Pricewarden: Bulk Edit & Rules
Privacy Policy
This policy explains what data the Pricewarden app (“Pricewarden”, “the app”, “we”) processes when a merchant installs it from the Shopify App Store, why, how long we keep it, and how it is deleted. It is written for merchants - store owners and their staff. We do not sell data, we do not use it for advertising, and we do not process your customers’ personal data.
This policy covers data processing only. Use of the app, including the fact that it is provided “as is” and used at your own risk, warranties and the limitation of our liability, is governed by our Terms of Service.
1. Who we are
Pricewarden is developed and operated by Machka Machka j.d.o.o., Zagreb, Croatia (European Union). Privacy questions and requests: info@hectone.com.
For the data of your store (products, prices, inventory, change history, rules) you are the controller and we process it only on your instructions, to provide the app you installed (we act as your processor). For our own operational records (your plan and billing status, support conversations, security and error logs) we are the controller.
2. What data we process
Everything below is store data or data you type into the app yourself. The app never receives order or customer records (see section 3).
| Data | Why we need it | How long we keep it |
|---|---|---|
Store identity - your .myshopify.com domain, Shopify plan name, product count, install and uninstall dates, app plan and billing status | Operate your account, apply plan limits, show billing status | While the app is installed; deleted within 48 hours after uninstall |
| Access credentials - the Shopify API access token issued to the app (stored encrypted, AES-256-GCM), and the login sessions of staff members who open the app (Shopify passes the staff member’s name, email address and locale with each session) | Read and update your products on your behalf; keep you signed in inside the Shopify admin | Sessions are deleted the moment you uninstall; the encrypted token is deleted with the shop record within 48 hours |
| Catalog data - products and variants: titles, handles, SKUs, barcodes, vendor, type, category, tags, status, price, compare-at price, cost per item, inventory per location, whether SEO title/description, description and images are present, collection membership, and only those metafields you pick in a filter or edit | Filters, previews, bulk edits, catalog-health checks and the automations you configure | Kept in sync while installed; the catalog index is removed at uninstall and everything else within 48 hours |
| Change history - the tasks (“jobs”) you run: filters, operations, per-item before/after values; restore points, including an automatic daily copy of your catalog as the app sees it (titles, vendor, type, status, tags, prices, compare-at prices, SKUs, barcodes); price history; EU Omnibus reference records | Undo and restore, product price timeline, EU Omnibus “lowest price in 30 days” proof | Job history: 90 days after a task finishes (an active campaign is never removed). Undo window: 7 days on Free, 14 days on Founding. Restore points: 90 days, or until you delete them; the daily catalog copy: 30 days. Price history: 7 days on Free, 365 days on Founding (never more than 400 days); with EU Omnibus price tracking switched on it is kept up to 400 days on every plan, because it is the evidence behind the “lowest price in 30 days”. Omnibus references: up to 400 days. All of it is deleted within 48 hours after uninstall. |
| Automation rules and settings - stock-threshold, aging-markdown, auto-tag, Price Guard, market and Omnibus settings, discount rules, saved templates | Run the automations you set up | Until you delete them; deleted within 48 hours after uninstall |
| Notification settings - the email address you enter, Slack / Discord / custom webhook URLs and signing secret, Telegram chat ID (only if you link a chat) | Deliver the notifications you switched on | Until you remove them; deleted within 48 hours after uninstall |
| Support - tickets and messages you send from the in-app Help & Support window, image attachments you upload, your shop domain and plan | Answer your request | Deleted together with your shop data |
| Technical logs and alerts - server logs (request path, shop domain, job IDs, error messages) and internal alert records | Keep the service running, diagnose failures, prevent abuse | Alert records 60 days; log files are rotated on a rolling basis |
| Usage counters - number of changes and tasks per day | Enforce plan limits | Reset daily; deleted with the shop |
3. What we do not process - your customers’ data
- No customer personal data. The app requests only these Shopify permissions: products (read/write), inventory (read/write), locations (read), discounts (read/write), markets (read) and publications (read/write). It does not request access to orders or customers, so customer names, email addresses, shipping or billing addresses, payment details and order contents never reach our servers.
- Shopify’s mandatory
customers/data_requestandcustomers/redactrequests are received and acknowledged - there is nothing to return or delete because we hold no customer records. - The storefront “lowest price in the last 30 days” block (EU Omnibus) reads price metafields the app writes into your own store and shows a price to your visitors. It sends nothing to our servers, sets no cookies and does not identify visitors.
- No advertising, no analytics trackers, no selling or sharing of data for marketing purposes.
4. Legal basis
- Performance of a contract (Art. 6(1)(b) GDPR): everything needed to provide the app you installed - reading and updating your catalog, keeping change history for undo, running the rules you configured, sending the notifications you switched on, answering support requests.
- Legitimate interests (Art. 6(1)(f) GDPR): security, abuse prevention, error diagnosis and keeping the service reliable (technical logs, alert records, usage counters).
- Legal obligations (Art. 6(1)(c) GDPR): keeping records we are required to keep, for example plan and billing status for accounting. Payments themselves are handled by Shopify.
5. Sub-processors and recipients
We use a small number of providers. Data is hosted in the European Union. Where a provider you choose to connect is outside the EU, the transfer relies on that provider’s EU data-transfer safeguards (for example Standard Contractual Clauses).
| Provider | What for | When |
|---|---|---|
| Shopify | The platform: the app runs inside your Shopify admin, uses the Shopify Admin API and Shopify handles all billing | Always |
| Hetzner Online GmbH (EU data centre) | Hosting of the application servers, database, cache and backups | Always |
| Zoho Corporation B.V. (Zoho Mail, EU data centre) | Delivers the notification emails you enable to the address you enter (the email text: job title, counts, your shop domain) | Only if you switch on email notifications |
| Telegram | Delivers job and alert messages to a Telegram chat | Only if you link a Telegram chat in the app |
| Slack, Discord or your own webhook endpoint | Receive the job / alert payloads you configure (title, message, shop domain, counts) | Only if you configure them |
| Error monitoring service (Sentry) | May receive error reports (stack trace, request path, shop domain) so we can fix failures; cookies and access tokens are stripped | Only if we have it enabled |
| AI drafting assistant (Anthropic) | When we answer a support ticket, the ticket text and your shop domain may be used to draft a reply; a human reviews every draft before it is sent to you | Only for support tickets you open, and only if we have it enabled |
We do not share data with anyone else, and we never sell it.
6. Security
- All traffic between your browser, Shopify and our servers is encrypted in transit (HTTPS/TLS).
- The Shopify access token is encrypted at rest (AES-256-GCM) with a key that is kept outside the database.
- Every webhook from Shopify is verified with its HMAC signature before it is processed.
- Access to production systems is limited to the app operator; there is no shared or third-party administrative access.
- Each store’s data is separated by store ID; the app never shows one store’s data to another.
- Nightly database backups are kept for 7 days on the server (EU). An encrypted off-site disaster-recovery copy is kept in a separate EU data centre (Hetzner Storage Box, Germany): hourly copies for 48 hours and nightly copies for up to 12 months. Backups are used only to recover the service after a failure, never to bring back data you asked us to delete.
- No system is perfectly secure. If we become aware of a security breach affecting your data we will notify you without undue delay through the app and the email address on your Shopify account.
7. Retention and deletion
When you uninstall
- Immediately (Shopify’s
app/uninstallednotification): your login sessions are deleted, running and scheduled tasks are cancelled, all automations stop, the catalog index and caches are removed, and billing is marked cancelled. - Within 48 hours (Shopify’s
shop/redactrequest): the store record and everything linked to it is deleted - encrypted access token, tasks and their item history, restore points, price history, Omnibus references, rules, templates, notification settings, support conversations and alerts, including the copies in our backup database. - Reinstall within 48 hours: your settings and history are still there and the free trial is not restarted.
Delete sooner, or delete parts
- Email info@hectone.com from the email address on your Shopify account and we will delete your store’s data on request - within 30 days at the latest, usually within a few business days - and confirm when it is done.
- Inside the app you can delete individual price-history entries, restore points, templates and rules yourself at any time.
- Data removed from the live systems may remain in backups for up to 7 days (server backups) and up to 12 months (encrypted off-site disaster-recovery copy) before those backups expire.
Automatic clean-up while you use the app
- Task history: 90 days after a task finishes (tasks with a pending automatic revert or an active rule are kept).
- Undo window: 7 days on Free, 14 days on Founding.
- Restore points: 90 days; daily catalog copies: 30 days.
- Price history: 7 days on Free, 365 days on Founding; with EU Omnibus price tracking switched on, up to 400 days on every plan (it is the evidence behind the “lowest price in 30 days”); a hard cap of 400 days applies to every plan.
- Omnibus references: 400 days (the legal 30-day window plus a wide margin).
- Internal alert records: 60 days.
8. Your rights and contact
Under the GDPR you have the right to access, rectify, erase, restrict or object to the processing of personal data concerning you, and to data portability. To exercise these rights write to info@hectone.com. You can export your price history, Omnibus proof log, restore points and catalog data as CSV from inside the app at any time. You may also lodge a complaint with your local data-protection authority; ours is the Croatian Personal Data Protection Agency (AZOP).
The app itself sets no tracking cookies. Inside the Shopify admin it relies on Shopify session tokens; any cookie set during Shopify’s installation handshake is technical and short-lived. This page and the support page set no cookies at all.
9. Changes to this policy
We may update this policy when the app or the law changes. The effective date at the top always shows the current version. If a change materially affects how your data is processed we will tell you in the app before it takes effect.