HomePrivacy policy

Privacy policy

Who this policy covers

Buddybuy is a group shopping app for Shopify stores. Two different groups of people are covered by this policy, and the relationship is not the same for both.

  • Merchants who install Buddybuy on a Shopify store. For merchant account data, Buddybuy is the data controller.
  • Shoppers who open a group shopping room on a merchant's storefront. Here the merchant is the controller and Buddybuy acts as a processor on their behalf — the merchant decides what happens to their customers' data, and their own store privacy policy applies alongside this one.

What we collect from merchants

When you install Buddybuy, Shopify provides the information needed to run the app on your store. This includes your store domain, the store name, contact email, country and currency, plan details, and the access token that lets the app call Shopify's API on your behalf.

Buddybuy requests only the Shopify permissions it needs to function. Products and collections are read so discount rules can be scoped to them; discounts are read and written so group discounts can be applied automatically at checkout; orders are read so merchants can see which orders came from a room; themes are read so the room block can be placed in your theme.

What we collect from shoppers

A group shopping room is a live shared session, so a small amount of data is needed to keep members in sync. In the shopper's browser, Buddybuy stores:

  • A member ID. A random identifier generated in the browser so the room can tell members apart. It is not linked to a Shopify customer account and is not shared between stores.
  • A display name. Whatever the shopper types in so other members can see who is in the room.
  • An email address, only if entered. Used to notify that shopper about the room. It is optional, and rooms work without it.
  • Display preferences. The chosen room theme and language, so the room looks the same next time. These are preferences, not identifiers.

The room itself holds what members do together: chat messages, variant votes, and the items in the shared cart. This is visible to the other members of that room — that is the point of the feature — so shoppers should treat a room like any other shared chat and avoid posting sensitive personal information in it.

Payments: Buddybuy never sees card numbers or payment credentials. Checkout runs entirely on Shopify. Group discounts are applied through Shopify Functions at checkout, which means no discount code is passed around and no payment data reaches Buddybuy.

This website

This marketing site uses Google Analytics 4 and Google Tag Manager to understand which pages people find useful, and Microsoft Clarity for aggregate heatmaps and session replay of the marketing pages. These tools set cookies and record technical information such as browser type, approximate location derived from IP address, and the pages visited.

These analytics apply to this website only. They are not part of the app that runs on a merchant's storefront, and they do not track shoppers into the stores that use Buddybuy. You can block them with any standard browser or extension-level cookie control without affecting the site.

Why we process this data

  • To provide the service. Rooms cannot sync members, votes, or a shared cart without holding the data that describes them.
  • To apply discounts correctly. Discount rules are evaluated against room membership and cart contents at checkout.
  • To support merchants. When a merchant reports a problem, their store's data may be examined to reproduce and fix it.
  • To keep the service secure and reliable. Logs are used to detect abuse, debug failures, and prevent fraudulent use of discounts.

Who we share data with

Buddybuy does not sell personal data, and does not share it with advertising networks or data brokers. Data is shared only with the infrastructure providers needed to run the service — Shopify, application hosting, and the analytics tools named above — and only to the extent required for them to perform that role. Data may also be disclosed where the law requires it.

How long we keep it

Merchant account data is kept while the app is installed. Room data — messages, votes, and shared carts — is kept while the room is active and for a limited retention window afterwards so merchants can review recent activity. Aggregate, non-identifying analytics may be kept longer.

When a merchant uninstalls Buddybuy, Shopify sends an uninstall webhook and that store's data is scheduled for deletion. Buddybuy also honours Shopify's mandatory customers/data_request, customers/redact and shop/redact webhooks, which is how Shopify routes a customer's data request or deletion request to the app.

Your rights

Depending on where you live, you may have the right to access the personal data held about you, correct it, delete it, object to certain processing, or receive a copy in a portable format. To exercise any of these, contact us through the support channel on our Shopify App Store listing.

If you are a shopper rather than a merchant, contact the store you shopped with first. That merchant is the controller of your data, and Shopify routes their request to Buddybuy through the webhooks described above. We will still help if you come to us directly, but the merchant's route is usually faster.

Security

Data is transmitted over encrypted connections and access to production systems is limited to the people who need it to operate the service. No system is perfectly secure, but access tokens and store credentials are treated as sensitive and are never exposed to a storefront visitor's browser.

International transfers

Buddybuy's infrastructure and its providers may process data in countries other than the one you live in. Where data is transferred out of the UK or European Economic Area, it is transferred under the safeguards required by applicable data protection law.

Children

Buddybuy is a tool for merchants and is not directed at children. We do not knowingly collect personal data from children. If you believe a child has provided data through a room, contact us and it will be removed.

Changes to this policy

This policy may be updated as the app changes. Material changes affecting merchants will be communicated through the app or by email.

Contact

For privacy questions and data requests, merchants can reach us through the support channel on our Shopify App Store listing. Shoppers should contact the store they bought from, since that merchant is the controller of their data.

Common questions

Does Buddybuy sell personal data?

No. Buddybuy does not sell personal data and does not share it with advertising networks or data brokers. Data is used to run the group shopping rooms and to support the merchants who install the app.

What does Buddybuy store about a shopper who joins a room?

A randomly generated member ID that identifies the browser inside the room, and the display name the shopper types in. An email address is only stored if the shopper enters one. None of this is used to build a profile across stores.

Does Buddybuy read my customers' payment details?

No. Checkout and payment are handled entirely by Shopify. Buddybuy never receives card numbers or payment credentials.

How long is room data kept?

Rooms and their messages are kept while they are active and for a limited retention window afterwards, so merchants can see recent activity. Merchants can request deletion of their store's data at any time.

What happens to the data if a merchant uninstalls Buddybuy?

Shopify sends an uninstall webhook and the store's data is scheduled for deletion. Shopify's mandatory data-request, customer-redact and shop-redact webhooks are honoured as required by the app store rules.

Who do I contact about a privacy request?

Merchants can reach us through the support channel on the Buddybuy listing in the Shopify App Store. Shoppers should contact the store they bought from first, since that merchant is the data controller for their order.

For how the app itself works, see the setup guide or how group buying works.