BuyBuddy Privacy Policy
Effective Date: May 26, 2026
Welcome to BuyBuddy. Your privacy is important to us. This Privacy Policy explains how we collect, use, protect, and share your personal data in compliance with the Data Privacy Act of 2012.
By using BuyBuddy, you acknowledge and agree that certain personal data are processed as necessary for the performance of our contract with you, including account creation and management, subscription processing, and voucher redemption.
Where required under applicable law, your use of the app constitutes your consent to the collection and processing of your personal data for the purposes described in this Privacy Policy.
You may withdraw your consent at any time by discontinuing your use of the application or by contacting us through the details provided below.
Please note that withdrawal of consent may result in the inability to continue using some or all features of BuyBuddy. Withdrawal shall not affect the lawfulness of processing based on consent prior to such withdrawal.
1. Information We Collect
a. Personal Information
We may collect the following when you register or use the app:
● Full name
● Email address
● Mobile number
● Date of birth (optional)
● Account login details
● Payment-related information such as billing address, partial payment instrument details, and transaction identifiers (note: full payment credentials are processed by third-party payment providers and are not stored by BuyBuddy)
b. Transaction & Account Data
● Subscription purchases
● Voucher redemptions
● Merchant interactions
c. Usage & Device Data
● App activity and behavior
● Device type, operating system, IP address
● Location data (if enabled)
d. Technical and Application Data
· Unique device identifiers
· Push notification tokens
· QR Code interactions and redemption logs
· Session logs and security authentication records
2. Legal Basis for Processing
We process your personal data based on the following legal bases, depending on the nature of the activity:
● Your consent, as given upon registration and continued use of the app, for specific processing activities where consent is required under applicable law, such as marketing communications and personalization of offers
● The necessity to fulfill our contractual obligations (including account registration, subscription management, and voucher redemption services)
● Compliance with legal obligations
● Legitimate interests, such as fraud prevention, service improvement, platform security, and business analytics, provided these do not override your fundamental rights and freedoms
3. How We Use Your Information
We use your personal data for the following purposes:
● To provide you with access to BuyBuddy services and features
● To manage and process your account, subscriptions, and payments
● To enable, process, and verify voucher redemptions with partner merchants
● To prevent fraud, abuse, unauthorized use, or misuse of the platform, its features, and the vouchers
● To maintain, improve, and optimize the performance, functionality, user experience, and security of the app
● To personalize your experience, including recommending relevant offers based on your usage and preferences
● To send service-related communications, including account notifications, transaction confirmations, and important updates necessary for the use of the app
● To send promotional and marketing communications, where permitted by law or with your consent
● To provide customer support and respond to inquiries, feedback, or complaints
4. Sharing of Information
We do not sell your personal data.
We may share personal data with:
a. Partner Merchants
● Limited information such as name or account identifier for voucher redemption verification. Merchants are contractually restricted from using such data or independent marketing unless you separately consent.
b. Service Providers
● Including payment processors, cloud storage providers, analytics providers, and customer support platforms.
These entities process personal data only on our instructions and are bound by data processing agreements ensuring confidentiality, security, and compliance with applicable laws.
c. Legal Compliance
We may disclose information if required by law or necessary to protect BuyBuddy’s rights and users.
5. Cross-Border Data Transfers
Your personal data may be processed or stored outside the Philippines through our third-party service providers, including cloud hosting, payment processing, and analytics providers.
We ensure that these providers implement appropriate safeguards consistent with applicable data protection laws.
6. Data Security
We implement reasonable organizational, physical, and technical safeguards to protect your personal data, including:
● Encrypted connections and secure data transmission
● Secure servers and system infrastructure
● Restricted access to personal data on a need-to-know basis
● Internal policies and procedures governing data handling and security
While we take appropriate steps to protect your personal data, no method of transmission or storage is completely secure. By using BuyBuddy, you acknowledge and accept this inherent risk.
7. Data Retention
We retain your personal data:
● While your account is active
● For a limited period thereafter, as necessary for legal, regulatory, fraud prevention, and legitimate business purposes, including compliance with applicable laws and dispute resolution
By way of general guidance:
· Account data is retained for the duration of your active account
· Inactive accounts may be deleted or anonymized after approximately twelve (12) months of inactivity, subject to applicable legal and operational requirements
· Transaction and billing records may be retained for up to five (5) years, or as required by applicable laws and regulations
· Fraud prevention and security-related data may be retained for the duration of any investigation and applicable legal periods.
Where applicable, certain data (such as transaction records) may be retained for longer periods as required by law or regulatory obligations.
Once retention is no longer necessary, your personal data will be securely deleted, anonymized, or disposed of in accordance with our internal data retention and disposal policies.
8. Your Rights as a Data Subject
Under applicable laws, you have the right to:
● Be informed about the collection and processing of your personal data
● Access your personal data
● Object to the processing of your personal data
● Correct or rectify inaccurate or incomplete data
● Erase or block your personal data, subject to applicable legal limitations
● Data portability, where applicable
● File a complaint with the National Privacy Commission
● Claim damages where applicable
To exercise these rights, you may submit a request using the contact details provided below.
BuyBuddy shall respond to verified requests within fifteen (15) business days from receipt. Requests must include sufficient information to verify your identity. We may request additional documentation where reasonably necessary to confirm your identity and ensure the legitimacy of the request.
In certain cases, we may be unable to fully comply with a request where processing is required for legal, regulatory, security, or legitimate business purposes. Where applicable, we will inform you of the basis for such limitation.
9. Cookies & Tracking Technologies
We may use cookies or similar technologies to:
● Ensure and improve functionality and proper operation of the app
● Analyze app performance and understand user behavior
● Personalize your experience, including recommending relevant offers
10. Children’s Privacy
BuyBuddy is not intended for individuals under eighteen (18) years old.
We do not knowingly collect or process personal data from minors. If we become aware that personal data of a minor has been collected without appropriate consent from a parent or legal guardian, we will take reasonable steps to delete such data and, where appropriate, suspend or terminate the associated account.
11. Data Breach Notification
In the event of a personal data breach that poses a risk to the rights and freedoms of data subjects, BuyBuddy will notify affected users and the National Privacy Commission in accordance with applicable laws and regulations.
12. Data Protection Officer
BuyBuddy has appointed a Data Protection Officer (DPO) responsible for ensuring compliance with applicable data privacy laws and regulations.
The DPO may be supported by external legal counsel, including The Law Firm of Chan Robles and Associates, in the performance of data protection and compliance functions.
13. Updates to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, services, or legal requirements.
Any changes and updates will be posted within the app with an updated effective date. Where required by applicable law, we will provide appropriate notice of material changes and, where necessary, obtain your consent before such changes take effect.
14. Contact Us
For any questions or concerns:
📧info@buybuddy.ph
📍 Philippines
User Consent
By tapping “Agree & Continue”, you confirm that:
● You have read and understood this Privacy Policy
● You freely and voluntarily consent to the collection and processing of your personal data