Who we are
TrueBundle is a Shopify app operated by YNV Labs (“we”, “us”). It helps merchants sell product bundles with truthful, per-location inventory availability. You can reach us at ynvlabs@gmail.com.
What this policy covers
This policy describes what information the TrueBundle app processes when a merchant installs it on a Shopify store, why we process it, where it is stored, and how it is deleted. It covers merchants using the app and, briefly, visitors to merchant storefronts (who, in short, we know nothing about).
Information we process, and why
- Store and account information. Your store’s myshopify domain, the access token Shopify issues to the app, and your app subscription status. Needed to operate the app at all.
- Catalog and inventory data. Products, variants, SKUs, product tags, locations, and inventory quantities per location — read from Shopify to compute where each bundle can actually be assembled. Inventory is read-only for us: the app does not request, and Shopify does not grant it, any permission to change stock quantities.
- Bundle configuration. The bundles you create in the app — titles, components, quantities — stored in our database and mirrored to metafields on your own products.
- Order line items. To report bundle sales by component SKU, we process the contents of orders: which products were bought, in what quantity, at what price, and when. Orders reach us with no customer fields. TrueBundle declares zero customer fields to Shopify, so names, email addresses, phone numbers and addresses are stripped from every response before it reaches us. We could not request them if we tried — that part is the platform’s doing, not ours.
- The one exception, and it is ours to keep. Two of Shopify’s three mandatory privacy webhooks — the customer data-request and customer-erasure topics — deliver a customer’s email address and phone number to our endpoint, because Shopify sends them with the request. We do not read them, store them, or write them to a log. That one is our own code rather than a platform guarantee, so we hold ourselves to it with automated tests that fail if any of those values ever reaches a log line, and with a rule that the handler may read exactly one field from that payload: the list of orders to erase.
- Theme check. With read-only theme access, the app checks whether the TrueBundle availability block is installed in your published theme, so setup can tell you honestly whether it’s done. We read for this purpose only and never modify your theme.
- Diagnostics. A technical audit log of sync activity (what was recomputed, when, and whether it succeeded) so both you and we can trust — and verify — that your availability data is current. These records contain product and bundle identifiers, never personal data.
What the app writes to your store
For transparency, the complete list: the app creates and updates the bundle products you ask it to create, their metafields (bundle recipe and computed availability), their price and status, and — when you activate a bundle — its publication to your Online Store channel. It never writes inventory quantities, never edits your theme, and never touches products it didn’t create, beyond reading them.
What we never do
- We do not sell, rent, or share your data with anyone for marketing or advertising.
- We do not use your data to train machine-learning models.
- We do not track, profile, or collect any information about your storefront’s visitors.
- We do not process payments or see payment information; billing is handled entirely by Shopify.
Storefront visitors
The TrueBundle availability widget on merchant storefronts is rendered by Shopify from data already attached to the product. It runs no scripts of ours, makes no request to our servers, and sets no cookies. We receive no information about storefront visitors, ever.
Where data lives, and how it’s protected
App data is stored in a managed database hosted with Render, on infrastructure located in the United States. Data is encrypted in transit (TLS everywhere, including between us and Shopify) and encrypted at rest. Access is limited to the operator of the app.
Because the app runs in the United States, a store based anywhere else — including in the European Economic Area or the United Kingdom — has its data processed in a country other than its own. You are the controller of your store’s data and we process it on your behalf, so this is a fact you may need for your own records. It is written here rather than left for you to ask.
Retention and deletion
We keep your data for as long as the app is installed, because it is what the app runs on. When you uninstall, sync activity for your store stops immediately, and your store’s data is deleted following the data-erasure request Shopify issues after uninstallation — in any case within 30 days of that request. You can also request deletion at any time by emailing us.
Because we hold no customer personal data, a customer data request forwarded by Shopify is answered with exactly that: there is nothing to return. A redaction request is not quite the same. We hold no names, email addresses, phone numbers or addresses — but our bundle sales records reference the orders they came from, and an order reference points at a purchase somebody made. So when a redaction request names an order, we strip those references from our records: what remains is the quantity, price, SKU and product tags, with no way left to trace them to an order. Your reporting totals are unaffected — the sale still counts, it simply stops being attached to anything.
Who else touches the data
Two parties receive your data: Shopify (the platform the app runs on — see Shopify’s privacy policy) and our hosting provider named above, which stores it. No analytics service, ad network or other third party receives your store’s data or any personal data. We do use an outside uptime monitor so we find out before you do when something breaks — it only ever sees a status code and a handful of aggregate counters, never your store’s name and never any data belonging to you or your customers.
Your rights
Depending on where you operate, you may have rights to access, correct, export, or delete data we hold about your store (under the GDPR, CCPA, and similar laws). Email us and we will honor them; there is deliberately little to hold.
Changes to this policy
If our data practices change — for example, if a future feature needs a new permission — we will update this page and its effective date before the change ships, and describe the change in plain language in the app.
Contact
YNV Labs · ynvlabs@gmail.com