23 September 2026
Privacy
Castor is a Shopify app. The merchant owns the store. We process data so the store can show offers, popups, widgets, and a product desk. We do not sell personal information, and we do not build a profile of a shopper that follows them to other stores.
The merchant’s store
When a store installs the app, Shopify gives us permission to read and update that store’s products, inventory, locations, orders, and theme, and to create discount codes. We use that to pull the catalog, send edits back, show stock, and create a one-use code when a shopper submits a form set to Generate.
Order downloads are used for units and revenue. Recommendations do not use the customer’s name, email, phone, or street address from those orders.
Shoppers
A popup or widget can ask for a name, email, and phone. Those fields are stored on that shop’s contact list only. They are not used to recommend products, and they are not shared with other shops. If the merchant typed a list URL on the form, the browser also posts the signup there. We do not send the address to the recommendation engine.
On the storefront, the script sees the product on the page and the cart total so it can fill a product block, a stock line, or a free-shipping bar. That is tied to the visit, not to a name.
The dashboard
Opening the app from Shopify Admin starts a short login that lives in the browser tab and expires. The shop domain and store id stay in the browser so the next page still knows which store is open. That storage is for this app, on this site. It is not an advertising cookie and it is not read by other sites.
Shopify’s required requests
We accept Shopify’s compliance webhooks and check the signature before acting.
- customers/data_request. We acknowledge the request. The merchant can export that shop’s contacts from the dashboard.
- customers/redact. We delete contact rows for that store that match the email or phone Shopify sends, then we drop the address.
- shop/redact. We delete that store’s contact list.
Who decides
For shopper signups, the merchant decides why the address is collected and what the offer says. We store and delete it on the merchant’s instructions and on Shopify’s redact webhooks. Shoppers should contact the store about their own signup. Questions about the app go through the Shopify app listing.
How long it stays
Catalog, contacts, and connectors stay until the merchant deletes them, uninstalls, or Shopify sends a redact webhook for that person or that shop. Discount codes are created in the merchant’s own Shopify admin. Shopify keeps those codes under the store’s account.
