Kelmar Vehicles Ltd
Privacy policy
Effective and last updated: 17 July 2026
Purpose and publisher
Kelmar Vehicle Scanner is published by Kelmar Vehicles Ltd for an authorised vehicle-trading workflow. It helps a user explicitly scan Facebook Marketplace vehicle adverts against configured filters and send structured results to the private sourcing dashboard at sourcing.kelmarvehiclesltd.co.uk.
Facebook Marketplace data
Only after an explicit scan start, the extension processes Marketplace search and advert content available through the user’s existing signed-in browser session. This can include the advert ID and URL, title, price, year, mileage and displayed unit, vehicle description, attributes, images, vehicle location, seller type, seller display name and Facebook profile URL, make/model evidence, transmission and fuel type, listing timestamps, and bounded evidence used to detect disclosed insurance categories.
The extension does not collect Facebook passwords. Facebook authentication cookies are used by Chrome to load authorised listing pages but are not included in dashboard uploads. The extension does not read Facebook messages or traverse seller profiles.
Data sent to and stored by the dashboard
Scan settings, progress, listing outcomes and the structured advert fields above are transmitted over HTTPS to the private dashboard. The dashboard stores scan history, saved-vehicle workflow statuses, shared dealership notes, confirmed vehicle registration numbers and registration confirmation audit metadata. Historic registration-photo candidate records created during earlier testing may also retain their review outcome until deleted. Dashboard accounts store an email address and a one-way password hash; passwords are not stored in plaintext.
Authorised dashboard users within the dealership can view this information. Hosting and database infrastructure is provided by Vercel and Neon as service providers necessary to operate the dashboard.
DVSA MOT history
After an authorised dealership user explicitly requests a lookup for a confirmed registration, the dashboard sends that registration server-to-server to the Driver and Vehicle Standards Agency MOT History API. It stores only normalized MOT fields, lookup metadata and a response fingerprint. Raw DVSA responses, tax, keeper, ownership, finance and insurance data are not stored. Results are cached and separated by advert and confirmed registration.
Registration entry
The current dashboard uses manual registration entry only. An authorised dealership user must check the advert evidence and explicitly confirm or replace a registration before it can be used for an MOT lookup. Photo analysis is not currently available in the dashboard.
The dashboard does not upload Facebook cookies or archive a new image copy for registration entry.
Data stored locally in Chrome
chrome.storage.local stores the chosen dashboard URL, the private extension API token, filter and limit settings, scan recovery state, progress, pending uploads and bounded listing-result caches. Listing cache entries expire after 30 days. The API token is used only to authenticate the extension to the dashboard and should not be shared or included in screenshots.
Use, sharing and limited use
Data is used only to provide, maintain and secure the vehicle-sourcing workflow described above. Kelmar Vehicles Ltd does not sell this data, use it for advertising, build unrelated tracking profiles, or share it for unrelated purposes. Human access is limited to authorised dealership users and, when necessary, support/security investigation with the requesting user’s permission or where required by law.
Use of information obtained through the extension complies with the Chrome Web Store User Data Policy, including its Limited Use requirements.
Retention and deletion
Local active-run data remains until the run completes, is discarded, or the user clears local state. Cached listing results expire after 30 days. Dashboard scan, Saved Vehicle, confirmed registration and any historic registration-candidate review records are retained for the dealership sourcing workflow until an authorised user deletes applicable data or requests deletion. Deleting a scan does not automatically delete a persistent Saved Vehicle status, note or confirmed registration.
There is currently no complete self-service account/data-erasure tool. To request access, correction or deletion of dashboard, Saved Vehicle or account data, email dev@kelmarvehiclesltd.co.uk. Uninstalling the extension removes its local Chrome storage but does not delete data already synchronised to the dashboard.
Security
Dashboard transfers use HTTPS and a private Bearer token. Dashboard pages require authentication, extension origins are allow-listed exactly, request bodies are bounded and validated, and account passwords are hashed. No internet service can be guaranteed completely secure; please report suspected exposure promptly so credentials can be revoked.
Contact and changes
Privacy questions and deletion requests: dev@kelmarvehiclesltd.co.uk. Material policy changes will be reflected on this page with a revised updated date.
For setup help, see Kelmar Vehicle Scanner support.