Privacy Policy
Effective date: June 29, 2026 · Last updated: June 29, 2026
This Privacy Policy explains how Hansery, Inc., a Delaware corporation ("Hansery," "we," "us," or "our") collects, uses, discloses, and protects personal data when you use the Hansery website, applications, and services (collectively, the "Services"), including hansery.com, the Pro and vendor dashboards, and the Purchase Order (PO) system.
By using the Services, you acknowledge this Privacy Policy. If you do not agree, do not use the Services. This Policy is incorporated into our Terms of Use.
Quick reference
- Who we serve. Hansery is a business-to-business platform for verified trade professionals — interior designers, architects, general contractors, builders, and developers (collectively, "Pros") — and product vendors/brands ("Vendors"). It is not intended for consumers or anyone under 18.
- What we collect. Account and business-verification details (including trade credentials such as resale certificates, business or contractor licenses, and W-9 tax forms), the products you spec and the projects you manage, messages you send through the Services, payment receipts you upload, and usage/analytics data.
- The most important sharing to understand. When a Pro sends a purchase order ("PO") to a Vendor, we share the Pro's identity and the order/project details with that Vendor so they can fulfill it. See Section 5.
- We are not in the payment flow. Pros pay Vendors directly, off platform. We store proof-of-payment receipts but never hold or move your funds. See our Terms of Use.
- We do not sell or share your personal data. See Section 6.
- Your choices. You can access, correct, or delete your data, and opt out of marketing email. California residents have additional rights (Section 16).
- Contact. privacy@hansery.com.
1. Scope
This Policy applies to personal data we process about:
- Pros — verified trade professionals (interior designers, architects, general contractors, builders, and developers) who use Hansery to discover products, build specifications, and route purchase orders to Vendors.
- Vendors / Brand Representatives — companies and their representatives who list catalogs, receive orders, and access analytics.
- Clients — the homeowners, developers, or businesses on whose behalf a Pro specifies products. Clients generally do not create accounts and access limited, client-facing views through secure tokenized links.
- Visitors — anyone who browses public pages (e.g., public Vendor storefronts).
It does not apply to (a) data Vendors or Pros process as independent businesses outside the Services, or (b) third-party websites we link to.
2. Minimum age and intended users
The Services are intended solely for businesses and trade professionals and for individuals 18 years or older. We do not knowingly collect personal data from children. If you believe a minor has provided us personal data, contact privacy@hansery.com and we will delete it.
3. Personal data we collect and why
3.1 Information you provide directly
Account & profile (Pros). Name, personal and/or business email, phone number, firm/company name, business address, location, professional specialty (e.g., residential, commercial, hospitality), and portfolio or website link.
Trade-verification documents (Pros). To confirm you are a legitimate trade professional eligible for trade pricing, we collect and review (depending on your Pro category):
- Resale / sales-tax certificate (state-specific);
- Business license, contractor's license, or registration;
- EIN or, via a W-9 or equivalent tax form, a taxpayer identification number (an SSN or EIN);
- Trade association membership or professional license details (e.g., ASID, IIDA, NKBA, NCIDQ, a state contractor or design license number), where provided.
We use these solely to (a) verify trade eligibility, (b) apply the correct trade discount tier, (c) maintain the integrity of the network for Vendors, and (d) track credential expiration so we can remind you to renew. We treat W-9 / tax identifiers as sensitive information and apply heightened safeguards (Section 10) and restricted access.
Account & catalog (Vendors). Brand/company name, representative names, work email and phone, business address, banking or billing details needed to charge applicable platform fees, discount-tier configuration, and your product catalog data (SKU, name, category, descriptions, images, dimensions, finish/variant options, trade price, MSRP, lead time, and any 3D-asset references).
Project & specification data (Pros). Project names and addresses, budget ranges, rooms/areas, the products and quantities you spec, client approval records, and the contents and status history of each PO.
Communications. Messages, comments, and files you exchange through the Services (including the PO-anchored messaging system), support requests, and survey/feedback responses.
Payment receipts (not payment processing). When you record that a purchase order has been paid, you may upload a receipt or proof of payment (a file, the payment method used, and optional reference numbers or notes). We store this as a record of the transaction. We do not collect, store, or process full payment-card numbers or bank credentials for Pro↔Vendor purchases — those payments occur directly between the Pro and the Vendor, off platform.
3.2 Information from third parties
- Verification & screening providers. We may use third-party identity- and business-verification services to confirm the credentials you submit. These providers may return verification results and related data to us.
- Publicly available sources. As part of vetting, we may review publicly available information (e.g., a firm website, public license registries, or professional directories) to confirm a Pro's eligibility.
- Vendors and Pros about each other. In the course of a transaction, Vendors and Pros provide us information about their interactions (e.g., order confirmations, receipt status, disputes).
- Service providers that help us run, secure, analyze, and market the Services (Section 5.3).
3.3 Information collected automatically
When you use the Services we automatically collect log and device data: IP address, device and browser type, operating system, identifiers, pages and products viewed, search queries, referring/exit pages, timestamps, and actions taken (including PO send/open/confirm events and approval timestamps). We collect this using cookies and similar technologies described in our Cookie Policy.
4. How we use personal data
We use personal data to:
- create and administer accounts and verify trade eligibility;
- operate core features (catalog, specification, the PO system, messaging, client approvals);
- connect Pros and Vendors and enable order fulfillment (Section 5.1);
- apply the correct trade-pricing tier and track credential expiration;
- calculate, invoice, and collect the applicable attributed-sale platform fee from Vendors (we charge the Vendor's payment method on file — we do not process the underlying Pro↔Vendor product payment);
- provide support, send transactional/service messages, and send marketing communications you have not opted out of (Section 12);
- secure the Services, prevent fraud and abuse, and enforce our agreements;
- analyze and improve the Services, including aggregated and de-identified analytics; and
- comply with legal obligations.
AI and automated processing. We use automated tools — including third-party AI/LLM providers — to help ingest and normalize Vendor catalog data. We do not use your personal data to train or improve AI/LLM models. AI outputs may be imperfect and should not be relied on as professional advice.
5. How and with whom we disclose personal data
5.1 Connecting Pros with Vendors (the core data flow)
When a Pro issues a PO to a Vendor, we share with that Vendor the information needed to fulfill it, including the Pro's name, firm, work contact information, Hansery-verified tier, the products and quantities specified, the project address, budget range, and delivery timeline, so the Vendor can process and fulfill the order and follow up about it.
We do not disclose a Client's personal data to Vendors.
5.2 Employers and firms
Where a Pro uses Hansery as part of a firm or enterprise account, the firm/enterprise account administrator may have access to that user's account activity, project records, and messages associated with the firm's account (for example, to maintain continuity if a team member leaves the firm).
5.3 Service providers
We share personal data with vendors that perform services for us under contract and on our instructions, including providers of: cloud hosting and storage; identity and business verification; email delivery; payment and billing for our own fees; customer support; security and fraud prevention; analytics; and AI/LLM processing. We disclose to these providers by category; we require them to protect personal data and use it only to provide services to us.
5.4 Business transfers
If Hansery is involved in a merger, acquisition, financing, reorganization, or sale of assets, personal data may be transferred as part of that transaction, subject to this Policy.
5.5 Legal and safety
We may disclose personal data to comply with law, respond to lawful requests and legal process, enforce our agreements, protect the rights, property, and safety of Hansery, our users, and others, and detect or prevent fraud or security issues.
5.6 With your direction or consent
We share personal data as you direct (for example, when you send a PO or share a client link) or otherwise with your consent.
6. We do not sell or share your personal data
We do not sell your personal data, and we do not "share" it for cross-context behavioral advertising, as those terms are defined under California and other U.S. state privacy laws. We do not use advertising cookies or ad-targeting partners. The only disclosures we make are the operational ones described in Section 5 (to fulfill a transaction you direct, to our service providers, for legal/safety reasons, or in a business transfer).
7. Cookies and similar technologies
We and our providers use cookies, pixels, SDKs, and similar technologies for authentication, preferences, security, and analytics. For details and controls, see our Cookie Policy.
8. International data transfers
The Services are operated from the United States and are intended for users in the United States. If you access the Services from outside the U.S., you understand your data will be processed in the U.S., which may have different data-protection laws than your jurisdiction.
9. Data retention
We retain personal data for as long as needed to provide the Services and for the purposes described in this Policy, then delete or de-identify it. Our general guidelines (subject to legal holds and the criteria below):
| Data | Retention guideline |
|---|---|
| Account & profile | While the account is active, then up to 24 months after closure. |
| Trade-verification documents (resale cert, license, W-9/tax ID) | While the account is active and as required by tax/recordkeeping law; tax forms retained as required by law (generally up to 7 years). Stored with restricted access. |
| Project, specification & PO records (incl. payment receipts) | Retained as transaction/audit records for 7 years to support dispute resolution, attribution, and recordkeeping. |
| Messages | While the account is active and as needed for the order's audit trail. |
| Usage/analytics logs | Up to 24 months, or aggregated/de-identified thereafter. |
| Failed/abandoned verification submissions | Deleted within 90 days unless needed for fraud prevention. |
Where data is retained in aggregated or de-identified form, this Policy's deletion timelines do not apply.
10. How we protect personal data
We maintain administrative, technical, and physical safeguards designed to protect personal data, including encryption in transit, access controls and least-privilege access (with heightened restrictions on tax identifiers and verification documents), logging, and vendor due diligence. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
11. Your privacy rights and choices
Subject to applicable law, you may:
- Access the personal data we hold about you;
- Correct inaccurate data;
- Delete your data (subject to legal retention, e.g., tax records);
- Port certain data;
- Opt out of marketing communications; and
- Appeal a denied request.
To exercise rights, email privacy@hansery.com or use in-product settings. We will verify your identity before responding (we may use a verification provider for this purpose). We will not discriminate against you for exercising your rights. You may authorize an agent to act on your behalf.
12. Communications and marketing
- Service/transactional messages (e.g., PO status, security and account notices, credential-expiry reminders) are part of the Services and cannot be opted out of while you have an account.
- Marketing email is sent on an opt-out basis. Unsubscribe via the link in any marketing email or in your settings.
13. Third-party links and storefronts
The Services may link to third-party sites (e.g., a Vendor's own website or a payment page). We are not responsible for their privacy practices; review their policies.
14. Changes to this Policy
We may update this Policy from time to time. We will post the updated version with a new effective date and, for material changes, provide additional notice. Your continued use of the Services after an update means you acknowledge the revised Policy.
15. Contact us
Hansery, Inc. 19686 Surfbreaker Ln, Huntington Beach, CA 92648 Email: privacy@hansery.com
16. Notice for California residents (CCPA/CPRA)
This section supplements the Policy and serves as our Notice at Collection for California residents. It applies to California residents acting in an individual capacity; certain business-to-business and employment contexts may be treated differently under California law.
16.1 Categories of personal information we collect
In the past 12 months we have collected the following CCPA categories:
| Category | Collected | Examples |
|---|---|---|
| Identifiers | Yes | Name, email, phone, address, IP, account IDs |
| Customer records | Yes | Business/contact info, billing details, tax form (W-9) |
| Commercial information | Yes | Spec activity, orders, transaction/receipt records |
| Professional/employment information | Yes | Firm, title, specialty, license/credential details |
| Internet/network activity | Yes | Usage, pages/products viewed, interactions |
| Geolocation (coarse) | Yes | Approximate location from IP / project address |
| Sensitive personal information | Yes | Taxpayer identification number (from W-9) |
| Audio/visual | Limited | Uploaded images/files, support recordings (if any) |
| Inferences | Yes | Preferences derived from activity |
We collect these for the business purposes in Sections 4–5.
16.2 Sensitive personal information
We collect a taxpayer identification number (via W-9) to verify trade eligibility and meet tax/recordkeeping obligations. We use sensitive personal information only for permitted purposes (providing the Services, verification, security, and compliance) and not to infer characteristics. We do not use it for purposes that would trigger the right to limit beyond those permitted.
16.3 Sources and disclosures
Sources: you, your interactions, verification providers, and publicly available records (Section 3.2). We disclose for business purposes to the recipients in Section 5 (other users in a transaction, service providers, affiliates, and as legally required).
16.4 Sale/sharing
We do not sell personal information and do not "share" it for cross-context behavioral advertising. We do not knowingly sell or share the personal information of minors under 16.
16.5 Your California rights
Right to know/access, correct, delete, limit use of sensitive information (as applicable), and non-discrimination. Because we do not sell or share personal information, there is no sale/sharing to opt out of. To exercise your rights, contact privacy@hansery.com. You may appeal a denial by replying to our decision.
16.6 Shine the Light
California residents may request information about disclosures of personal information to third parties for their direct marketing purposes. We do not disclose personal information for third parties' direct marketing. Requests: privacy@hansery.com.