Privacy Policy
Last updated: July 2026
For installed merchants, the in-app Privacy Policy at
/app/legal/privacy is the authoritative version.
What we store
When you install the app, we back up your store's products, their variants, and their product metafields. Each backup is encrypted with a key unique to your store before it is written to storage, and we keep every version while you are subscribed.
What we deliberately do NOT store
We do not request access to, and never store, your customers or
orders. Backups contain your product catalog, not your
customers' personal information. If Shopify sends us a
customers/data_request or customer redaction webhook for
your store, our answer is "no customer data held", and we run a defensive
sweep regardless.
How your data is protected
- Encrypted at rest with AES-256-GCM under a per-store derived key; one store's key cannot decrypt another store's backups.
- Stored in professionally operated object storage with redundant copies.
- Your Shopify access token is encrypted at rest and used only to run your backups and the restores you initiate.
- Every backup is integrity-verified with cryptographic hashes before it is marked good; every restore writes an audit record.
How long we keep it
Every version is kept while you are subscribed, on a free or paid plan.
If you uninstall the app, your backups are retained for
30 days so a reinstall picks your history right back up,
then permanently and automatically erased from the
database and object storage. The purge is audited. A Shopify
shop/redact request triggers the same full erasure.
Who can see your data
Nobody but you and the app. We do not sell, share, aggregate, or train on your data. Our staff access backup payloads only when you ask us for support that requires it, and that access is logged.
Contact
Privacy questions or data requests: [email protected]. A human answers.