Privacy Policy
Last updated: 17 September 2026
PlainClaim is a Shopify app that displays the European Union's harmonised legal guarantee notice and the EU GARAN durability label on merchants' storefronts. This policy explains what we process, why, and who else sees it.
The short version
PlainClaim does not process your customers' personal data. We do not request, receive or store buyer names, email addresses, addresses, orders or payment information. The app's Shopify permissions cover products, themes and shop content only — it cannot read orders or customers even if it wanted to, and our App Store declaration says so.
What we process about a merchant
- Shop identity — your myshopify.com domain, your shop's primary language, and the access token Shopify issues so the app can act on your behalf.
- Contact email — your shop's owner or contact address, from Shopify, used to send you a small number of operational emails about the app. You can opt out of all of them.
- Product data — titles, types, tags, vendors and images, read so you can find products in the app. We store the guarantee fields you enter (duration, producer, model) on your own products as Shopify metafields; they remain your data and stay on your products.
- Your confirmations — when you record that a producer offers a durability guarantee, we keep a dated record of that confirmation, including which staff account made it where Shopify tells us. This is the evidence your compliance report is built from.
- Technical signals — whether the app's theme extension is switched on, and when your storefront last loaded it.
What a shopper's browser does
When a shopper opens the notice on your storefront, their browser requests the official notice image from us. We do not set cookies, do not run analytics on your storefront, and do not build any profile. Server logs of that request are retained briefly for operational reasons and are not linked to a shop or a person.
The waitlist on this website
If you give us your email address on this site, we store that address, the shop domain you optionally typed, and which page you used. We write to you once, when the app is approved, and then delete the entry unless you have become a user. You can ask us to remove it sooner at any time.
Who else sees this data
These are our subprocessors. We add none silently: this list is updated before a new one is used.
- Railway — application hosting and database, europe-west4 (Netherlands).
- Cloudflare — DNS, content delivery and email forwarding.
- Resend — sending the operational emails described above.
- Sentry — error monitoring. Configured not to attach request bodies, cookies, headers or user identities, and errors are scrubbed of secrets before they leave our servers.
- Anthropic — used only if you enable the optional Claims Check feature, and then only on the product text you ask it to review. Never on customer data, because we hold none.
How long we keep it
While the app is installed, plus a short period afterwards. When you uninstall, Shopify sends us a deletion request about 48 hours later and we delete your shop's records. Your guarantee metafields stay on your own products, because they are your data and deleting a producer's guarantee terms because you removed a display app would be destroying something we do not own.
Your rights
Under the GDPR you may ask for a copy of your data, its correction, or its deletion, and you may object to processing. Write to support@plainclaim.app and a person will answer. If you are unsatisfied you may complain to your national data protection authority.
Where PlainClaim processes data on behalf of your shop, you are the controller and we are the processor. Where we process your own contact details or waitlist entry, we are the controller.
Changes
If this policy changes materially we will say so in the app before the change takes effect, not only here.
Questions: support@plainclaim.app