Privacy Policy for Postcode Shipping Rules
Effective Date: June 16, 2026
This privacy policy describes how we collect, use, and process information when you install or use the Postcode Shipping Rules Shopify Application (the "App").
1. Data Minimisation and Storage
We believe in strict data minimisation. Our App only saves the minimum required data to function. We do not collect, read, or store any personal customer information (such as customer names, email addresses, or specific street addresses).
The only data we permanently store in our application database includes:
- The merchant's Shopify store URL website address.
- The rural/custom postcode configurations selected and created by the store owner.
2. Information We Access via Shopify APIs
When you install the App, we temporarily access specific store configurations via Shopify's OAuth framework to execute shipping rules at checkout:
- Merchant Data: Store name, account email, and shop URL to authenticate your account and manage your settings.
- Shipping Data: The postcode entered at checkout to evaluate whether to hide or show specific delivery options. This evaluation happens in real-time; the customer's postcode is never saved or logged in our database.
3. How We Use Your Information
We process your configuration settings strictly to provide the App's core functionality, which includes:
- Hiding or showing specific delivery options based on the postcodes selected by the store owner.
- Providing application support and troubleshooting merchant configuration issues.
4. Data Retention and Shopify GDPR/CCPA Webhooks
Because we do not store customer personal data, we do not maintain consumer profiles. In strict compliance with Shopify data protection standards, we support and process all mandatory Shopify webhooks:
- customers/data_request: Since we do not collect or store customer personal data, we hold no records to return. We will respond confirming zero data retention.
- customers/redact: We do not store customer data, meaning no customer redaction actions are required in our database.
- shop/redact: Upon receiving this notification, we completely erase all associated store settings, configurations, and URL data from our database within 48 hours of App uninstallation.