Privacy and data

MarginBundle Privacy Policy

A clear view of what data MarginBundle processes, why it is used, and how merchant and customer data is handled.

Last updated: July 31, 2026

  • Shopify app data
  • Customer data minimization
  • Privacy webhook handling
Data scope

We process Shopify store data only to operate margin-aware offers, discounts, recommendations, attribution, and reporting.

Customer data

Customer data is limited to the fields needed for merchant-enabled customer groups, referrals, eligibility, and aggregate analytics.

Deletion flow

Uninstall and Shopify privacy webhooks stop public offer serving and handle data requests, redaction, and shop deletion.

Data scope

Data we process

MarginBundle processes Shopify store data needed to create, publish, and measure offers. This can include shop identity, product and variant data, inventory signals, product costs entered by the merchant, discount configuration, storefront widget settings, app settings, billing status, order attribution data, customer tags used for merchant-enabled customer groups, referral membership, and aggregate performance metrics.

Usage

How data is used

Data is used to calculate margin-aware bundle and add-on offers, publish app-managed discounts through Shopify checkout, display storefront widgets, maintain customer group eligibility when enabled by the merchant, generate recommendations, attribute offer performance, and show aggregate analytics inside the app.

Customer protection

Customer data

Customer data is limited to what is needed for customer group eligibility, customer tag workflows, referral membership, and aggregate reporting. MarginBundle does not sell customer personal information and does not use customer data to build unrelated advertising profiles.

Lifecycle

Retention and deletion

When a merchant uninstalls the app, public offer serving stops for that shop. Shopify privacy webhooks are handled idempotently for customer data requests, customer redaction, and shop redaction. Operational records are retained only as needed for app operation, compliance, security, and troubleshooting.

Security boundary

Security and platform dependencies

MarginBundle runs on Shopify APIs, database services, worker processing, and queue infrastructure. Access to merchant data is scoped to app functionality, and public pages never expose merchant costs, internal scores, tokens, stack traces, or raw Shopify API payloads.

Contact

Privacy contact

For privacy questions, data requests, or support related to this app deployment, use the support page. We may ask for the shop domain and enough context to verify and route the request.