Privacy Policy
Last updated: March 2026
Introduction
Reprint Order Manager ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard information when you use our Shopify app.
Information We Collect Through Shopify's APIs
When you install and use our app, we access the following data through Shopify's APIs:
- Store information: Your Shopify store domain and admin access token (required for app authentication).
- Order data: Order details including order number, line items, line item properties, product variants, customer name, email, and shipping/billing addresses. This data is used to create reprint (duplicate) orders with $0 pricing.
- Customer data: Customer name and email address associated with orders, used to populate reprint orders with the correct customer information.
- Product data: Product variant IDs referenced in order line items, used to create accurate reprint orders.
- Draft order creation: We create draft orders on your behalf through the Shopify Admin API to facilitate the reprint workflow.
Information We Collect Directly from Merchants
- Reprint reasons: Optional text notes you provide when creating a reprint order (e.g., "damaged in shipping").
- Order tags: Custom tags you apply to reprint orders (defaults to "reprint").
Information We Collect from Merchants' Customers
We do not collect any information directly from merchants' customers. All customer data we access is obtained through Shopify's APIs based on existing order records, and is only used to populate reprint orders.
How We Use Information
We use the information we collect exclusively for the following purposes:
- Creating reprint (duplicate) orders with $0 pricing on behalf of the merchant.
- Copying order details, line item properties, customer information, and shipping addresses to reprint orders.
- Maintaining a reprint history log so merchants can track which orders have been reprinted.
- Tagging original and reprint orders for cross-referencing.
Data Storage and Retention
- Session data: Shopify session tokens are stored in our PostgreSQL database for authentication purposes and are automatically expired per Shopify's session management.
- Reprint records: We store a log of reprint actions (original order ID, reprint order ID, reason, and timestamp) for merchant reference. This data is retained for as long as the app is installed.
- Order data: We do not permanently store full order details. Order data is fetched from Shopify's API in real-time when needed and is not cached.
Data Sharing
We do not sell, rent, or share any merchant or customer data with third parties. All data processing occurs between our app and Shopify's APIs.
Data Deletion
When you uninstall the app, all stored session data and reprint history records associated with your store are deleted. We respond to all Shopify mandatory compliance webhooks (customer data requests, customer data erasure, and shop data erasure) within 30 days.
Data Security
We implement appropriate security measures including encrypted connections (HTTPS), secure session token authentication, and database access controls to protect your data.
GDPR and Privacy Rights
If you are located in the European Economic Area, United Kingdom, or a jurisdiction with similar privacy laws, you have the right to:
- Request access to the data we hold about you.
- Request correction or deletion of your data.
- Object to or restrict the processing of your data.
To exercise these rights, please contact us at the email address below.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify merchants of any material changes through the app or via email.
Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at: [email protected]