← Backstop

Privacy Policy

Effective 2026-08-01 · Contact: support@runbackstop.com

What Backstop stores

Backstop stores company-level business data only, scoped to your shop:

DataContentsPersonal data?
CompaniesShopify company ID, company name, credit limit, exposure, statusNo, organization name only
Ledger & order stateOrder IDs, amounts as integer cents, due dates, timestampsNo
Audit entriesDecision records: inputs seen, rule fired, timestampNo
Settings & sessionsApp settings; Shopify OAuth session for merchant staff (name/email of the staff user who installed)Merchant staff only, never storefront customers

We do not store customer names, emails, phone numbers, or addresses. Order webhook payloads are processed in memory and not persisted; we keep only order IDs, company IDs, money amounts, due dates, and timestamps. Backstop never touches payment card data. Shopify processes all payments; Backstop only controls which payment options appear at checkout.

Why we access order data

Backstop reads orders, payment transactions, and refunds for a single purpose: computing each company's outstanding balance so your credit limits can be enforced. That is the app's core function; the data is used for nothing else.

What we never do

  • No selling or sharing of merchant or buyer data.
  • No advertising or profiling use.
  • No AI/ML training on your data.
  • No assessment of any company's ability to pay: you set the limits; Backstop enforces them.

Retention and deletion

When you uninstall Backstop, access tokens are deleted immediately. Business data is retained for 48 hours (so a quick reinstall keeps your limits, history, and audit trail), then Shopify sends the shop/redact signal and every row belonging to your shop is permanently deleted. GDPR data-request and redaction webhooks are honored: since we hold no customer-level data, customer data requests return an empty report and customer redactions complete trivially.

Hosting and security

Data is stored encrypted at rest with our hosting provider. Webhooks are verified with Shopify's HMAC signatures; unverified requests are rejected.

Changes and contact

We will update this page if our practices change and note the new effective date above. Questions: support@runbackstop.com.

HomeTerms