Privacy Policy
Last updated: August 2026
PriceLedger ("the App", "we") is a Shopify app that helps merchants comply with the EU Omnibus Directive by recording product price changes and showing the lowest price of the last 30 days during sales. This policy explains what data the App collects, why, and how long it is kept.
1. Information we collect
Store information
- Your store domain, for example your-store.myshopify.com
- Store name and contact email, as provided by Shopify
- App plan and subscription status
Price records
- Product and variant titles, and SKU
- Variant prices and the time of each change
- A sync status flag for each record
What we do not collect
We do not collect or store shopper personal data. No customer names, emails, addresses, or payment details. The App works with your catalog and prices only.
2. Why we collect it
- To identify your store and keep the App running
- To build the 30-day lowest-price record for each variant
- To power the storefront badge during sales
- To produce the audit log you can export as evidence
3. Where data is stored
Data is stored in isolated, secure PostgreSQL database infrastructure hosted in certified enterprise data centers. Access is strictly restricted to automated backend application processes with least-privilege security isolation.
4. Data retention
- Price records are kept while the App is installed. A nightly job prunes records older than 60 days.
- After uninstall, remaining price records are kept for 60 days as your compliance evidence, then deleted.
- Shopify session tokens are removed on uninstall.
- Reinstalling within those 60 days keeps your history available in the audit log. Because prices changed while the App was removed cannot be observed, badge claims after a reinstall start from your return date and rebuild to the full 30-day claim over the following 30 days.
5. Sharing
We do not sell or rent data. Data is processed only by:
- Our verified infrastructure and database hosting providers under standard Data Processing Agreements (DPAs) and strict confidentiality terms.
- Shopify, as required by platform policies and automated compliance audits.
6. Shopify privacy compliance
The App follows Shopify data protection requirements, including mandatory privacy webhooks:
- customers/data_request: we compile the store data we hold, if any
- customers/redact: nothing to erase, no shopper data stored
- shop/redact: full erasure of store and price data within the required window
We use the minimum API scopes needed: write_products for price metafields. Nothing more.
7. Your rights
You can:
- Ask what data we hold about your store
- Ask for correction or deletion, subject to legal duties
- Uninstall the App at any time from your Shopify admin
8. Changes to this policy
Material changes will be reflected in the last updated date above and communicated inside the App before they take effect.