Privacy Policy
Draft: this policy is pending legal review. It is written from the app's actual behavior and will be finalized before any public App Store listing.
This policy describes what the Mix & Match Shopify app collects, why, where it is kept, and when it is deleted. Last updated 2026-08-28.
Who this covers
Mix & Match is installed by merchants (shops) on Shopify. It has custom distribution, meaning it is installed one shop at a time by us, not through the public App Store. This policy describes what happens for any shop that installs it.
What we collect
From the merchant's store, the app stores a shop-level OAuth session: the shop-scoped offline access token (and its refresh token), your shop's myshopify.com domain, and the permissions you granted at install. This is how the app authenticates its calls to Shopify's Admin API on your shop's behalf. We do not collect the installing staff member's name, email, or any other personal details — the app uses offline (shop-level) tokens only.
Which storefront surfaces your shop is entitled to show is written as app-owned metafields on your shop's app installation — configuration that lives in Shopify's infrastructure, not our database, and contains no personal data. Your subscription itself lives in Shopify's Billing API; we keep no separate copy. During a billing approval we briefly store a hold record (your shop domain and a timestamp) that is consumed or expires within minutes. For shops we grant complimentary access, we keep an internal record (shop domain, reason, timestamps) that has no merchant-facing UI.
Set templates you create in the app are stored as metaobjects in your own Shopify store — Shopify hosts them, they belong to your shop, and they contain configuration (products, labels, discount settings), not personal data.
From shoppers on your storefront: nothing. The storefront component runs entirely in the shopper's browser and only calls your store's own Shopify-hosted endpoints (product data, the cart, discount codes). It does not call any endpoint of ours, sets no tracking cookies, and sends no analytics beacons. We do not collect or store customer (shopper) personal data of any kind — no names, emails, addresses, or order history.
Why we collect it
The session lets the app make authenticated Admin API calls (reading products, writing discounts) on your behalf — this is how Shopify apps work. The entitlement metafields let your storefront theme know, at render time, which surfaces your plan includes. The billing hold keeps billing updates consistent while an approval is in flight. The complimentary-access record exists purely so we can grant free access manually.
Where it is kept
The hosted app runs on Fly.io in Los Angeles, United States. Its database is Postgres, hosted by Prisma Data Platform. Entitlement metafields and your set-template metaobjects live in Shopify's own infrastructure, and your subscription lives in Shopify's Billing API.
Retention
Session data, entitlement state, and any billing hold are deleted when your shop uninstalls the app, and Shopify's mandatory shop-redact webhook triggers a second deletion pass some time after uninstall. Complimentary-access records are removed manually on request. Nothing shopper-related exists to retain.
GDPR / data subject requests
Mix & Match subscribes to Shopify's three mandatory compliance webhooks. Customer data-request and customer-redact requests are recorded as no-ops, because we never collect customer (shopper) personal data — there is nothing to disclose or delete. Shop-redact deletes your shop's session data from our database. The app also receives operational shop-level webhooks (uninstall, permission updates, subscription updates); these carry no personal data. If you believe we hold data about you and want it reviewed or removed, contact us directly — see below — in addition to Shopify's automated flow.
Contact
Email dev@robwolf.io and include your myshopify.com domain so we can find your store.
Changes to this policy
This is a living document tied to the app's actual behavior. As new storefront surfaces or billing features ship, it will be reviewed and updated to match.