Privacy Practices
WandStore is designed to use only the data needed to create, render, and measure generated Shopify experiences.
Privacy principles
Section titled “Privacy principles”WandStore follows these principles:
- No browsing-history tracker - WandStore does not rely on browsing history, fingerprinting, or advertising cookies for personalization.
- Shopify remains the system of record - Customer, order, product, discount, and theme context comes from Shopify APIs.
- Sensitive fields are excluded - Payment information, passwords, phone numbers, and full physical addresses are not used for generation.
- Drafts are merchant-controlled - Generated drafts are private until a merchant sets a version live.
- Storefront fallback is safe - If no live version exists, WandStore renders nothing and the native Shopify theme remains intact.
Authentication
Section titled “Authentication”WandStore uses Shopify authentication for merchant admin access. Customer-account features use Shopify’s Customer Account API with OAuth 2.0 and PKCE.
Customers authenticate directly with Shopify. WandStore never sees or stores customer passwords.
Encrypted transport
Section titled “Encrypted transport”All communication uses encrypted transport:
- Customer browser to Shopify and WandStore
- WandStore app to Shopify APIs
- WandStore runtime to supporting services
WandStore does not transmit customer data over plaintext connections.
Stored operational data
Section titled “Stored operational data”WandStore stores operational data only for app functionality, generation, rendering, version history, and analytics.
Data minimization
Section titled “Data minimization”WandStore avoids data that is not needed for the product:
- No advertising-network sharing
- No data broker sharing
- No customer password storage
- No payment data processing
- No browsing-history personalization
Generated experiences can use Shopify purchase and product context, but the goal is storefront relevance, not cross-site tracking.
Suggested privacy policy language
Section titled “Suggested privacy policy language”Merchants using WandStore may want to add language like this to their store privacy policy:
We use WandStore to generate personalized storefront widgets and experiences. When relevant, WandStore uses Shopify customer, order, product, discount, audience, and store context, along with our generation instructions, to create content for our storefront. WandStore does not use payment information, passwords, phone numbers, or browsing-history tracking for this personalization. Generated content and analytics may be stored to operate the app, measure performance, and support compliance requests.
Related compliance pages
Section titled “Related compliance pages”For specific regulatory compliance information:
- Data Usage - Complete data usage breakdown.
- GDPR Compliance - European data protection workflows.