Skip to content
NarrowForge

NF / Legal / Shopify

Customer Data Health — Privacy policy

Scope and product boundary

This policy explains how Customer Data Health, a Shopify admin app operated by NarrowForge, processes customer information for data-quality review. It detects duplicate candidates and supported quality issues, explains the finding and prepares a proposed correction or merge. It does not verify identity or address deliverability against an external registry and does not provide legal, tax or privacy advice.

Information received from Shopify

The app uses the minimum customer and store information needed for its detectors and review workflow, which can include:

  • Store, installation and customer identifiers used to keep each merchant's data separate.
  • Name parts, company, email, phone and address fields used to detect quality issues and duplicate candidates.
  • Order-count and store metadata used only as supporting signals where the enabled detector requires it.
  • Scan results, issue explanations, proposed actions, remediation records and audit events.

The app does not sell customer information, use it for advertising or send it to an external identity or address-verification registry.

Purpose and merchant responsibility

We process this information to run a store-scoped scan, show explainable findings, preview a proposed action, apply a correction or merge only after explicit merchant confirmation and keep the operational audit history. The merchant remains responsible for its lawful basis, notices and decision to approve a change.

Storage, isolation and security

Operational records are stored in the application database and are scoped to the authenticated Shopify store. Shopify sessions and access tokens are used server-side. The app uses HTTPS, verifies Shopify webhook authenticity and handles customer and shop deletion events. A browser-supplied store or customer identifier is not treated as an authorisation boundary.

Service providers

  • Shopify provides the store platform, authentication, Admin API and marketplace billing.
  • NarrowForge's hosting and database providers run the web process, worker and operational database.
  • Support requests are handled through the NarrowForge support mailbox. Never send passwords, API keys, tokens or unnecessary customer exports.

Retention and deletion

Customer fingerprints are retained for the configured operational window, which defaults to 180 days in the current release. Queue, webhook and audit housekeeping records are retained for their documented operational period. Scan and remediation history remains while the store needs it unless the tenant is deleted or a verified request applies. Shopify uninstall, customer deletion/redaction and shop redaction are deletion boundaries. A merchant can also use the NarrowForge deletion page or contact support@narrowforge.com.

Your rights and contact

Depending on applicable law, a data subject or merchant may request access, correction, deletion or restriction. Requests are verified and routed to the merchant where the merchant controls the customer data. Contact support@narrowforge.com and include only a safe reference and store domain.

Last updated: 2026-09-12.