broadcasts, live streams, and audio conversational rooms.
3. **Photos / Files / Storage (`android.permission.READ_EXTERNAL_STORAGE` / `NSPhotoLibraryUsageDescription`):** Used to let you select and upload existing images from your gallery to use as product pictures or profile photos.
4. **Location Services (`NSLocationAlwaysAndWhenInUseUsageDescription`):** Used to display shop locations on a map, autocomplete addresses, and determine shipping coverage.
5. **Notification Permission (`firebase_messaging` / `flutter_local_notifications`):** Used to send you push notifications about incoming chat messages, live stream starts, new followers, and order status updates.
6. **Phone State (`android.permission.READ_PHONE_STATE`):** Used to detect incoming phone calls to automatically pause live audio/video feeds, preventing audio overlap.
---
## 3. How We Use Your Information
We use the information we collect to:
* Set up, manage, and authenticate user accounts.
* Facilitate live streaming, auctions, giveaways, and real-time audio rooms.
* Process e-commerce transactions, handle orders, and coordinate shipping.
* Deliver push notifications relevant to your interactions (chats, followed creators going live, orders).
* Prevent fraudulent activities, protect user safety, and enforce our terms of service.
* Identify and fix technical issues, crashes, and optimize overall app performance.
---
## 4. Third-Party Service Providers (SDKs)
We share information with third-party service providers to help us run the App. These third parties only access your data to perform specific tasks on our behalf:
* **Firebase (Google LLC):** Used for database hosting (Firestore), file storage (Firebase Storage), user authentication, and push notifications (Firebase Cloud Messaging).
* **LiveKit:** Provides the secure infrastructure for real-time live video and audio streaming.
* **Stripe (Stripe, Inc.):** Handles all credit/debit card payment processing and merchant payouts in a secure, PCI-compliant environment.
* **Google Sign-In & Apple Sign-In:** Allows secure, simplified login options.
* **Facebook SDK (Meta Platforms, Inc.):** Used for Facebook sign-in authentication.
* **Google Places API:** Used for shipping address autocomplete and validation.
---
## 5. Data Retention, Security, and Transfers
* **Security:** We use industry-standard encryption protocols (SSL/TLS) for data in transit and secure database rules to protect your personal information at rest.
* **Data Retention:** We keep your personal data only as long as your account is active or as required to fulfill e-commerce order logs, comply with legal obligations, or resolve disputes.
* **International Transfers:** Your data may be processed on servers located outside your country. We take all necessary steps to ensure that your data is handled securely and in accordance with this policy.
---
## 6. Account Deletion and Data Controls
In compliance with Google Play and Apple App Store policies, you have complete control over your data:
### How to Delete Your Account:
You can permanently delete your account and all associated personal data directly within the App:
1. Go to your **Profile** page.
2. Tap on the **Settings** gear icon.
3. Select **Delete Account** and confirm.
*Upon deletion, all of your personal details, purchases, and authentication records will be permanently and irreversibly removed from our active databases and Firebase servers.*
Alternatively, you can request account deletion by emailing our support team at gcch1122@gmail.com
. We will process your request within 3-5 business days.
---
## 7. Children's Privacy
Our services are not designed for or targeted to children under the age of 13. We do not knowingly collect personal data from children under 13. If we discover that a child under 13 has provided us with personal information, we will delete it immediately.
---
## 8. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. Any changes will be posted on this page with an updated "Last Updated" date. We encourage you to review this Privacy Policy periodically.
---
## 9. Contact Us
If you have any questions or feedback regarding this Privacy Policy, please contact us:
* **Email:** gcch1122@gmail.com