Sprig Sales ("we", "us") provides an embedded app for Shopify merchants. This policy explains what data we process when you install or use the app.
Data we process
- Shop domain, plan, and billing status needed to run the app
- Campaign configuration you create (discounts, gifts, add-ons, CTA banners)
- Optional Live Carts insights such as cart tokens, line items, and visitor client ids from the Sprig Sales web pixel
- Storefront analytics events from the Sprig Sales web pixel when enabled
- OAuth session tokens required to call the Shopify Admin API on your behalf
How we use data
We use this data only to provide app features, billing through Shopify, support, security, and mandatory privacy-law compliance (customer data request, customer redact, shop redact).
Sharing
We do not sell merchant or customer data. Infrastructure providers that host the app (for example Vercel and Postgres) may process data as subprocessors under their terms. Billing charges are processed by Shopify's Billing API.
Retention and deletion
Live Carts activity is kept in the app database for 14 days and storefront analytics events for 90 days, then archived to private object storage and deleted from the hot database. When you uninstall, we mark the shop uninstalled and clear sessions. After Shopify sends the shop/redact webhook, we delete remaining shop-scoped app data and matching archive objects. Customer redact webhooks remove matching Live Carts records and archive objects by customer id and any leftover email.
Contact
Privacy requests: support@sprigsales.com