Privacy Policy. This page is ready

Privacy Policy

Last updated: July 7, 2026

Build Your Own Bundle ("the App") helps Shopify merchants create and sell product bundles. This policy describes what data we collect, how we use it, and your rights.

Data we collect

When you install the App, we receive your shop domain, granted OAuth scopes, and an encrypted offline access token so the App can read products and orders required for bundle functionality. We store bundle configurations you create, app settings, pseudonymized order summaries linked to bundles (keyed by Shopify order ID without customer names, emails, or shipping addresses), and webhook delivery logs for debugging.

How we use data

Data is used solely to operate the App: displaying bundles on your storefront, applying pricing at checkout via cart expansion, syncing inventory, billing your subscription, and showing analytics in the admin.

Data retention and deletion

When you uninstall the App, we revoke your access token and delete your bundle configurations, order summaries, and related merchant data from our database. Shopify also sends mandatory privacy webhooks (`customers/data_request`, `customers/redact`, `shop/redact`). We do not store customer email or address; order summaries are keyed by Shopify order id only. Shop installation metadata may be retained in deactivated form for fraud prevention and billing reconciliation.

Third parties

The App runs on Vercel (hosting) and Supabase (database). Shopify processes checkout and customer data under Shopify's own policies. We do not sell merchant or customer data.

Contact

For privacy requests, contact your app support email listed on the Shopify App Store listing.