Privacy Policy

Last updated: December 11, 2025

Introduction

AppTrim ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Shopify application.

Information We Collect

Information from Shopify

When you install AppTrim, we collect the following information through the Shopify API:

  • Shop domain and basic store information
  • Billing information (to analyze your app spending)
  • Store owner contact information

Invoice Data

When you upload invoices to AppTrim, we process:

  • Shopify billing invoice data (app names, prices, dates)
  • Subscription and usage charge information
  • Historical billing data you choose to upload

Usage Information

We automatically collect:

  • Log data (IP address, browser type, access times)
  • App usage analytics (features used, upload counts)
  • Subscription status and billing activity

Anonymous Benchmark Data Collection

To provide accurate peer benchmarks and industry insights, we collect anonymized data from production stores:

  • Fully Anonymized: Your store domain is irreversibly hashed using SHA-256 encryption, making it impossible to identify your store
  • Aggregate Metrics Only: We collect total app spend, app count, and category spending patterns
  • No Personal Information: No store names, owner details, or personally identifiable information is included
  • Development Stores Excluded: Test, sandbox, and development stores are automatically excluded from benchmark data
  • Opt-In by Default: Production stores are opted in by default to help improve benchmark accuracy for the entire community
  • Recent Data Only: We only use data from the last 90 days to ensure benchmarks reflect current market conditions

This anonymized data helps us provide you with accurate peer comparisons (e.g., "stores in your revenue range spend an average of $X on marketing apps"). Your specific invoice details and store identity remain private and are never shared.

Note: If you wish to opt-out of anonymous benchmark data collection, please contact us at hey@apptrim.io. This will not affect your ability to view benchmarks, but your data will not contribute to improving benchmark accuracy for other users.

How We Use Your Information

We use the information we collect to:

  • Provide and maintain our service
  • Analyze your Shopify app spending and identify savings opportunities
  • Process your subscription and billing
  • Send you service-related notifications
  • Improve our application and develop new features
  • Generate anonymized peer benchmarks and industry insights (see "Anonymous Benchmark Data Collection" above)
  • Comply with legal obligations
  • Enforce our inactivity cancellation policy (auto-cancel after 30-60 days of no activity)

Data Storage and Security

Your data is stored securely using industry-standard encryption:

  • All data is encrypted in transit using HTTPS/TLS
  • Database access is restricted and encrypted
  • We use secure cloud hosting providers (Vercel, Neon/PostgreSQL)
  • Regular security audits and updates are performed

While we implement reasonable security measures, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

  • Anonymized Benchmark Data: We share aggregated, anonymized benchmark data with our users to provide peer comparison insights. This data cannot be used to identify any individual store or user
  • With your consent: When you explicitly authorize us to share specific information
  • Service providers: Third-party vendors who help us operate our service (hosting, analytics, payment processing)
  • Legal requirements: When required by law, subpoena, or other legal process
  • Business transfers: In connection with a merger, acquisition, or sale of assets

Important: Your specific invoice data, store identity, and personal information are never shared with other users or third parties. Only anonymized, aggregated benchmark data is used for peer comparisons.

Your Data Rights

You have the following rights regarding your data:

  • Access: Request a copy of your personal data
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your data
  • Export: Receive your data in a portable format
  • Opt-out of Marketing: Unsubscribe from marketing communications
  • Opt-out of Benchmarks: Request to opt-out of anonymous benchmark data collection (your data will no longer contribute to peer benchmarks)

To exercise these rights, contact us at hey@apptrim.io

GDPR Compliance (EU Users)

If you are located in the European Economic Area (EEA), you have additional rights under GDPR:

  • Right to access your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Right to withdraw consent

Our legal basis for processing your data is:

  • Contract performance (to provide our service)
  • Legitimate interests (to improve our service and provide anonymized peer benchmarks)
  • Legal obligations (to comply with laws)
  • Your consent (when explicitly provided)

For anonymous benchmark data collection, we rely on legitimate interest as our legal basis. This data is fully anonymized and used to provide industry insights that benefit all users. You retain the right to object and opt-out at any time.

Data Retention

We retain your data for as long as necessary to provide our service:

  • Active account data: Retained while your subscription is active
  • After uninstall: Data is retained for 30 days, then automatically deleted
  • Inactive accounts: Per our policy, subscriptions are automatically cancelled after 30-60 days of inactivity
  • Anonymous benchmark data: Only recent data (last 90 days) is used for calculations; older anonymized data may be retained for historical trend analysis
  • Legal requirements: Some data may be retained longer to comply with legal obligations

Cookies and Tracking

We use essential cookies to:

  • Maintain your session and authentication
  • Remember your preferences
  • Analyze app usage (anonymized analytics)

You can disable cookies in your browser, but this may affect app functionality.

Children's Privacy

AppTrim is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers, including:

  • Standard contractual clauses approved by the European Commission
  • Compliance with Privacy Shield principles (where applicable)
  • Adequate data protection agreements with service providers

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last updated" date
  • Sending you an email notification for material changes

Your continued use of AppTrim after changes indicates acceptance of the updated policy.

Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

Shopify-Specific Privacy Information

As a Shopify app, we comply with Shopify's privacy requirements:

  • We only access Shopify data necessary for our service
  • We respond to customer data requests within 30 days
  • We support Shopify's GDPR webhooks (data requests, customer redaction, shop redaction)
  • When you uninstall our app, your data is deleted within 30 days
  • We do not use your data for advertising or marketing to third parties

Our Commitment: At AppTrim, we believe you should only pay for apps you actually use. This extends to your data - we don't hoard it unnecessarily. If you're inactive for 30-60 days, we automatically cancel your subscription. If you uninstall, your data is deleted within 30 days. Simple, honest, and transparent.