Stampollo
Pricing Get started

Privacy Policy

Last updated 9 August 2026

Stampollo runs digital stamp cards for local businesses. This page explains what we collect from the two kinds of people who use it — customers collecting stamps, and shop owners running a loyalty programme — and what you can ask us to do with it.

Who is responsible

Stampollo is a product of Totuma Labs, LLC, a Delaware limited liability company, which is the data controller for the information described here. For anything on this page, including deletion requests, write to hello@stampollo.com.

If you are a customer collecting stamps

You can use Stampollo without giving us anything at all. Scanning a shop's QR code creates an anonymous record identified only by a cookie in your browser, plus a randomly generated handle such as Lucky_Tiger_88. We do not ask for your name, your email or your phone number to give you a stamp, and we never require an account to claim a reward you have earned.

We store, for every customer:

  • a session identifier held in a cookie on your device;
  • your randomly assigned handle;
  • each stamp you earn — which shop, which product, and when;
  • each reward you redeem.

If you choose to link an account — with Google, with Facebook, or by email — we additionally store the identifier that provider gives us for you, your email address, and the display name on that account. We ask the provider for nothing else. We do not receive or store your password, your contact list, your friends, your posts, or anything else held in that account.

Linking is optional and exists for one reason: without it your stamps live only in one browser, and clearing that browser or changing phone loses them. Linking is what lets you sign back in and get them back.

If you are a shop owner

We store your email address, your name if you give one, your shop's details (name, address, logo, and the Google Places record you selected during setup), and your subscription status. Payment card details are handled by Stripe and never reach our servers.

What shops can see about their customers

A shop sees the handle of each customer who has collected stamps with them, the display name if the customer gave one, and that customer's stamp and reward history at that shop. A shop cannot see a customer's email address, and cannot see their activity at any other shop.

What we do not do

  • We do not sell your data, and we do not share it with advertisers.
  • We do not use third-party advertising or analytics trackers. The customer wallet uses self-hosted product analytics we operate ourselves — see "Analytics" below.
  • We do not track your location.
  • We do not send marketing email to customers.

Analytics

We run self-hosted product analytics (Umami) on our own server at umami.totumalabs.com, EU-hosted. It sets no cookies and performs no cross-site tracking. Your IP address and browser user-agent are hashed into a rotating daily identifier and are not stored. We collect this on the legal basis of our legitimate interest in understanding product usage (GDPR Art. 6(1)(f)).

The two groups of people covered by this page are treated differently:

  • Shop owners, in the admin app, are identified by an opaque internal user id.
  • Wallet customers are never identified. We only see anonymous session properties — which shop, a stamp-count bucket, and whether you are a returning visitor — never your handle, account or any data listed above.

Who processes data on our behalf

We use a small number of service providers to run the product: Stripe for subscription billing, Amazon Web Services for sending email and for encrypted database backups, Google and Meta for the optional sign-in described above, and our hosting provider in the European Union. Each of these receives only what it needs to perform its function. Our analytics are not on this list: we run Umami ourselves on our own European infrastructure, so no analytics vendor receives your data.

How long we keep it

Stamp and reward records are kept for as long as your account exists, because they are the balance the shop honours. Sign-in links expire 15 minutes after they are issued. Backups let us recover data for up to 7 days after it changes or is deleted; our storage provider separately retains deleted-version history for up to 30 more days purely as a safeguard against accidental or malicious deletion, not as a way to restore your data on request.

Your rights

Under the GDPR you can ask us for a copy of everything we hold about you, ask us to correct it, ask us to delete it, or object to our processing it. Email hello@stampollo.com and we will respond within 30 days. Deleting your account removes your stamps along with it — if you have a full card, redeem it first.

If you believe we have handled your data improperly, you can complain to the data protection authority in your own country of residence. In Portugal, that is the Comissão Nacional de Proteção de Dados (CNPD).

Cookies

The customer wallet sets one cookie, which identifies your session so your stamps come back when you return. It is valid for up to one year and does not expire automatically on our servers — it lasts until you sign out on that device. If your device is lost or stolen, contact us and we will invalidate that session by hand. The admin dashboard sets one cookie to keep shop owners signed in. Both are strictly necessary for the service to work. Our self-hosted analytics (see "Analytics" above) sets no cookies at all; we set no advertising cookies anywhere in the product.

Children

Stampollo is not directed at children under 16 and we do not knowingly collect their data. If you believe a child has an account, contact us and we will remove it.

Changes

If we change this policy materially we will update the date above and, where the change affects you directly, tell you in the app.

Stampollo
Digital stamp cards for local businesses
By business type Compare Guides
Privacy Terms
© 2026 Stampollo. All rights reserved.