Skip to content

Privacy Practices

WandStore is designed to use only the data needed to create, render, and measure generated Shopify experiences.

WandStore follows these principles:

  1. No browsing-history tracker - WandStore does not rely on browsing history, fingerprinting, or advertising cookies for personalization.
  2. Shopify remains the system of record - Customer, order, product, discount, and theme context comes from Shopify APIs.
  3. Sensitive fields are excluded - Payment information, passwords, phone numbers, and full physical addresses are not used for generation.
  4. Drafts are merchant-controlled - Generated drafts are private until a merchant sets a version live.
  5. Storefront fallback is safe - If no live version exists, WandStore renders nothing and the native Shopify theme remains intact.

WandStore uses Shopify authentication for merchant admin access. Customer-account features use Shopify’s Customer Account API with OAuth 2.0 and PKCE.

Customers authenticate directly with Shopify. WandStore never sees or stores customer passwords.

All communication uses encrypted transport:

  • Customer browser to Shopify and WandStore
  • WandStore app to Shopify APIs
  • WandStore runtime to supporting services

WandStore does not transmit customer data over plaintext connections.

WandStore stores operational data only for app functionality, generation, rendering, version history, and analytics.

WandStore avoids data that is not needed for the product:

  • No advertising-network sharing
  • No data broker sharing
  • No customer password storage
  • No payment data processing
  • No browsing-history personalization

Generated experiences can use Shopify purchase and product context, but the goal is storefront relevance, not cross-site tracking.

Merchants using WandStore may want to add language like this to their store privacy policy:

We use WandStore to generate personalized storefront widgets and experiences. When relevant, WandStore uses Shopify customer, order, product, discount, audience, and store context, along with our generation instructions, to create content for our storefront. WandStore does not use payment information, passwords, phone numbers, or browsing-history tracking for this personalization. Generated content and analytics may be stored to operate the app, measure performance, and support compliance requests.

For specific regulatory compliance information: