Allstar Merchant Processing, LLC – Privacy Policy

Last Updated: March 02, 2025

At Allstar Merchant Processing, LLC (“Allstar Merchant,” “we,” “us,” or “our”), proudly partnered with Elavon, we are committed to protecting the privacy of your information. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal and business data when you use our payment processing services (“Services”).


1. Information We Collect

We collect various types of information to provide and improve our Services:

A. Information You Provide Directly:

  • Account Information: When you sign up for our Services, we collect business and personal information necessary to set up your account and fulfill our “Know Your Customer” (KYC) obligations. This may include your business name, legal entity type, tax identification number, business address, contact person’s name, email address, phone number, bank account details, and in some cases, beneficial ownership information.
  • Payment Information: While we primarily act as a gateway, for certain services or billing, we may collect your credit card numbers or other payment details. However, we do not store sensitive Cardholder Data (like full credit card numbers or CVV codes) on our systems for your customers’ transactions. This data is securely transmitted directly to our processing partner, Elavon, and the card networks.
  • Communications: When you communicate with us (e.g., customer support inquiries, feedback), we collect the content of your communications, your email address, and any other information you choose to provide.

B. Information We Collect Automatically:

  • Device Information: We collect information about the device and software you use to access our Services, including your Internet Protocol (IP) address, browser type, operating system, device identifiers, and mobile network information.
  • Usage Information: We collect information about your interactions with our Services, such as the pages you view, features you use, transaction volumes, dates and times of your sessions, and other activities related to your use of our platform.
  • Cookies and Tracking Technologies: We use “cookies” and similar tracking technologies (e.g., web beacons, pixels) to collect information about your Browse behavior.
    • Cookies: Small text files stored on your device that help us remember your preferences, enhance your experience, and provide analytical data.
    • Purpose of Cookies: We use cookies for:
      • Session Management: To keep you logged in and enable core functionality.
      • Preferences: To remember your settings and preferences.
      • Security: For security purposes, such as preventing fraudulent activity.
      • Analytics: To understand how users interact with our website and Services, helping us improve them.
      • Advertising: To deliver relevant advertisements to you based on your interests.
  • Location Information: We may collect or infer your general location information based on your IP address.

C. Information We Receive from Third Parties:

  • Our Partners (Elavon): As we are partnered with Elavon, we exchange data with them to facilitate payment processing, fraud prevention, and compliance.
  • Financial Institutions and Payment Processors: We may receive information from financial institutions, payment networks, and credit bureaus for identity verification, risk assessment, and fraud prevention purposes.
  • Publicly Available Sources: We may collect information from public databases or other public sources to verify your business and identity.

2. How We Use Your Information

We use the information we collect for the following purposes:

  • To Provide and Maintain Our Services: To process your transactions, manage your account, provide customer support, and deliver the core functionalities of our payment processing services.
  • To Improve and Personalize Services: To analyze usage trends, develop new features, enhance the user experience, and tailor our offerings to your specific business needs.
  • For Security and Fraud Prevention: To detect and prevent fraudulent transactions, unauthorized access, and other illegal activities, protecting both you and your Customers.
  • For Compliance and Legal Obligations: To comply with applicable laws, regulations (e.g., PCI DSS, anti-money laundering laws), court orders, and governmental requests. This includes verifying your identity and conducting due diligence.
  • For Communication: To send you service-related announcements, updates, security alerts, and administrative messages. We may also send you marketing communications about our Services that we believe may be of interest to you, from which you can opt-out.
  • For Analytics and Reporting: To generate aggregated, anonymized data for internal analysis, reporting, and marketing purposes.
  • For Upselling and Cross-selling: To leverage insights into customer behavior to suggest related products or services, as advertised on our website.

3. How We Share Your Information

We may share your information with the following categories of third parties:

  • Our Partner (Elavon): We share necessary information with Elavon to facilitate payment processing, settlement, risk management, and compliance with card network rules.
  • Service Providers: We engage third-party service providers to perform functions on our behalf, such as cloud hosting, data analytics, customer support, marketing, and security services. These providers are contractually obligated to protect your data and only use it for the purposes for which it was disclosed.
  • Financial Institutions and Card Networks: We share transaction data with banks, credit card networks (e.g., Visa, Mastercard), and other financial institutions involved in the payment ecosystem to process transactions and resolve disputes.
  • Legal and Regulatory Authorities: We may disclose your information if required by law, subpoena, or other legal process, or if we believe in good faith that such disclosure is necessary to protect our rights, your safety, or the safety of others, investigate fraud, or respond to a government request.
  • Business Transfers: In the event of a merger, acquisition, sale of assets, or bankruptcy, your information may be transferred as part of the transaction. We will notify you via email or a prominent notice on our website of any such change in ownership or control of your personal data.
  • Aggregated or Anonymized Data: We may share aggregated or anonymized data that does not directly identify you with third parties for research, marketing, analytics, or other business purposes.
  • Mobile Information: No mobile information will be obtained from and/or shared with third parties or affiliates for marketing or promotional purposes. All the above categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.

4. SMS Messaging

By consenting to receive messages from us, you are authorizing us to send you text messages and notifications. Message and data rates may apply. Message frequency may vary. You can always decline or stop receiving messages by responding “STOP” at any time. For more information, reply ‘HELP’.


5. Opt-In for Communications

When you provide your contact information, you agree to:

  • Receive service-related messages.
  • Receive promotional messages (maximum 4 messages per month).

Message and data rates may apply. You can unsubscribe from promotional messages by texting STOP.


6. Data Security

We implement robust technical, administrative, and physical security measures to protect your information from unauthorized access, loss, misuse, alteration, or destruction. These measures include:

  • Encryption: Using industry-standard encryption for data in transit and at rest.
  • Access Controls: Restricting access to personal data to authorized personnel only on a need-to-know basis.
  • Firewalls and Intrusion Detection Systems: To protect our networks and systems.
  • Regular Security Audits and Vulnerability Assessments: To identify and address potential security weaknesses.
  • PCI DSS Compliance: We maintain PCI DSS compliance to ensure the secure handling of Cardholder Data.

While we strive to protect your personal data, no method of transmission over the Internet or method of electronic storage is 100% secure. Therefore, we cannot guarantee its absolute security.


7. Data Retention

We retain your information for as long as necessary to provide our Services, comply with our legal and regulatory obligations (e.g., tax, anti-money laundering, PCI DSS requirements), resolve disputes, enforce our agreements, and for legitimate business purposes. The specific retention periods vary depending on the type of data and the purpose for which it was collected.


8. Your Data Rights

Depending on your jurisdiction, you may have certain rights regarding your personal data, including:

  • Access: The right to request a copy of the personal data we hold about you.
  • Rectification: The right to request correction of inaccurate or incomplete personal data.
  • Erasure: The right to request deletion of your personal data under certain circumstances.
  • Restriction of Processing: The right to request that we restrict the processing of your personal data under certain circumstances.
     
  • Data Portability: The right to receive your personal data in a structured, commonly used, and machine-readable format.
  • Objection to Processing: The right to object to the processing of your personal data under certain circumstances.
  • Withdraw Consent: Where we rely on your consent to process your personal data, you have the right to withdraw that consent at any time.

To exercise any of these rights, please contact us using the details provided in the “Contact Us” section below. We will respond to your request in accordance with applicable laws.


9. Third-Party Websites/Services

Our website and Services may contain links to third-party websites or services that are not operated by us. This Privacy Policy does not apply to the practices of those third parties. We encourage you to review the privacy policies of any third-party sites or services you visit.


10. Children’s Privacy

Our Services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and believe your child has provided us with personal information, please contact us, and we will take steps to delete such information.


11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by posting the updated Privacy Policy on our website with a new “Last Updated” date or by sending you an email notification. Your continued use of our Services after the effective date of the revised Privacy Policy constitutes your acceptance of the changes.


12. Contact Us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:

Allstar Merchant Processing, LLC
Email: info@allstarmerchant.com
Phone: +1 251 428 2501