Privacy Policy — Size Chart Fit
Last updated: September 24, 2026
Merchentia (“we”, “us”) operates the Merch - Size Chart Fit Shopify app (the “App”). This policy explains what data the App accesses, stores, and shares.
Summary
The App lets you add size charts to your product pages and, on the Pro plan, a fit finder that suggests a shopper’s size. It stores the chart and configuration data you create and reads your product catalogue structure (so you can assign charts to products, collections, types, or tags). It requests only the read-only read_products permission, never accesses your customers or orders, and stores no shopper personal data. It does not process payments.
What the App stores
- Shop session credentials — an access token and basic shop identifiers (your
*.myshopify.comdomain), used to authenticate the App and operate the embedded admin. - Your charts & settings — the size charts, measurement tables, how-to-measure content, display options, and the product/collection/type/tag rules you create. This is your content and configuration, which you choose to publish on your storefront.
- Product catalogue references — to power the resource pickers and chart targeting, the App reads product, collection, product-type, and tag information via the
read_productsscope. It requests no other Admin API scopes and has no access to your customers or orders. - We store no shopper personal data, no payment details, no order information, and no Shopify customer accounts.
The fit finder (shopper measurements)
On the Pro plan, a shopper can enter a few measurements to get a suggested size. These measurements are used to compute a size suggestion and are not stored as shopper personal data or linked to a shopper’s identity. Only non-identifying, aggregated usage counts (for the in-app analytics) are retained.
What the App does not do
- It uses only the read-only
read_productsscope and cannot read your customers or orders. - It does not process payments. Subscription billing is handled entirely by Shopify Billing; we never see card or payment details.
- It does not collect shopper personal data, build shopper profiles, or sell data.
Data sharing
We do not sell or rent your data. We share data only with the service providers needed to run the App: Shopify (installation, authentication, billing) and our hosting and database providers, which run the App and store your charts and settings. Storefront requests are served through Shopify’s App Proxy and are HMAC-verified.
GDPR / data requests
The App implements Shopify’s mandatory compliance webhooks:
customers/data_request— the App stores no shopper personal data, so there is nothing to provide; the request is acknowledged.customers/redact— there is no shopper personal data to delete; the request is acknowledged.shop/redact— sent by Shopify about 48 hours after you uninstall. On receiving it we delete all of your shop’s stored data (charts, settings, analytics), within the 30 days Shopify allows — unless you have reinstalled the App, opened it, and it is still installed, in which case it is kept.
Uninstalling the App revokes its access immediately. Your stored data is normally kept until Shopify’s shop/redact request, sent about 48 hours after you uninstall, so that an accidental uninstall can be undone: reinstall the App and open it within that time and everything is still there. It is then deleted as described above.
Data retention & security
Your charts, settings, and analytics are retained while the App is installed and normally until Shopify’s shop/redact request, sent about 48 hours after you uninstall it. They are then deleted within the 30 days Shopify allows, unless you have reinstalled the App, opened it, and it is still installed. Data is stored by our infrastructure providers using industry-standard security and access controls.
Contact
Questions about this policy or your data: ask@merchentia.com.