Privacy Policy

Last updated: December 20, 2024

1. Introduction

OrderShifter ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Shopify application and services.

2. Information We Collect

2.1 Information from Shopify

When you install OrderShifter, we collect:

  • Store information (shop domain, store name)
  • Order data (order details, customer shipping information, line items)
  • Product information (SKUs, titles, variants)
  • Store owner contact information

2.2 Usage Information

We automatically collect:

  • Log data (IP addresses, browser type, access times)
  • App usage statistics and analytics
  • Error logs and performance metrics

3. How We Use Your Information

We use the collected information to:

  • Provide and maintain our order management and exception detection services
  • Validate and verify order data before WMS export
  • Detect and prevent order exceptions and errors
  • Generate reports and analytics for your 3PL operations
  • Improve our application and develop new features
  • Communicate with you about service updates and support
  • Comply with legal obligations

4. Data Sharing and Disclosure

4.1 We do NOT sell your data

We will never sell, rent, or trade your personal information or order data to third parties.

4.2 Service Providers

We may share your information with trusted service providers who assist us in:

  • Cloud hosting (Vercel, Neon Database)
  • Application monitoring and error tracking
  • Customer support services

These service providers are contractually obligated to protect your information and use it only for the purposes we specify.

4.3 Legal Requirements

We may disclose your information if required to do so by law or in response to valid requests by public authorities.

5. Data Security

We implement appropriate technical and organizational security measures to protect your information:

  • Encryption of data in transit (HTTPS/TLS)
  • Encryption of data at rest
  • Regular security assessments
  • Access controls and authentication
  • Secure database infrastructure

6. Data Retention

We retain your information only as long as necessary to provide our services and comply with legal obligations. When you uninstall OrderShifter, we will delete your data within 30 days unless we are required to retain it for legal or regulatory purposes.

7. Your Rights

You have the right to:

  • Access your personal information
  • Correct inaccurate data
  • Request deletion of your data
  • Object to processing of your data
  • Export your data in a portable format

To exercise these rights, please contact us at privacy@ordershifter.com or use the data request features in the Shopify admin.

8. Shopify GDPR Compliance

OrderShifter complies with Shopify's GDPR requirements. We:

  • Respond to customer data requests within 30 days
  • Support customer data redaction requests
  • Support shop data deletion upon uninstall
  • Maintain mandatory compliance webhooks

9. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure that such transfers comply with applicable data protection laws and that appropriate safeguards are in place.

10. Children's Privacy

OrderShifter is designed for business use and is not intended for individuals under the age of 18. We do not knowingly collect personal information from children.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. You are advised to review this Privacy Policy periodically for any changes.

12. Contact Us

If you have any questions about this Privacy Policy, please contact us:

  • Email: privacy@ordershifter.com
  • Website: https://ordershifter.com

Shopify-Specific Data Handling

Customer Data Requests

We honor all customer data requests submitted through Shopify. When a store owner receives a customer data request, we will provide all personal data we have collected about that customer within 30 days.

Customer Data Redaction

When a store owner requests customer data redaction, we will permanently delete all personal information associated with that customer from our systems within 30 days.

Shop Data Deletion

When you uninstall OrderShifter or request shop data deletion, we will delete all your shop data, including orders, exceptions, and export logs, within 30 days. We may retain anonymized analytics data for service improvement purposes.