CodShield Privacy Policy

Last updated: July 2026. This policy explains how CodShield ("we", "us") collects, uses, and stores data when merchants install the app on their Shopify store.

Data we collect

  • Customer phone numbers used for COD confirmation on WhatsApp.
  • Delivery notes and address details from orders.
  • Order values, risk scores, and verification status.
  • Courier RTO history imported by the merchant via CSV.
  • WhatsApp connection metadata for the merchant's linked number (linked via QR / Linked devices in admin).
  • Deposit proof files uploaded to the merchant's Shopify Files.

How we use data

  • Send post-order WhatsApp COD confirmation messages and deposit instructions from the merchant's own number.
  • Score COD order risk and help merchants approve or cancel orders.
  • Enforce COD tier rules configured by the merchant at checkout.

WhatsApp messaging

Merchants connect their own WhatsApp number by scanning a QR code in the CodShield admin (WhatsApp Linked devices). Messages are sent from the merchant's number, not from a shared platform number. Merchants are responsible for compliance with WhatsApp's terms for their business use.

Subprocessors & hosting

Application data is stored in PostgreSQL on infrastructure operated by the app host (e.g. cloud VPS). Shopify hosts order and customer data accessed via the Shopify Admin API. We do not sell customer data.

Data retention & deletion

  • On app uninstall, OAuth sessions and the WhatsApp connection are removed promptly.
  • Shop data is deleted when Shopify sends a shop/redact webhook (typically 48 hours after uninstall).
  • Customer redaction requests via Shopify GDPR webhooks remove PII, verification attempts, and linked proof file references; proof files in Shopify Files are deleted when the merchant's store session is available.
  • GDPR data export requests are stored temporarily in shop settings for merchant retrieval (max 50 recent exports).

Contact

Questions about this policy: [email protected]