Privacy Policy
Last updated: August 2026
Suke (“we”) provides business-management software for merchants. This policy explains what we collect, who else sees it, and how it is protected. Your business data belongs to you.
What we collect
- Account details — your name, phone number, business TIN, and the business profile fetched from the public eTrade registry when you supply a TIN.
- Operational data you enter — products, sales, customers, debts, expenses, suppliers and staff records.
- Photographs you supply — product photos, and screenshots or photographs of bank transfers and receipts when you use scanning to enter them.
- A device token for your phone, so we can deliver notifications you have asked for.
How we use it
To run the service: syncing your data across your devices, generating reports and insights, delivering notifications, and recording subscription payments. We do not sell your data, and we do not use your business records to advertise to you.
Who else receives your data
Some features cannot work without sending data to another company. Each one below happens only when you use the feature it belongs to — if you never use it, nothing is sent.
Google (Gemini and Veo)
- When you ask the assistant a question, your question and a snapshot of your own shop’s figures are sent to Google’s Gemini service to produce the answer.
- When you scan a receipt or bank transfer, the image is sent to Gemini to read the reference, bank, amount, date and parties from it.
- When you create a promotion, the product photograph you supply is sent to Gemini’s image model to produce the artwork; if you animate a promotion, the finished artwork is sent to Google’s Veo model.
Other services
- Firebase Cloud Messaging (Google) — delivers push notifications to your device.
- verify.et — when you ask us to verify an Ethiopian bank transfer, the transaction reference and matching details are sent there to be checked.
- Telegram — content you choose to publish goes to the channel you connected. Anything posted to a channel is visible to everyone in it and is governed by Telegram’s own policies.
- Telebirr and Chapa — process subscription payments.
- Supabase — hosts the database, file storage and server functions that run the service.
Security and isolation
Each business’s data is isolated with row-level security and synced over encrypted connections. Only your team — with the access you grant them — can see it. Entitlement and permissions are enforced on the server, not only in the app, so access cannot be granted by modifying a phone.
Working offline
Suke keeps a copy of your business data on your device so the shop keeps working without a connection. That copy lives on your phone until you sign out or uninstall the app.
Keeping and deleting your data
We keep your business data for as long as your account is active, because it is the record of your business and you may need last year’s figures.
You can delete your account and its data at any time — from More → Delete account in the app, or from suke.et/delete-account if you no longer have the app. Nothing is erased for 30 days, so a mistaken tap can be undone; after that it is irreversible and reports, history and balances go with it. Payment and invoice records are kept for five years because tax law requires it, stripped of everything that identifies you. The full list of what goes and what stays is on that page.
Changes to this policy
If we change how your data is handled, we will update this page and the date above. Material changes — a new company receiving your data, for example — will be announced in the app rather than only here.
Contact
Questions about your data, or a request to export or delete it? Reach us via the contact form on our home page.