Privacy policy

Last updated: 5 August 2026

What we store

When you install StoreTwin, we store the data the sync needs and nothing else: your product catalog (titles, descriptions, variants, options, barcodes, weights, images, tags, metafields), inventory levels per location, your store's locations, and the links between products in your paired stores. We also keep a journal of every write the app performs in your stores - that journal is what makes our sync verifiable.

We do not request, read or store customer data or order data. The app's access scopes are limited to products, inventory and locations.

Why we store it

To provide the sync and audit features you installed the app for. For nothing else. We do not analyse your data, do not aggregate it with other merchants' data, do not train models on it, do not sell it and do not share it with anyone.

How long

Catalog snapshots and the write journal are kept while the app is installed, trimmed on a rolling basis - drift reports for the window of your plan, journal entries after their writes are confirmed. If you uninstall, everything belonging to your store is erased within the period Shopify requires; access tokens are invalidated immediately.

How it is protected

Everything is encrypted in transit and at rest. Each store's access token is encrypted with its own key, and that key is stored wrapped by a master key that lives only in the running service's environment. Nobody browses your data: there is no console that shows it.

This website

The public pages of this site set no cookies and collect no identifiers. The app itself - everything behind your Shopify admin - carries no analytics at all.

Requests from Shopify

When Shopify forwards a data request or a deletion request for a store, we answer it within the required period. Since we hold no customer records, customer-level requests are confirmed as a no-op; store-level deletion removes everything listed above.