This policy explains what we collect, why, and what we never touch. The short version: we read the minimum your store must share to build your app, we never see payment data, and we sell nothing to anyone.
1. What we collect
Merchant account data. Your name, email, company details, and Shopify store domain when you book a demo, join the beta, or create an account.
Store data via scoped, read-only access. To generate your app, the Store Analyzer reads your theme settings (colors, fonts, sections), product catalog, collections, navigation menus, and store metadata through Shopify's APIs. Access is granted through Shopify's authorization flow with scoped tokens, we never ask for, store, or accept your Shopify admin password.
App analytics. Generated apps report basic operational events (installs, sessions, crashes, push delivery) so we can meet our quality commitments. These are aggregated per store.
Website data. Standard server logs and, if you accept them, analytics cookies on this site.
2. What we never collect
- Payment or card data, checkout runs entirely on Shopify's rails, and payment details never pass through Fluttify systems.
- Your customers' passwords, shopper sign-in uses Shopify's own customer authentication (OAuth); credentials go to Shopify, not us.
- Shopify admin credentials, scoped tokens only, revocable by you at any time from your Shopify admin.
3. How we use data
- To analyze your storefront and generate your app configuration.
- To build, test, and submit your iOS and Android apps.
- To keep your app's catalog in sync with your store.
- To deliver push notifications you compose and schedule.
- To support you during onboarding, review, and after launch.
4. Your shoppers' data
For data your app handles about your customers, you are the data controller and Provis Technologies is a processor acting on your instructions. Shopper data (carts, orders, account details) flows between the app and Shopify; we process only what is needed to render it in the app and do not use it for any other purpose. Push notification tokens are stored solely to deliver your messages.
5. Sharing
We do not sell or rent data. We share it only with: Shopify (to operate the integration you authorized), Apple and Google (to submit and distribute your app under your developer accounts), and infrastructure providers under data-processing agreements. If law requires disclosure, we notify you unless legally barred.
6. Retention & deletion
Store data is retained while your account is active. If you disconnect Fluttify or revoke access from your Shopify admin, synced store data is deleted from our systems within 30 days; build artifacts you own can be exported first on request. Aggregated, non-identifying metrics may be retained.
7. Your rights
Depending on your region (including under GDPR and CCPA), you may request access, correction, export, or deletion of your personal data, and object to or restrict processing. Write to info@fluttify.in, we respond within 30 days.
8. Changes
We will post updates here and, for material changes, email account holders before they take effect. Questions: info@fluttify.in.