This is Consenfy's own privacy policy as an app vendor. It is not the merchant-facing policy generator built into the app for your storefront.
This policy explains what personal data Consenfy Technologies LLP collects when you install and use the Consenfy Shopify application, and how we handle it.
It covers data we hold as a business in our own right — for example about the merchant who installs the app. Where we process shopper data on a merchant's behalf we act as a processor under their instructions; that relationship is governed by our Data Processing Agreement, not this policy.
Consenfy is deliberately built so that your compliance data stays inside your own Shopify store. Consent records, notice versions, rights requests and audit entries are written to metafields and metaobjects in your store, under a namespace reserved exclusively for the App. We read and write them through Shopify's Admin API. We do not copy them onto our servers.
What we do hold is limited to what is needed to authenticate with Shopify and run the service.
From the merchant, when the app is installed
| Data | Why | Where it lives |
|---|---|---|
| Shopify store domain | Identifies your store | Our session database |
| Shopify access token and refresh token | Authenticates Admin API calls on your behalf | Our session database, encrypted at rest by the hosting provider |
| Business, DPO and grievance contact details you enter in Settings | Displayed in your consent notice and rights form | Your Shopify store, as a shop metafield — not our servers |
From shoppers
We do not collect shopper personal data for our own purposes.
When a shopper makes a consent decision or submits a rights request, the record is written into the merchant's own Shopify store. Before anything is written, direct identifiers are hashed: email addresses and IP addresses go through a keyed SHA-256 so the stored value cannot be reversed without a secret held only by the deployment. Where a shopper is signed in, Shopify's own customer identifier is stored so the merchant can find them in their Shopify admin.
Transiently, in the course of running the service
Some personal data passes through our servers without being stored — for example an email address being hashed, or being handed to our mail provider so a confirmation email can be sent. It is not retained afterwards.
Server logs
We keep operational logs to diagnose faults. These record the store domain and the type of event. They are deliberately written not to include shopper personal data.
We process merchant data to perform our contract with you (the Terms of Service) and to meet legal and accounting obligations. Where we process shopper data, we do so on the merchant's documented instructions as their processor.
| Processor | Purpose | Location |
|---|---|---|
| Shopify | Platform; hosts the merchant's store and all compliance data | Per Shopify's own terms |
| DigitalOcean | Application hosting and session database | Bengaluru, India (BLR1 region) |
| email provider — to confirm | Sends consent and rights-request confirmation emails | to confirm |
Our application and session database are hosted in India. Where a sub-processor operates outside India, that is disclosed in the table above and assessed against the cross-border transfer position under DPDPA Section 16.
shop/redact request after uninstall.No system is perfectly secure. Our incident-response process is described in a separate policy.
If you are a merchant, you may ask us to access, correct or delete the personal data we hold about you, withdraw consent where processing relies on it, nominate another person to exercise your rights, or raise a grievance. Contact consenfy@gmail.com.
If you are a shopper, your rights are exercised against the merchant whose store you used, not against us — they are the Data Fiduciary for your data, and it is held in their store. Their storefront has a Privacy & Data Rights form for this. If you contact us directly, we will refer you to the merchant and can help them respond.
In accordance with the DPDPA, our grievance officer is:
The app is a business tool for merchants and is not directed at children. It provides merchants with an age-gate feature for their own storefronts; we do not ourselves knowingly collect data from children.
We may update this policy. Material changes will be notified in the app or by email, and the effective date above will change.