Privacy Policy. This page is ready

Privacy Policy

Privacy policy for StyleImprint

StyleImprint helps merchants enrich product information and manage imprint-related product data through Shopify.

We process only the information needed to provide the app experience, including Shopify store data such as product information, product metadata, and shop configuration settings. We do not sell customer data.

Data is used to power product enrichment, metadata synchronization, and app setup flows for the merchant’s Shopify store. Merchant data may be stored in the app’s cloud services and accessed only to deliver the requested functionality.

If you have questions about this policy or how your data is handled, please visit the support page.

Google Merchant Center access and use of Google user data

If you choose to connect your Google Merchant Center account, StyleImprint requests the Google Merchant Center scope (https://www.googleapis.com/auth/content). We use this access for a single purpose: to create and manage a supplemental product data source in your own Merchant Center account and add StyleImprint product-detail attributes (such as fabric composition, care, fit, model, and construction details) to your existing product listings. We do not create, modify, or delete your primary product feed.

We store the OAuth access and refresh tokens for your Google account encrypted at rest, along with your Merchant Center account identifier and per-product sync status, solely to keep your supplemental data in sync. You can disconnect at any time from the app, which stops all further access; you may also revoke access from your Google Account permissions page.

StyleImprint’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, do not use it for advertising, and do not share it with third parties except as required to provide this functionality or comply with law.

Data protection and security

We apply the following measures to protect sensitive data, including Google user data and OAuth credentials:

- Encryption in transit: all data exchanged between StyleImprint, Shopify, and Google APIs is transmitted over HTTPS/TLS.

- Encryption at rest: sensitive credentials, including your Google OAuth access and refresh tokens, are encrypted at rest using AES-256-GCM before being stored. Encryption keys are managed separately from the encrypted data.

- Access controls: access to stored data is restricted to the application processes that require it to deliver the requested functionality, following the principle of least privilege.

- Retention and deletion: Google tokens and Merchant Center data are retained only while your account is connected. When you disconnect, or uninstall the app, or when we process a Shopify data-deletion webhook, the associated Google credentials and sync data are deleted. You may also revoke access at any time from your Google Account permissions page.

Data handling summary

- We access Shopify product and store data only as required to operate the app.

- We store app configuration and enrichment results for the merchant’s shop.

- We support Shopify’s compliance webhooks for data requests and account deletion requests.