Privacy policy
StackLens: Discount Monitor (“StackLens”) is a read-only Shopify app. This policy explains the limited store data we process, why we process it, how long we retain it, and how it is deleted.
Data we access
StackLens requests the Shopify Admin API scope read_discounts. We read discount definitions and related configuration needed to identify timing, combination-setting, usage-limit, and platform-capacity review items. This can include discount titles, status, start and end times, discount classes, combination flags, coarse buyer-context types, configured usage limits, asynchronous reported usage counts, and Shopify discount identifiers.
We also process your shop domain, Shopify Shop ID, IANA timezone, installation status, granted-scope status, plan entitlement, scan and schedule status, and bounded operational error codes. Shopify access tokens are stored only in the official server-side session store.
Data we do not request
StackLens does not request or store customer, order, cart, checkout, payment, address, buyer-identity, product, collection, theme, or sales analytics data. We do not fetch or store redeemable discount code values, customer lists, segment members, product/collection/country target selections, or arbitrary Shopify Function configuration payloads.
How we use store data
- Run merchant-requested and eligible weekly discount scans.
- Show normalized discount snapshots and rule-based findings.
- Compare compatible, complete scans for Pro merchants.
- Operate authentication, plan access, retention, and reliability controls.
- Respond to support requests without collecting raw tokens or customer/order data.
StackLens never creates, changes, enables, disables, or deletes a discount. We do not sell store data or use it for advertising.
Retention
Free stores retain the newest completed scan for no more than 30 days. Pro stores retain up to 12 completed scans for no more than 365 days. Failed scan records are retained for up to 30 days. Pro scheduling records are retained for up to 90 days. Operational webhook receipts are retained for up to 30 days.
Following a verified downgrade, existing history is read-only for a seven-day grace period before Free retention limits are applied. Entitlement outages do not start downgrade deletion.
Deletion
Uninstalling StackLens or Shopify's verified shop-redaction request triggers deletion of shop settings, sessions and access tokens, scan snapshots, findings, exports, plan cache, scheduling state, and shop-keyed operational records. Customer data-request and redaction webhooks return no customer data because StackLens does not collect customer identifiers.
Service providers
We use Shopify for app distribution, authentication, Admin API access, and App Pricing; Vercel for application hosting and scheduled functions; Neon for encrypted managed PostgreSQL storage; and Google for support email. These providers process data only as needed to deliver their services and under their own security and privacy commitments.
Security and transfers
We use tenant-scoped access controls, authenticated Shopify sessions, encrypted transport, restricted server-side credentials, bounded logs, and deletion workflows. Service providers may process data in countries other than yours, subject to their contractual transfer safeguards. No internet service can guarantee absolute security.
Your choices and contact
You can stop new processing by uninstalling the app. For a privacy question or request, email cadosy@gmail.com. We may need to verify that the requester is authorized for the relevant Shopify store.