Privacy Policy

Last updated: August 13, 2026

Extra Product Options ("the app") is installed by merchants on the Shopify platform to let their customers add priced options (for example, gift wrapping or a flavor choice) to a product before purchase. This policy explains what data the app collects and how it's used.

Data we collect from merchants

When a merchant installs the app, Shopify's standard authentication process gives the app an access token for that store, which we store securely to make authenticated requests to the Shopify Admin API on the merchant's behalf. We also store the option sets, values, prices, and product assignments the merchant creates while configuring the app.

Data we do not collect

The app never reads or stores any customer-identifying information - no names, email addresses, phone numbers, or physical addresses. The app has no access to order or customer data at all: it only ever reads and writes product information, product metafields, and cart transform configuration.

When a customer selects a priced option on a product page, that selection is written directly onto their cart as a line item property and expanded into cart/checkout line items using Shopify's native Cart Transform Function - a mechanism that runs entirely on Shopify's own infrastructure. That selection is never transmitted to or stored on the app's own servers.

How we use the data we do collect

Merchant configuration data (option sets, values, prices, and which products they apply to) is used solely to operate the app: rendering the option picker on the storefront, keeping product metafields in sync, and managing the small number of hidden "carrier" products the app creates to represent priced add-ons in the merchant's own catalog.

Data sharing

We do not sell, rent, or share merchant or customer data with any third party. The app doesn't integrate any third-party analytics, advertising, or tracking services.

Data retention and deletion

If a merchant uninstalls the app, their store's authentication data is deleted from our systems. Because the app never stores customer-identifying information, Shopify's mandatory data protection webhooks (customer data request, customer redact, and shop redact) require no action beyond acknowledging the request - there is no customer data to return or delete.

Security

All data exchanged between the app, Shopify, and merchants' browsers is encrypted in transit using TLS/HTTPS. Access tokens are stored using Shopify's officially supported session storage pattern and are never exposed to the storefront or any client-side code.

Changes to this policy

If this policy changes, the updated version will be posted at this same URL with a revised "last updated" date.

Contact

Questions about this policy or the app's data practices can be sent to insite.dev@hotmail.com.