Legal Center
Status: Draft v0.9 — 11 August 2026 — legal and operational review required before publication. Current provider: Heritage Timepieces AB, org. no. 559491-1157, VAT SE559491115701, Kungsgatan 2C, 223 50 Lund, Sweden. Entity notice: Klocktech AB is under registration and is not the current contracting party. Registration alone does not transfer an agreement. Contacts: legal@heritagetp.com (legal/privacy) · info@heritagetp.com (general).
These terms govern connectors between Klocktech and a Customer's own website, marketplace, e-commerce, communication or other authorised account. A connector is available only through an official or contractually approved interface that enforces access to the Customer's own account and where the Customer has the necessary permissions. A licence, consent or accessible endpoint does not authorise a partner-stock feed, another dealer's account or item-level third-party dealer data.
By connecting an account, the Customer authorises Klocktech to use the granted credentials and scopes to perform the enabled actions. Depending on the connector, these may include creating and updating the Customer's own listings, sending product fields, prices and approved media, pausing or delisting, and receiving the Customer's own listing identifiers, order events or status updates.
The Customer must own or control the Connected Account, comply with its terms, keep credentials secure and grant no broader scope than necessary. Klocktech may store tokens securely and must revoke or delete them after disconnection, subject to short-lived backups and legal requirements.
Inbound access is limited to the authenticated Customer account and its own known listings, inventory, orders and events. A connector must not perform general marketplace search, external duplicate matching, competitor monitoring or collection of another dealer's information. Klocktech will not use scraping as a fallback if an official API is absent, restricted or withdrawn.
Adding a new platform is a Klocktech product or Professional Services workflow, not an end-user permission to create an arbitrary crawler. Custom connectors must follow the same source, security and provenance rules.
Connecting a platform does not automatically publish every watch. The Customer selects the destinations for each item or deliberately configures an approved automation. Where supported, Klocktech checks required fields, taxonomy, currency, language, image dimensions, watermark rules and other channel requirements before submission.
Each channel may support different actions. Klocktech should publish a capability matrix identifying create, update, media, price, reserve/pause, sold, delist and inbound event support. An unsupported action must be shown clearly and must not be simulated in a misleading way.
The Customer decides whether Klocktech is the operational source of truth. Reservation or sale updates are sent using the mechanism the destination officially supports. A third party may delay or reject the action. If a connector returns an error, stale status or uncertain result, the Customer must verify the live listing. Sold status takes precedence over reservation expiry.
Klocktech will maintain an exception and retry record where technically supported, but does not guarantee prevention of every double sale, stale listing or platform conflict.
Third-Party Services control their contracts, fees, policies, moderation, ranking, tax functions, buyer relationship, APIs and availability. The Customer remains responsible for them. Klocktech is not liable for a third party's outage, change, rejection, deletion, fee, suspension or data practice, although Klocktech remains responsible for its own breach of the Agreement.
The Customer authorises the transfer of selected Customer Data to a destination and acknowledges that the destination's terms and privacy practices apply once received. The DPA and Subprocessor Register identify when a vendor acts as a Klocktech subprocessor rather than an independent destination chosen by the Customer.
No connector may transmit personal data to a recipient outside the EU/EEA until the Customer's documented instruction, the parties' data-protection roles and a valid Chapter V GDPR mechanism have been identified. Where the destination is an independent controller, the Customer is responsible for entering any required controller-to-controller terms; Klocktech is responsible for implementing the transmission only after the applicable adequacy decision, Standard Contractual Clauses or other lawful safeguard has been documented.
The Customer can disconnect an account subject to any in-progress operation. Disconnection stops future synchronisation but may not remove live listings already held by a third party. The Customer is responsible for confirming, updating or deleting those listings. Klocktech may disconnect a connector for security, illegality, platform direction, expired credentials or material API change, with notice where practicable.