1. Scope
This Privacy Policy applies to the CMH ParcelFlow website, user dashboard, administrator-managed subscription services, and the associated Chrome extension. It explains what information is processed when you sign in, synchronize a plan, use the extension, redeem a coupon, submit a payment request, or contact support.
CMH ParcelFlow is an independent productivity service. It is not presented as an official product of Leopards Courier or Google unless an applicable company expressly states otherwise.
2. Information we collect
Google account information
When you choose “Continue with Google,” we may receive your verified Gmail address, Google account identifier, display name, and profile image from Google. We use this information to create or identify your account and to provide Google-based sign-in.
Account and subscription information
We process your account status, Trial or Pro plan status, plan start and expiry times, coupon redemption records, device registrations, extension version, and usage counters needed to provide and enforce subscription access.
Payment information
If you submit a crypto payment request, we may process the payment method/network you select, transaction ID (TXID), payment amount/package information, and any payment proof you upload. We do not collect credit card numbers through the current crypto payment workflow.
Support information
If you contact us, we process the name, email address, subject and message you provide so we can respond to your request.
Technical and security information
Our hosting provider and server software may create ordinary access, error and security logs necessary to operate and protect the service. These logs may include technical information such as IP address, browser or user-agent details, timestamps and requested URLs.
3. Chrome extension data
The extension is designed for the single purpose of assisting supported courier booking workflows with saved defaults and smart form autofill.
- Local booking preferences: Values such as Division, Shipment Type, Shipper, Booking Date preference, weight, pieces, item count, product description, COD amount, instructions, return address and volumetric dimensions are stored using Chrome local storage so the extension can autofill supported booking fields.
- Plan synchronization: The extension sends the Gmail address you enter, a generated device identifier, and the extension version to our licensing API to check Trial/Pro access and usage eligibility.
- Supported website access: The extension reads and changes relevant form fields on the supported Leopards E-Com booking pages only to perform its booking-assistant function.
- No sale of booking content: We do not sell booking form content or use it for advertising.
- No remote executable code: The extension package is intended to contain its executable JavaScript within the installed extension. Server responses are used for account, plan and licensing data, not to download and execute remote JavaScript.
Booking defaults saved in Chrome local storage are not sent to our licensing server as part of normal plan checks. Information you separately submit through the website, such as payment requests or support messages, is handled as described elsewhere in this Policy.
4. How we use information
We use information only as reasonably necessary to provide and protect the service, including to:
- authenticate users through Google;
- create, maintain and secure user accounts;
- activate, synchronize, expire, cancel or suspend Trial and Pro access;
- enforce device and usage controls;
- process coupon redemptions and manually reviewed payment requests;
- provide extension autofill and booking-assistant functionality;
- prevent abuse, troubleshoot errors and protect service integrity; and
- respond to support and legal requests.
We do not use or transfer user data to determine creditworthiness or for lending purposes.
6. Data retention
We retain account and subscription records for as long as an account remains active or as reasonably necessary to provide the service, prevent coupon/payment abuse, maintain security records and meet legal obligations. Payment requests and administrative audit records may be retained for accounting, fraud-prevention and support purposes. Local extension preferences remain in Chrome storage until they are changed, cleared, or the extension/browser profile removes them.
7. Security
We use reasonable technical and organizational measures such as HTTPS deployment, server-side account checks, prepared database queries, CSRF protection for website forms, access controls and restricted administrator functions. No Internet service can guarantee absolute security, so users should also protect access to their Google account and devices.
8. Your choices and rights
You can stop extension processing by disabling or uninstalling the extension. You can clear locally stored extension preferences through Chrome. You may also contact us to request access, correction or deletion of account information, subject to information we are required or reasonably permitted to retain for security, payment, abuse-prevention or legal purposes.
Disconnecting or deleting an account does not necessarily erase records that must be preserved for legitimate security, transaction or legal reasons.
9. Children’s privacy
The service is intended for business and productivity use and is not directed to children under 13. We do not knowingly seek to collect personal information from children under 13.
10. Changes to this Policy
We may update this Privacy Policy when the website, extension, data practices or legal requirements change. The updated version will be posted on this page with a revised “Last updated” date. Material changes may also be communicated through the website or dashboard where appropriate.
11. Contact us
If you have questions about privacy, account data or this Policy, contact us through the Contact Us page or email support@chmianhashim.online.
