Data Protection Agreement

DraftHelper Data Protection Agreement

DraftHelper "the App” provides draft order editing service (including checkout link generation, applying discount, rearranging line items and editing line item properties) "the Service" to merchants who use Shopify to power their stores. This Data Protection Agreement describes what data is collected, used, and stored in database when you install or use the App in connection with your Shopify-supported store.

Personal Information the App Collects

When you install the App, we are automatically able to access certain types of information from your Shopify account:

Your shop name and shop contact email, this is only used for support and emergency contact purpose.

Your shop's location ID and name, this is only used for when you use the deduct inventory feature, which the app will deduct inventory from the selected location.

Draft Orders data, including line items and customers details, this is only used for the app to function.

Draft Order Information the App Collects

For all of the app functions, the app collects information from the draft order, including the line item quantity, line item properties, product ID, product name, product image, product price, variant ID, variant name, variant SKU , inventory item ID, draft order ID, draft order notes and draft order tags.

From the information above, only the product ID, variant ID, inventory item ID and draft order ID are stored in the app database, for future identification and access purpose, no other data from the draft order is stored in the app database.

Checkout Information the App Collects

For the "Generate discountable checkout link" / "Checkout link" function, the app collects information from the generated checkout, including the checkout URL and the checkout token. The checkout URL and checkout token is stored in the database, so that the app can display the URL for merchant to see and send to customer to proceed to checkout.

Customer Information the App Collects

For the "Generate discountable checkout link" / "Checkout link" function, in addition to the draft order information mentioned in the previous section, the app also collects the draft order's customer information, including customer name, customer email, customer shipping address and customer billing address.

These customer information is needed to generate a checkout, which the checkout will then be populated with the customer name, email, phone number, shipping address and billing address, so the customer will not need to type them again when they access the checkout link generated.

These customer information (name, email, phone number, shipping address and billing address) is never stored in the app database, the app will request these information from Shopify every time a checkout link is generated, and they will be discarded once the checkout link is generated, these information are only kept in ephemeral Random Access Memory (RAM) during the generation of checkout link.

Data Retention Period

For customer data (customer name, email, phone number, shipping address and biling address), the data is discarded immediately right after the checkout link is generated, this data is never stored in the database.

For the inventory deduction data (location ID, variant ID, inventory item ID, quantity), the data is stored in database until the draft (that is used for inventory deduction) is paid or completed, or until the merchant manually restore the deducted inventory using the app. ie. these data will be removed from the database when the draft order is completed, or when the merchant manually restore the deducted inventory using the app.

For the store data (store name and store contact email), the data is stored in database until the user uninstalls the app.

For other data that is not mentioned above, they will be purged after 30 days from the database since its creation date.

Data Security

We use HTTPS / TLS 1.3 (AES_128_GCM_SHA256) to encrypt the data in transit for the app, no customer data is ever stored in the database. The database only store the following data : your shop name, your shop contact email, you shop location IDs, product ID, variant ID, inventory item ID, draft order ID, checkout ID and quantity of line items.

Changes

We may update this data protection agreement from time to time in order to reflect, for example, changes to our practices or for other operational, legal or regulatory reasons.

Contact Us

For more information about our privacy practices, if you have questions, or if you would like to make a complaint, please contact us by e-mail at axel@draftorder.app or by mail using the details provided below:

Level 30, No.1, Jalan Pinang, 50450 Kuala Lumpur