Privacy contact: n3wai100@gmail.com.
1. Scope and roles
This policy applies to the CommerceLatch Shopify app and its public website. CommerceLatch processes merchant store data to provide promotion configuration checks, Storefront-cart proof, release receipts, support, security, and legal compliance. Shopify separately processes information under its own terms and privacy policy.
2. Data we process
| Data | Purpose | Storage |
|---|---|---|
| Shop domain, OAuth session, access token, approved scopes, and merchant-user metadata Shopify supplies with a session | Authenticate the installed store and call the Shopify Admin API | Until uninstall or deletion is required |
| Discount, product, and assigned-Market configuration, including campaign titles, codes, targets, status, limits, prices, countries, and currencies | Run configuration checks and choose the required cart contexts | Processed for the request; raw titles, codes, product identifiers, and Market IDs are not stored in proof receipts |
| Guest-cart result, expected and actual allocation, outcome, timing, and keyed pseudonymous references | Prove the promotion outcome and create a release receipt | Up to 30 days or until uninstall, whichever comes first |
| Optional test-shopper authorization state and access credential, if this capability is made available | Test a promotion that requires an explicitly connected Shopify customer context | State expires after ten minutes. The access credential is encrypted at rest, is never written to a proof receipt or log, and is deleted on disconnect, invalidation, or uninstall. CommerceLatch does not query or store the shopper’s email, profile, orders, or address. |
| Webhook ID, shop domain, topic, and timestamps | Show that a promotion changed and prevent duplicate processing | Until verified or uninstall |
| Optional future-price choice and founding-credit status | Evaluate pricing and preserve the stated founding credit | Until uninstall |
| Name, reply email, and message submitted through the website contact form | Deliver and respond to the inquiry | Sent through Resend to the support inbox. CommerceLatch does not store the message in its application database; the email copy is retained under the support inbox and provider retention settings. |
| Minimal request and security logs | Operate and protect the service; URLs are logged without query strings | Up to 30 days |
3. Data CommerceLatch does not request
CommerceLatch does not request Shopify Admin customer, order, payment, revenue, reporting, theme, or checkout scopes. Shopper proof uses a guest cart by default. If connected test-shopper proof is made available and the merchant explicitly enables it, CommerceLatch uses the encrypted authorization credential only as Storefront cart buyer identity and does not query Customer Account profile data. Shopper proof never creates an order or payment. CommerceLatch does not sell merchant data or use it for cross-context behavioral advertising.
4. Sharing and processing locations
CommerceLatch uses these subprocessors to operate the service: Shopify, Railway, Cloudflare, and Resend. Resend processes website inquiries only when a visitor submits the contact form.
Processing locations: the Netherlands and Singapore. Information may also be processed where Shopify and the merchant operate. We disclose data when legally required, to protect the service, or during a business transfer subject to appropriate safeguards.
5. Security and deletion
CommerceLatch uses TLS, least-privilege Shopify scopes, bounded requests, keyed pseudonymous references, sanitized evidence, and authenticated Shopify webhooks. No method is completely secure, so we continuously limit what is retained.
Uninstall and Shopify's shop/redact webhook delete sessions, pending promotion changes, saved app-managed shopper scenarios, proof receipts, and founding-access data associated with the store. CommerceLatch does not store Shopify customer records, so customer data-access and deletion requests normally have no customer records to return or erase.
6. Choices and rights
Depending on your location, you may request access, correction, deletion, restriction, objection, or portability for personal information controlled by CommerceLatch. Send a request from an address associated with the store to n3wai100@gmail.com. We may verify authority before acting.
7. Changes and contact
Material changes will be posted here with a new effective date. Contact: n3wai100@gmail.com.