Privacy Policy
Last updated: September 2026
2PM Product Compare (the "App") is provided by 2PM ("we", "us", or "our"). The App lets a Shopify merchant present products side by side, with comparison attributes the merchant configures from the Shopify admin. This Privacy Policy describes the personal information we collect when you install and use the App, how we use it, and who we share it with.
Personal Information the App Collects
When you install the App, it is authorised to access certain types of data from your Shopify account through the Shopify Admin API. We request only the following access scopes:
- read_products — to read your product catalog (titles, descriptions, images, prices, variants, and metafields) so it can be displayed in comparison tables.
- write_products — to write the product metafields the App uses to store per-product comparison values.
We collect and store the following:
- Store and authentication data: your myshopify.com domain, the granted access scopes, and the Shopify access token the App uses to call the API on your behalf.
- Account holder details: where Shopify provides them with the session, the user ID, first name, last name, and email address of the staff account that authorises the App.
- App configuration: your comparison attributes, attribute groups, display settings, suggested product configurations, and your subscription and billing status.
Storefront visitors. The App serves part of its storefront functionality through a Shopify app proxy, so requests from your customers' browsers reach our servers. We do not create customer profiles and we do not store customer personal information in our database. A visitor's comparison selections are held in their own browser's local storage and are never transmitted to us. Our hosting provider does record standard server logs for these requests — including IP address, user agent, and timestamp — which are used for security and troubleshooting and are retained only for the provider's standard log retention period.
The App does not set advertising or analytics cookies, and does not use web beacons, pixels, or similar tracking technologies.
How Do We Use Your Personal Information?
We use the personal information described above to:
- Provide and operate the product comparison functionality
- Render comparison attributes and product data on your storefront
- Authenticate your store and keep your session valid
- Manage your plan, subscription, and charges through Shopify's Billing API
- Respond to your support requests
- Diagnose faults, prevent abuse, and keep the service secure
We do not sell your personal information, and we do not use it for behavioural advertising or targeted marketing.
Sharing Your Personal Information
We do not sell or rent your information. We share it only with the service providers needed to run the App:
- Shopify — the platform the App runs on. Product data, metafields, and billing are handled through Shopify's APIs.
- Vercel — application hosting and server logs.
- Supabase — the managed PostgreSQL database where your store settings and configuration are stored.
We may also disclose information where we are required to do so by law, or to respond to a lawful request, or to protect our rights.
Your Rights
If you are a resident of the European Economic Area or the United Kingdom, you have the right to access the personal information we hold about you, to ask that it be corrected, updated, or erased, to object to or restrict how we process it, and to request a copy in a portable form. You also have the right to complain to your local data protection authority. To exercise any of these rights, contact us using the details below.
We process your information to perform the contract we have with you — that is, to provide the App you installed — and to meet our legal obligations.
International transfers. Our infrastructure is located outside Europe. Application hosting is provided by Vercel, and the database is hosted by Supabase in the AWS Asia Pacific (Tokyo) region. Your information is therefore transferred to, and processed in, countries outside the EEA and the UK.
Data Retention
We retain your store data for as long as the App is installed. When you uninstall the App, we receive Shopify's app/uninstalled webhook and delete the associated records — sessions, subscription, settings, attributes, attribute groups, and suggested products.
We also implement Shopify's mandatory compliance webhooks. On shop/redact we delete all remaining data for the shop. We do not store customer personal data, so customers/data_request returns no customer records and customers/redact requires no deletion on our side.
You may request deletion of your data at any time by contacting us, without waiting for uninstall.
Changes
We may update this Privacy Policy from time to time, for example to reflect changes to the App or to legal requirements. When we do, we will revise the "Last updated" date at the top of this page.
Contact Us
For more information about our privacy practices, if you have questions, or if you would like to make a complaint or exercise any of the rights described above, contact us at support@2pm.dev.