Privacy policy
Privacy policy
This policy describes what personal information the Eligibly Shopify app collects, why, how long it is kept, and who processes it.
Who runs Eligibly. Eligibly is operated by Charles Moreton, an individual (sole proprietor) doing business as "Eligibly". Mailing address: 160 Birdsall St #1213, Houston, TX 77007, USA. Email: support@eligibly.app. Charles Moreton is the controller of the merchant and staff data described here, and privacy requests are handled from the State of Texas, United States.
Last updated: 3 October 2026. Contact: support@eligibly.app.
Who this covers
Eligibly is an embedded Shopify admin app. The people it processes data about are the merchant and the staff who install or open the app. It does not request customer, order, or checkout access, and it does not store a Shopify customer's name, email, address, or order history.
Data the app reads from Shopify
At install the app requests read_products, read_legal_policies, and read_online_store_pages. The first time a merchant applies a fix, Shopify may also be asked for the optional write_products scope. Declining that scope leaves scanning usable.
- Products: title, description, vendor, type, tags, status, handle, Online Store URL, category, options, image address and dimensions, variant price, compare-at price, barcode, SKU, and inventory policy.
- Selected product and variant metafields in the
mm-google-shoppingandshopifynamespaces used by the checks (brand, custom product, gender, age group, color, size, condition, Google product category, MPN, availability date). - Shop: name, myshopify domain, primary domain and SSL flag, contact email, currency, and whether Online Store password protection is on. Password protection is read from the Admin API. The app does not crawl the storefront.
- Policy bodies (refund, shipping, privacy, terms, contact) and the title and body of Online Store pages used for the contact check.
- The shop email, used only as the default when a merchant turns alerts on and leaves the address blank.
The app does not read themes, orders, customers, or checkout. It does not add a script tag or a theme app extension.
What is stored
- A shop row: the shop domain, whether the app is installed, the cached plan handle (
free,growth, orpro), alert on/off, the alert email if one was saved, schedule on/off, and the time of the last digest. - The latest 12 scans: scores, the shop name and domain, and one row per scored product (id, title, handle, score). Older scans are deleted.
- Findings: the check id, severity, message, product id, title, and handle, and the before/after values for a proposed fix. Those values can include a title, description, price, image URL, or metafield value. Policy and page bodies are read to run the checks and are not stored as their own documents.
- Fix history for 90 days: the field that changed, the before and after values, status, and a staff label Shopify provides when a fix is applied. Rows older than 90 days are deleted.
- Suppressions (a hidden check or product), background jobs, and webhook records.
- Shopify session rows so the app can call the Admin API: shop domain, access token, scopes, and expiry. The session library can also store a staff user id, first name, last name, and email when Shopify sends them. Sessions are deleted on uninstall.
Compliance webhooks for customers/data_request and customers/redact store a request id or customer id and a note that no customer personal data was held. The email in Shopify's payload is not written.
Why
The app stores this data to show the health score, list issues, apply and undo fixes, send alerts the merchant turned on, and remember the Shopify plan. The plan handle is read from Shopify App Pricing and cached for one hour. Charges are billed by Shopify, not by Eligibly.
Uninstall and deletion
- Uninstall. The
app/uninstalledwebhook deletes session tokens, stops pending scans, and marks the shop uninstalled. Scan history, findings, fix history, and settings stay until Shopify sendsshop/redact. - Shop redact. About 48 hours after uninstall, Shopify sends
shop/redact. Eligibly then deletes the shop row. That cascades scans, findings, products, jobs, fix history, suppressions, and webhook records for that shop, and deletes any remaining sessions. A merchant can also delete scan history from Settings; that keeps the fix-history rows. - Customer privacy webhooks. Because no customer personal data is stored, those requests are acknowledged and the id is logged. Nothing else is erased, because nothing else was kept.
Subprocessors
- Shopify. The admin where the app runs, the source of catalog data, and the biller for app charges.
- Render (Render Services, Inc., United States). Hosts the app and its Postgres database in Render's Oregon (US) region. All of the stored data listed above lives in that database. Render's application logs can include the shop domain and error text. Render keeps those logs for 7 to 30 days depending on the workspace plan (7 days on Hobby, 14 days on Pro, 30 days on Scale and Enterprise, per Render's logging documentation), then they are no longer available.
- Email. Not connected. Alert messages are written to the application log. No third-party email vendor receives them until the owner chooses one and this page is updated.
- Sentry (Functional Software, Inc.). Optional. If the owner sets
SENTRY_DSN, scan and job failures can be sent to Sentry with the shop domain and a short error message. An empty setting sends nothing. It is empty unless the owner adds a DSN.
Eligibly does not sell personal information and does not share it for cross-context advertising.
GDPR and CCPA requests
Email support@eligibly.app to ask for access, correction, or deletion of merchant or staff data this app holds. Include the myshopify.com domain. Deletion of a shop's app data also happens through Shopify's shop/redact webhook after uninstall. For customer requests about a purchase, contact the merchant: this app does not keep that customer's personal data.
Changes
Material changes will be posted on this page with a new date. The behavior described here matches the app as of the date above.