ShopCanary is a monitoring app for Shopify stores, operated by HJB CodeForge. This policy explains what it stores, what it deliberately does not store, and how to have data removed.
ShopCanary does not store your customers' personal data.
Order webhooks from Shopify arrive with customer details attached — name, email, phone, billing and shipping address, and the browser IP. ShopCanary strips all of it at the moment of ingestion, before anything is written to storage. It keeps only line items, discounts, shipping lines, totals and timestamps, which is everything required to determine whether a rule fired. No customer name, email, phone or address column exists in our database.
What we store
- Order facts — order ID and number, timestamp, currency, subtotal, discount, shipping and total amounts, line item count, and the discount and shipping details needed to evaluate your rules.
- Discount configuration changes — when a discount was created, edited or deleted, and a snapshot of its settings, so an alert can point at the change that preceded a failure.
- Your rules and settings — the rules you declare, your alert email address, and an optional Slack webhook URL.
- Findings and alerts — issues detected, and a log of alerts sent.
- Google Merchant Center summaries — if you connect Google: offer counts, disapproval counts, and a hash of your offer IDs.
- Shopify session data — the access token required for the app to function.
What we never store
- Customer names, email addresses, phone numbers or postal addresses
- Customer IDs, browser IPs, user agents or order notes
- Payment details of any kind
- Any data we do not need to determine whether a rule fired
Google Merchant Center
If you choose to connect Google, you authorise ShopCanary with read-only access to your own Merchant Center account. We read product status and account-level issue information only, and never write to or modify your feed. The refresh token is encrypted at rest using AES-256-GCM, and the encryption key is held separately from the database. Disconnecting deletes the stored token. ShopCanary is not affiliated with or endorsed by Google.
How long we keep it
Order facts and feed snapshots are retained for up to 90 days, which is what the
trend comparisons require. Findings and alert logs are kept while the app is
installed. Uninstalling triggers Shopify's shop/redact webhook,
after which every record belonging to your store is deleted.
Sub-processors
- Fly.io — application hosting and database storage
- Resend — delivery of alert and summary emails
- Google — only if you connect Merchant Center monitoring
- Slack — only if you configure a Slack webhook
We do not sell data, and we do not share it for advertising.
Security
- All traffic is served over TLS
- Data is encrypted at rest, and backups inherit that encryption
- Google tokens are additionally encrypted at the application layer
- Test and production data are kept separate
- Access to production is limited to the operator of HJB CodeForge
Your rights
ShopCanary supports Shopify's mandatory privacy webhooks. Because no customer personal data is stored, a customer data request or redaction request has nothing to return or erase — and we will confirm that in writing on request. To have all store data deleted, uninstall the app or email us.
Contact
HJB CodeForge, Ottawa, Ontario, Canada · support@hjbcodeforge.com
We will post any material change to this policy on this page and update the date above.