Legal
Privacy Policy
This Privacy Policy explains how Courier Shield collects, uses, stores, and shares merchant and customer data when merchants use this Shopify app to run courier dispatch, fraud review, shipping labels, and support workflows.
This Privacy Policy explains how Courier Shield collects, uses, stores, and shares merchant and customer data when merchants use this Shopify app to run courier dispatch, fraud review, shipping labels, and support workflows.
1. Information we collect
When a merchant installs and uses the app, we may collect and process the following categories of information:
- Store information such as shop domain, store name, merchant email, app settings, and Shopify access tokens.
- Order and fulfillment information such as order numbers, product names, payment and fulfillment status, COD amounts, parcel identifiers, and courier dispatch records.
- Customer fulfillment information such as name, phone number, address, and delivery-related notes when needed for courier dispatch and fraud screening.
- Courier configuration data such as merchant API credentials, webhook secrets, courier identifiers, and pickup or store settings provided by the merchant.
- Support and operational data such as support tickets, admin actions, sync logs, webhook events, and security logs.
2. How we use information
We use the collected information only to operate and improve the app for the merchant who installed it. This includes:
- Authenticating the merchant and maintaining the embedded app session.
- Showing order lists, fraud signals, shipping labels, courier settings, and support tools inside the app.
- Sending order and delivery information to selected courier partners such as Steadfast, Pathao, RedX, and Carry Bee when the merchant requests dispatch.
- Receiving courier webhook updates and syncing delivery outcomes back into the app.
- Generating internal analytics, fraud summaries, status history, and operational logs for the merchant’s store.
- Responding to support requests, troubleshooting issues, and maintaining security.
3. When we share information
We do not sell merchant or customer data. We share information only when necessary to provide the app’s functionality or comply with legal obligations.
- Courier partners receive order, customer, and delivery information that is necessary to create and manage parcels.
- Infrastructure providers may process data on our behalf for hosting, storage, email delivery, monitoring, and file generation.
- We may disclose information if required by law, regulation, legal process, or to protect the rights and safety of merchants, buyers, or the platform.
4. Data retention and security
We retain data only for as long as necessary to provide the service, maintain fraud and delivery history, meet legal obligations, resolve disputes, and enforce agreements. We use reasonable technical and organizational safeguards to protect stored information, including access controls, encrypted secrets where applicable, and operational monitoring.
5. Shopify customer privacy compliance
For public Shopify apps, Shopify requires compliance with customer privacy obligations. When applicable, we respond to Shopify privacy webhooks and requests relating to customer data access, deletion, and store redaction in accordance with Shopify’s platform requirements and applicable law.
- Customer data requests are handled through Shopify’s required privacy mechanisms where supported.
- Merchants can also contact us at hello@example.com for privacy-related assistance.
6. Merchant responsibilities
Merchants are responsible for making sure they have the right to process and share order, customer, and courier data through the app, and for configuring courier credentials, webhooks, and internal access permissions correctly.
7. Changes to this policy
We may update this Privacy Policy from time to time to reflect product changes, courier integrations, legal requirements, or operational updates. Material updates will be posted on this page with a revised effective date.