Legal · Privacy
Privacy Policy
Effective August 14, 2026
This Privacy Policy is published by NODEDR INFOTECH PRIVATE LIMITED (“NodeDR,” “we,” “us”) and covers two things: (1) this marketing website (https://pos.nodedr.com), and (2) the NodeDR POS application itself, however you installed it — Microsoft Store, the Windows/Linux installers, Docker, or a source build. This is the privacy policy to use for any listing (including a Microsoft Store submission) that requires one for the NodeDR POS app.
1. The NodeDR POS application
NodeDR POS is an offline-first Point of Sale app. It runs entirely on hardware you control — your own PC, till, or server — and stores everything it manages (products, inventory, customers, invoices/sales, staff accounts, and settings) in a local database on that device. NodeDR has no server that the app talks to, no user accounts on our side, and no visibility into this data. It is never uploaded, synced, or transmitted to NodeDR or any third party by the application.
- Sign-in. Admin/cashier accounts are created and authenticated locally, inside your own install. NodeDR does not receive credentials, session data, or account information.
- Camera (barcode/QR scanning). If you use camera-based scanning, the video feed is processed on-device only, to decode a barcode or QR code. Frames are not recorded, stored, or sent anywhere — including to NodeDR.
- Printer / USB access. Used only to print a receipt on a printer connected to that machine. No data leaves the device through this feature.
- Local network access. The Windows/Linux installer and Docker deployments can optionally be reached by other devices on your own shop network (e.g., a phone or counter tablet), so staff can use a second screen — this is local-network-only, governed by your own router/firewall, and never internet-facing. The Microsoft Store build does not expose the app to other devices at all; it runs only on the machine it’s opened on.
- No telemetry. The app does not include analytics, crash reporting, or usage tracking, and disables the update/telemetry pings built into some of its underlying components (Next.js, Prisma).
- No ads, no data sale, no third-party trackers are built into the application.
Because business and customer data entered into NodeDR POS is stored only on your own device, we cannot access, export, or delete it on your behalf — that data is entirely under your control (or your organization’s, if you operate it for a business). Whoever runs a given install is responsible for that install’s own compliance obligations toward their own customers and staff (for example, India’s DPDP Act or other applicable local law).
2. This website (https://pos.nodedr.com)
The rest of this policy covers only pos.nodedr.com itself — browsing it, and using its contact form.
2.1 Information we collect
- Contact form submissions — name, email, subject, and message when you use the contact form.
- Technical data — basic request metadata (IP, user agent, pages viewed) collected by our hosting infrastructure in aggregate for uptime and performance monitoring.
2.2 How we use information
- Respond to your support or inquiry message.
- Monitor website performance and reliability.
- Comply with applicable law.
2.3 Third-party services
Contact form submissions are delivered via our own NodeDr form-delivery infrastructure. We do not use third-party advertising trackers or marketing automation on this site.
We use Cloudflare Web Analytics to measure aggregate traffic and page performance. It does not use cookies or any client-side state to track you, and does not collect personally identifiable information — see Cloudflare’s privacy policy for how it handles the data it does collect.
2.4 Data retention
Contact form messages are kept for as long as needed to resolve your inquiry, then deleted. Aggregate access logs are retained for no more than 90 days.
3. Your rights
For website contact-form data, you may request access to, correction of, or deletion of it by emailing us at info@nodedr.com. As explained in Section 1, we hold no data entered into your own NodeDR POS install and cannot act on requests about it — those must go to whoever operates that install.
4. Children’s privacy
NodeDR POS and this website are business tools, not directed at children, and we do not knowingly collect personal information from children.
5. Security
Website form submissions are transmitted over HTTPS and forwarded with a signed request header. NodeDR POS itself stores its data locally and is secured by whatever access controls exist on the device it runs on. No method of storage or transmission is 100% secure; we use reasonable safeguards.
6. Changes
Material updates will be reflected in the effective date at the top of this page.
7. Contact
NODEDR INFOTECH PRIVATE LIMITED
Email: info@nodedr.com
Website: https://www.nodedr.com