HomePrivacy Policy
Compliance & LGPD

Privacy Policy

How we protect and respect your data at Cash Store.

Last updated: May 10, 2026

Questions about Privacy?

Send your request through the contact form on this site, noting in the message field that it concerns privacy. The request is forwarded to our Data Protection Officer (DPO) and answered within the deadlines set by the LGPD.

1. Introduction

01

Cash Store (Tecnologia para Varejo Ltda) values your privacy. This policy describes how we collect, use, process and protect your information in accordance with Brazil's General Data Protection Law (LGPD - Law No. 13,709/2018) and other rules applicable to the payments market.

2. Data Collection

02

We collect data necessary to provide our payment services, including: merchant registration data (company name, CNPJ or CPF, partners, business address), contact data, transaction data (amount, date and identifiers for each transaction — such as card scheme and payment method for card transactions, or Pix key and transaction identifier for Pix transactions) and settlement data (receiving bank account and payout history).

3. Use of Information

03

Your data is used to: (a) review and approve your merchant onboarding; (b) process transactions, settlements and advances; (c) prevent fraud and comply with know-your-customer (KYC) obligations; (d) generate financial reports and payout reconciliation; (e) send critical communications about your operation.

4. Data Sharing

04

We do not sell your data. Your data is shared only with: (a) acquirers and sub-acquirers responsible for processing and settling transactions; (b) card schemes; (c) payment institutions and banks involved in the settlement chain; (d) the Brazilian Central Bank, when required by Brazilian Payment System regulation; (e) judicial authorities, when required by law.

5. Data Subject Rights (LGPD)

05

You have the right to: confirm the existence of processing, access your data, correct incomplete or inaccurate data, anonymize or block unnecessary data, request data portability, and revoke your consent at any time. To exercise any of these rights, send your request through the contact form on this site stating that it is a privacy request: we forward it to our Data Protection Officer (DPO) and answer within the deadlines set by the LGPD.

6. Security and Retention

06

We adopt information security best practices, including end-to-end encryption and card data tokenization. We retain your data for as long as your account is active or for the period required by applicable financial and tax regulation.

Frequently Asked Questions

What data is shared with acquirers and card schemes?

Only the data strictly necessary to process and settle transactions, such as amount, date, card scheme and the merchant's registration data.

How can I delete my account and data?

You can request deletion through the merchant portal or through the contact form on this site, which we forward to our Data Protection Officer (DPO), subject to the minimum retention period required by law.

Your security is our absolute priority.

We use data protection standards equivalent to those of financial institutions to keep your operation always protected.