Last Updated: September 29, 2026
Privacy Policy
At Gemify ("we," "us," or "our"), we take your privacy seriously. This Privacy Policy explains how our Shopify applications, including Bulk Delete Orders, Default Address Lock, LLMs-full.txt, Japan Multiship, Best Store Locator, and Checkout Probe (collectively, "our Apps"), collect, use, store, and protect your information when you use our services.
Key Points:
- We only collect the minimum data necessary to provide our services
- We do not sell or share your data with third parties for marketing purposes
- You have full control over your data and can request deletion at any time
- We comply with GDPR, CPRA, and other applicable privacy laws
1. Information We Collect
- Store Information: Store name, domain, owner email, and time zone, plus the access key Shopify issues so our Apps can connect to your store
- Contact and Support: Your name, email address, and the messages you send us
- Usage and Logs: The features you use, the settings you choose, errors, and standard server logs (IP address, browser type, and access times)
- Customer Data: Most of our Apps store no personal data about your customers. Section 2 lists exactly what each App holds
2. What Each App Holds
Each App holds only what it needs to work. The data stays linked to your store, and the App uses it only to provide its features to you.
2.1 Bulk Delete Orders
- Data: The IDs of the orders, draft orders, and customers you select, and the counts of each job. No customer names, addresses, email addresses, or payment details
- Why: To run the delete and anonymize jobs you start, and to show their history
- How long: While the App is installed, then deleted within 30 days of uninstalling
2.2 Default Address Lock
- Data: Customer IDs and address IDs only. Names, addresses, and phone numbers stay in Shopify
- Why: To restore a customer's default address after an order changes it, and to show the activity history
- How long: While the App is installed, then deleted within 30 days of uninstalling
2.3 LLMs-full.txt
- Data: The store content you choose to include: products, collections, pages, blog articles, and policies. No customer or order data
- Why: To create your llms.txt files and publish them to your theme. The published files are public on your storefront, like the rest of your store content
- How long: While the App is installed, then deleted within 30 days of uninstalling
2.4 Japan Multiship
- Data: For gift orders, the name, address, and phone number of each recipient the buyer enters on the cart page, the delivery date and time, and the tracking number. A recipient may have no relationship with the store
- Why: To split the order into one shipment per recipient, create the Yamato B2 Cloud shipping file, and add tracking numbers so the buyer is notified. The App uses recipient data for no other purpose
- Protection: Recipient data is encrypted and stored only in Japan. The App records which of the merchant's staff viewed recipient data and when, to detect misuse. That record holds no recipient details and is deleted after one year
- How long: Recipient details are deleted automatically 90 days after the order ships or is cancelled. The merchant can choose a shorter period. Nothing is kept longer than 180 days
- Japan's APPI: The merchant remains responsible for recipient data under Japan's Act on the Protection of Personal Information. Japan Multiship handles it only on the merchant's behalf
2.5 Best Store Locator
- Data: The store locations you enter or import, such as names, addresses, contact details, and opening hours. This is business information that you publish on your storefront on purpose
- Storefront visitors: Searches and the "Use my location" position are used only to answer that search and are not stored. The map adds no cookies, analytics, or advertising trackers
- Favorite store (optional): Off by default. When you turn it on, a signed-in customer's chosen store is saved on their own Shopify customer profile, not on our servers
- How long: Deleted about 48 hours after you uninstall the App
2.6 Checkout Probe
- Data: Your test settings (the test product and test shipping address) and your last 10 test reports
- Why: To test your checkout the way an AI shopping agent would and show the results. A test never places an order, never charges anything, and never changes your store settings
- No customer data: Every test uses a fictional test buyer, not a real person. The App only reads your products and shipping settings
- How long: Only the last 10 reports are kept. Everything is deleted when you uninstall the App
3. How We Use Your Information
- To provide the App features you use and connect to your store securely
- To answer your support requests
- To send important notices about our Apps, such as security updates and service changes
- To tell you about new features, only if you've opted in
- To fix problems and improve our Apps
- To prevent fraud and abuse, meet legal obligations, and answer data requests
We do not use your information for:
- Marketing or advertising, unless you explicitly opt in
- Selling or sharing it with third parties for their marketing
- Automated decisions that have legal or similar significant effects on merchants or customers
4. How Long We Keep Data
- While an App is installed: We keep the data the App needs to work
- After uninstalling: Your data is deleted within 30 days, and sooner for some Apps (see Section 2). We may keep anonymous, aggregate usage statistics
- Support emails: 2 years, to help with ongoing issues
- Server logs: 90 days, for security and troubleshooting
- Legal records: As long as the law requires, for example for tax
5. Where We Store Data and How We Protect It
Your data is stored with cloud hosting providers in the United States, except Japan Multiship data, which is stored only in Japan.
If you are in the European Economic Area (EEA), the United Kingdom, or another region with data transfer rules, your data may be processed outside your country. We protect these transfers with Standard Contractual Clauses and additional security measures.
- Encryption: Data is encrypted in transit and at rest
- Access controls: Only authorized personnel can access your data
- Secure sign-in: Our Apps connect to your store through Shopify's secure sign-in
- Security audits and monitoring: We run regular security reviews and watch our systems for threats
- Secure development: We follow secure coding practices and review our code
No method of transmission or storage is 100% secure. If you have concerns about the security of your data, please contact us at sean.gemify@gmail.com.
6. Service Providers and Sharing
We do not sell, rent, or trade your personal information. We share it only in these cases:
- Service providers: Shopify (the platform our Apps run on), cloud hosting providers such as Fly.io and Amazon Web Services, and error tracking and support tools. For Best Store Locator, the OpenStreetMap Foundation receives only store addresses to place them on the map, and OpenFreeMap serves the map images to visitors. These providers must protect the data and use it only for the purposes we specify
- Legal requirements: When the law requires it (for example a court order), or to protect our rights, our users, or the public, or to address fraud and security issues
- Business transfers: If Gemify is part of a merger, acquisition, or sale of assets, your information may be transferred. We will notify you by email or on our website before a different privacy policy applies
7. Your Rights
Depending on where you live, you can ask us to:
- Give you a copy of your personal data, in a portable format
- Correct inaccurate or incomplete data
- Delete your data. Uninstalling an App deletes its data within 30 days, or email sean.gemify@gmail.com for immediate deletion
- Restrict or object to some processing
- Withdraw consent you gave earlier
- Stop marketing emails, using the "unsubscribe" link in any of them
To use any of these rights, email sean.gemify@gmail.com. We respond within 30 days.
8. Privacy Laws
8.1 GDPR (EEA and UK)
We process personal data under the GDPR and UK GDPR on these legal bases:
- Contract: To provide our Apps to you
- Legitimate interests: To improve our services, keep them secure, and provide support
- Consent: Where you have explicitly agreed
- Legal obligations: To comply with the law
8.2 CPRA (California)
California residents have the right to know what personal information we collect and how we use it, to delete or correct it, to limit the use of sensitive personal information, to opt out of its sale or sharing (we do not sell or share it), and not to be treated differently for using these rights.
8.3 Other Laws
We also comply with Japan's Act on the Protection of Personal Information (APPI), the Colorado Privacy Act, the Virginia Consumer Data Protection Act, and other applicable laws.
8.4 Customer Data Requests Through Shopify
When one of your customers asks for their data or its deletion, Shopify sends us the request. We provide or delete any personal data we hold about that customer within 30 days. Apps that hold no customer data confirm that there is nothing to provide. When you uninstall an App or close your store, Shopify asks us to delete your store's data, and we do so as described in Section 4.
9. Children's Privacy
Our Apps are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us and we will delete it.
10. Third-Party Links
Our Apps or website may link to third-party websites or services. We are not responsible for their privacy practices, so please review their privacy policies.
11. Changes to This Privacy Policy
We may update this Privacy Policy to reflect changes in our practices or the law. When we make significant changes, we will update the "Last Updated" date, email you if we have your email address, and show a notice in our Apps. If you keep using our Apps after the changes take effect, you accept the revised policy.
12. Contact Us
For questions or requests about this Privacy Policy or your data, contact us. For privacy requests, please use the subject line "Privacy Inquiry".
Gemify
Email: sean.gemify@gmail.com
Website: https://gemify-ecom.github.io
If you believe we have not handled your personal data correctly, you can complain to your local data protection authority. For EEA residents, a list of authorities is available at https://edpb.europa.eu.
This Privacy Policy was last updated on September 29, 2026. By using our Apps, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy.