This policy describes what data ShipsBy (“the App”), published by Leria Technologies (“we”, “us”), processes when a merchant installs it from the Shopify App Store, and how we handle privacy requests. We wrote it to be read, not skimmed — it is short because the App genuinely processes very little data.
The short version
- We store your shop's settings — nothing about your customers.
- The storefront widget makes no network calls to our servers and sets no cookies.
- We collect no buyer personal data of any kind: no names, emails, addresses, order contents, IP addresses, or individual browsing behavior.
- When you uninstall, your data is deleted within 30 days.
1. Data we process
When you install the App, we store the following, all of it shop-level merchant data:
- Shop identification: your
myshopify.comshop domain and the API access token Shopify issues to the App, used solely to operate the App for your store. - Merchant-entered delivery settings: cutoff time, processing days, dispatch days, holidays, shipping zones and transit times, overrides, widget style and text settings, and your selected plan.
- Aggregate usage counters: a single daily count of how many times your widget was displayed (e.g. “2026-07-17: 431 impressions”). This is one number per shop per day. It contains no visitor identifiers, no IP addresses, no page URLs, and cannot be traced back to any individual.
- Support correspondence: if you email us, we keep the email thread so we can help you.
2. Data we do not collect
The App does not collect, store, or process any personal data about your customers or storefront visitors. Specifically, the App never accesses or stores:
- Customer names, email addresses, phone numbers, or shipping/billing addresses
- Order data or purchase history
- Visitor IP addresses, device identifiers, or fingerprints
- Individual browsing or click behavior
The storefront widget renders entirely from configuration embedded in your shop's pages (a shop metafield). It makes no network requests to our servers to display the estimate, sets no cookies, and uses no local storage on your customers' browsers. On the Pro plan, the visitor's country is read from the localization context that Shopify Markets already exposes to your theme — this happens in the visitor's browser and is never transmitted to us.
3. How we use the data
- To compute and display delivery estimates on your storefront according to your settings.
- To show you your widget impression trend in the App's dashboard.
- To provide support when you contact us.
We do not sell or rent any data. We do not use your data for advertising. We do not share your data with third parties except the infrastructure providers listed below.
4. Where the data lives
Your settings are stored in the App's production database hosted with our cloud hosting provider, and a copy of your widget configuration is stored in a metafield on your own shop (inside Shopify's infrastructure) so the widget can render without contacting us. Access to production systems is limited to the App's developer and protected by authentication.
5. GDPR and privacy requests
The App implements all three mandatory Shopify privacy webhooks, and they are honored automatically:
customers/data_request— a customer asks for their data. Because the App stores no customer data, there is nothing to export; we respond confirming that no data is held for the customer.customers/redact— a customer asks for deletion. Same outcome: the App holds no customer data, and the request is acknowledged with nothing to delete.shop/redact— sent by Shopify 48 hours after you uninstall the App. We permanently delete your shop's settings, access token, and aggregate counters from our database within 30 days of receiving it.
If you are a merchant in the EU/EEA, UK, or a jurisdiction with similar rights, you may also request access, correction, or deletion of the shop-level data we hold about your store at any time by emailing us — we will respond within 30 days.
6. Data retention
- While the App is installed: settings and aggregate counters are retained so the App can function.
- After uninstall: everything is deleted within 30 days via the
shop/redactflow described above. - Support emails: retained for up to 24 months so we have context if you contact us again, then deleted.
7. Changes to this policy
If we ever change what the App collects — for example, if a future feature requires new data — we will update this page, change the effective date at the top, and summarize the change in the App's changelog before it takes effect.
8. Contact
Questions, or a privacy request? Email anadvisory.fr@gmail.com. We read everything and reply within one business day.