How we collect, use, and protect your information.
Last updated: October 9, 2026
SourceValidate is operated by O’Alomor & Co Investment LLC (“SourceValidate,” “we,” “us,” or “our”). This Privacy Policy explains what information we collect, how we use it, and the choices you have when you use our product authenticity verification platform and this website.
We collect information in the following ways:
SourceValidate is built entirely on Amazon Web Services (AWS). Verification data is stored in Amazon DynamoDB, static content is served through Amazon CloudFront, and access is protected with JWT-based authentication through Amazon Cognito. Data is encrypted in transit (HTTPS everywhere) and at rest. Each organization’s data is isolated within a multi-tenant architecture.
We do not sell your personal information. Limited product and scan information is displayed on the public verification page when a consumer scans a QR code. Detailed analytics and organization-level data are only accessible to authenticated members of your organization. We may share information with service providers who help us operate the platform, or when required by law.
We may use cookies and analytics tools, such as Google Analytics, to understand how our website is used and to improve it. You can control cookies through your browser settings.
Depending on your location, you may have rights to access, correct, or delete your personal information. To make a request, contact us using the details below.
We retain information for as long as necessary to provide the service, comply with legal obligations, resolve disputes, and enforce our agreements.
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date above.
If you have questions about this Privacy Policy or our data practices, contact us at contact@sourcevalidate.com or visit our contact page.