OrderNest ("the App", "we", "our", "us"), published by AppNest Studio, is a Shopify app for bulk order operations and fulfillment. This policy explains what data the App accesses, why, how long we keep it, and who it is shared with.
Contact: support@appnest.studio
1. Who the data belongs to
The App acts as a data processor on behalf of the installing merchant (the data controller). We process the merchant's Shopify store data solely to provide the order features the merchant uses.
2. What we access and why
| Scope | Why |
|---|---|
read_orders, write_orders |
Read orders from the last 60 days (Shopify's standard window) and apply tags, notes, archive, fulfil and cancel actions |
read_fulfillments, write_fulfillments, read/write_merchant_managed_fulfillment_orders |
Read and create fulfillments / tracking |
Line-item SKUs come with the order, so no product, location, customer or payment scopes are requested. Order records may contain personal data (names, email addresses, shipping/billing addresses). We process this only to display and act on orders inside the App — see §3.
3. What we store
| Data | Stored? | Notes |
|---|---|---|
| Shopify session / access token | Yes | Required to call the Admin API |
| App settings (rules, preferences) | Yes | Your configuration |
| Operational metadata (job/run history, usage counts, audit actions) | Yes | To show activity and enforce plan limits |
| Order / customer field values | Minimised | We read orders live from Shopify and store only the identifiers and operational metadata needed to run the App — not full customer field values |
4. Data retention & deletion
- Settings and tokens are retained while the App is installed.
- On app uninstall and on the Shopify
shop/redactcompliance webhook, we delete all data for that shop. - We honour the Shopify
customers/redactandcustomers/data_requestcompliance webhooks and remove/return any stored data linked to the customer.
5. Subprocessors / third parties
| Provider | Purpose | Data shared |
|---|---|---|
| Hosting (Railway) + Postgres/Redis | Run the App | Stored data listed in §3 |
| Sentry (if configured) | Error tracking | Diagnostic error data |
We do not sell personal data or use it for advertising.
6. Security
- All API traffic is over HTTPS.
- We store the minimum necessary and minimise retention of customer field values.
7. Your rights
Merchants can delete their data by uninstalling the App (triggers full deletion) or by contacting us. Data subjects should contact the merchant (controller) for GDPR/CCPA requests; we assist the merchant in fulfilling them.
8. Changes
We will update this policy as the App evolves and revise the "Last updated" date above.