Privacy policy
This policy covers Sepnio — Cart Drawer & Upsell, a Shopify app operated by Cavit Uzunkaya, trading as VitDock, based in Türkiye, who is responsible for the data described here. Questions about it go to sepnio@vitdock.com.
The short version
Sepnio stores no shopper personal data. It keeps your own drawer configuration, daily counts of drawer activity, and the session Shopify needs for the app to talk to your shop. It reads the order totals and line properties of your recent orders to show results on your Dashboard, and stores only counts and totals. The cart drawer on your storefront sends nothing to our servers: its settings are already on the page.
What we store
This is everything in our database, record by record.
- Session
- Your shop's offline session with Shopify: your shop domain, the access token Shopify issues to the app, its scopes and expiry. It belongs to the shop, not to a person: we store no name, email or user id of your staff.
- Shop
- Your shop domain and Shopify id, your plan and subscription status, install and uninstall dates, your languages and currencies.
- SetupProgress
- Which setup steps you have finished, skipped or dismissed.
- DrawerSettings
- How the drawer looks and behaves, and which features are switched on.
- Translation
- The drawer wording you wrote, per language.
- Threshold
- Your free shipping thresholds, per currency and market.
- UpsellRule
- Your product suggestion rules and the products they offer or exclude. Product and collection ids only.
- DailyMetric
- Three counters per day: drawer opens, suggestions shown and suggestions added. No counter identifies a person, a cart or an order.
- OrderCountCache
- How many orders your shop received this month, as one number.
- ImpactCache
- The results on your Dashboard, for the last 30 days and for this month, per currency: how many orders, how many included an upsell item, upsell item sales, order subtotals with and without an upsell, and how many orders reached your free shipping goal. Only counts and totals: no order id, no time of any single order. Recomputed after an hour.
- ProcessedWebhook
- The id, topic, shop domain and time of each notification Shopify sent us, so a repeated one is not applied twice.
What we read from Shopify
- Your shop's id, timezone, languages and market currencies.
- The title, handle, status and image of the products you pick for suggestions, and the product ids in a collection or tag your rules use.
- Your monthly order count: a number, used to apply the free plan's order allowance.
- The order totals and line properties of your orders from the last 30 days or this month, leaving out cancelled and test orders: each order's id, creation time, currency and subtotal, and each line's properties and total. Never a customer, email, address, phone number or name. Order ids are used only while counting and are never stored.
- Your Sepnio subscription status from Shopify Billing.
The app also writes its own settings to your shop, so the drawer can read them on the storefront.
Your shoppers
The drawer runs in your shoppers' browsers and talks only to Shopify: your store's cart and product pages and Shopify's product recommendations. It makes no request to our servers, sets no cookie of its own and stores nothing that identifies a shopper.
It announces cart activity, such as an item added or a suggestion shown, through Shopify's own analytics events on the page. Those events carry cart and product details, never a name, email, address or device identifier. Shopify handles them and applies your shoppers' consent choices; they never reach us.
When a shopper adds a product from the drawer's upsell suggestions, the drawer attaches a hidden label, _vitdock_src, to that cart line. It travels with the order to your admin, where you may see it on the order page, and some emails or themes may show it. It identifies a product line, not a person.
Why we use it
- Your drawer configuration: to show the drawer you set up.
- Your shop record and subscription: to know your plan and show it in the app.
- The order count: to apply the free plan's monthly order allowance.
- Order totals and line properties: to show results on your Dashboard, counted from your own orders and shown only to you.
- Sessions: to sign the app in to Shopify.
- Daily counters: so you can see whether the drawer and suggestions are working.
We do not sell data, we do not share it with anyone for advertising, and we make no automated decisions about any person. The app sends data to no one but Shopify.
Logs
Our server logs record operational events: shop domains, request paths and error details, never shopper data. They rotate automatically and are deleted after at most 14 days.
How long we keep it
- When you uninstall Sepnio, we mark your shop as uninstalled and delete everything we hold about it 28 days later, including the results figures.
- When Shopify asks us to erase your shop's data (the shop/redact request it sends after an uninstall), we delete it immediately and completely, without waiting for the 28 days.
- When Shopify forwards a shopper's request to see or erase their data, there is nothing to return or erase: we hold none.
- Notification records are pruned on a regular schedule.
Where your data lives
The app and its database run on one server hosted by netcup GmbH in Germany (EU). Encrypted backups of the database are kept off the server with Cloudflare, in the EU (an R2 bucket with EU jurisdiction).
How it is protected
- The database is stored on an encrypted volume. It has no published port and cannot be reached from outside the server; only the app service holds its credentials.
- Backups are encrypted before they leave the server, and Cloudflare encrypts the stored copies as well.
- We use TLS for all traffic that leaves the server: calls to Shopify, the app's admin pages and backup uploads to Cloudflare. Traffic between the app and its database stays inside the server and is not TLS-encrypted.
- Only the operator can sign in to the server: SSH with key authentication only, and no root login.
- Access tokens stay in our database: they are never sent to your storefront.
Who else handles the data
- Shopify, the platform the app runs on: your shop's data comes to us through Shopify's APIs.
- netcup GmbH, which hosts the server the app and its database run on, in Germany (EU).
- Cloudflare, which stores the encrypted backups, in the EU (an R2 bucket with EU jurisdiction).
Your choices
You can uninstall Sepnio at any time, which starts the deletion above. To have your data deleted sooner, or to ask what we hold, write to sepnio@vitdock.com. A request about one of your shoppers is answered by Shopify, because we hold nothing about them.
Changes
When the app's handling of data changes, we update this page and its effective date.