Privacy policy
Last updated 2 October 2026
Cho Dey is a pre-order app for make-to-order sellers in Ghana, operated by Archibold Bernard. This policy explains what we collect, why, who we share it with and how to get it deleted. It covers the Cho Dey seller app and this website, including the order pages at /d/…, /o/… and /s/….
There are two kinds of people here and they are treated differently. Sellers have an account and sign in. Customers have no account at all — they open a link, order, and pay.
Data we get from Google sign-in
Sellers sign in with Google or with Apple. When you sign in with Google we request only the standard sign-in scopes — openid, email and profile — and from them we receive:
- your name,
- your email address,
- the URL of your Google profile picture, and
- the Google account identifier that tells us it is the same you next time.
We use that data for one purpose: to create your seller account and sign you back in, including on a new or reinstalled phone. Your name and email also let us answer you when you contact support.
We do not request access to Gmail, Drive, Contacts, Calendar, Photos or any other Google service, we do not read or write anything in your Google account, and we do not use Google sign-in data for advertising, profiling, or training machine-learning models. We do not sell it, and we do not share it with anyone outside the service providers listed below.
Cho Dey's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
You can withdraw our access at any time from your Google account permissions page. That stops future sign-ins; to have the account and its data deleted as well, see Deleting your data.
Signing in with Apple works the same way and gives us the same three things — name, email address and an account identifier. If you use Apple's Hide My Email, we only ever see the relay address.
What sellers give us in the app
- Your business. Business name, the phone number you want to be reached on, what you sell, a short description, your area, and your public storefront handle.
- Licences. If you record them: the kind of licence (FDA, health certificate, registration), its reference number, its expiry date, and a photo of it.
- What you sell and what you spend. Menu items and their photos, ingredients, stock, drops, and the entries in your books.
- Your device, for notifications. A push token and the platform (Android or iOS), so we can tell your phone when an order is paid. One row per device; signing out hands it back, and we delete tokens the platform tells us are dead.
Your phone number is published. The number in your profile is shown to customers on your drop pages and your storefront, as a WhatsApp link and a call link, so they can reach you before they pay. That is what it is for. Leave it blank and no contact is shown — though a drop cannot be published without one.
What customers give us when they order
- Their name and a phone number to be reached on.
- A delivery address, if they chose delivery.
- What they ordered, any options and any note, and the amount.
- A payment reference from Paystack, so we can confirm the payment.
That information is shared with the seller the order was placed with — they need it to make the order and hand it over — and with our payment processor. It is not shown to any other seller. Customers do not have accounts, and we do not build a profile across sellers.
We never see card or Mobile Money credentials. Payment is completed on Paystack's own page; we receive only the result and a reference.
Who we share data with
We use a small number of service providers, and only to run the service:
- Convex — hosts the database and backend where all of the above is stored.
- Paystack — takes the customer's payment and tells us whether it succeeded.
- Expo, and through it Apple and Google — delivers push notifications to a seller's phone.
- Google and Apple — authenticate sellers at sign-in.
We do not sell personal data, we do not share it with advertisers or data brokers, and we do not use it to train machine-learning models. We will disclose data if the law requires it, and we would tell you unless we are forbidden to.
Where it is held, and for how long
Data is stored by Convex on servers outside Ghana, which means your information is transferred abroad to be processed. It travels over HTTPS. Keys that could be used to act on your behalf — our payment keys, our sign-in secrets — are held on the backend and are never present in the app or on this website.
Seller data is kept for as long as the account exists. Orders are kept while they are live and afterwards as the seller's own record of their sales, which is also what their books are built from. Dead push tokens are deleted as soon as the platform reports them.
Deleting your data
Email archibold.bernard@halbestunde.com from the address you signed in with and ask us to delete your account. We will delete your seller account, your profile, your menu, your stock, your books, your drops and the orders on them within 30 days, and confirm when it is done. There is no in-app delete button yet; this is the way to do it.
A customer who wants their order details removed should email the same address with the pickup code from the order.
Your rights
Under Ghana's Data Protection Act, 2012 (Act 843) you may ask us what we hold about you, ask us to correct it, ask us to delete it, or object to how we use it. Email archibold.bernard@halbestunde.com and we will answer within 30 days. You can also complain to the Data Protection Commission of Ghana.
Children
Cho Dey is for people running a business and is not directed at children. We do not knowingly collect data from anyone under 18.
Changes
If we change what we collect or what we do with it, we will update this page and the date at the top, and tell sellers in the app before the change takes effect.
Contact
Archibold Bernard, Accra, Ghana — archibold.bernard@halbestunde.com
See also the terms of service.