SSaleGit

Legal

Privacy Policy

Effective and last updated: September 15, 2026

This policy explains how SaleGit processes information when a Shopify merchant installs or uses the SaleGit application and website. In this policy, “SaleGit,” “we,” and “us” refer to the SaleGit developer.

Information we process

Shop and account information

Shopify provides the shop domain, Shopify shop and app-installation identifiers, shop name, currency, granted permissions, installation state, and authentication session data needed to operate the app. Shopify session data can include a staff user identifier, name, email address, locale, account role indicators, and access or refresh tokens. SaleGit does not use this information for advertising.

Catalog and price information

SaleGit processes product and variant identifiers, titles, handles, status, image URLs, SKUs, regular prices, compare-at prices, currency, Shopify update times, observation times, alert settings, snapshots, and merchant-confirmed restoration records. This information powers price history, alerts, synchronization, snapshots, and restoration.

App usage and technical information

SaleGit records a limited set of product-usage events, such as an app open, a fixed app area viewed, a catalog sync, an alert review, a snapshot creation, or a restoration result. External analytics use a pseudonymous installation identifier. Event properties do not include page URLs, query strings, shop domains, catalog values, prices, order data, customer data, or staff identifiers. GeoIP enrichment and person-profile processing are disabled.

Why we process information

We process information to:

  • authenticate the merchant and operate the installed app;
  • sync the catalog and provide price history and alerts;
  • create snapshots and perform merchant-confirmed restorations;
  • secure, troubleshoot, maintain, and improve SaleGit; and
  • meet legal obligations and respond to valid requests.

The applicable legal basis depends on the merchant’s location and may include providing the service requested by the merchant, our legitimate interests in operating and securing SaleGit, compliance with law, or consent where the law requires it.

Service providers and disclosures

We disclose information only as needed to operate SaleGit, including to Shopify, infrastructure and database providers, and PostHog for the limited product analytics described above. PostHog events are sent to its European Union ingestion service. Providers process information for us under their applicable contractual and security terms. We may also disclose information when required by law, to protect rights and security, or as part of a business transfer with appropriate notice.

SaleGit does not sell customer or merchant personal information and does not use it for targeted advertising.

Retention and deletion

  • Catalog history, alerts, snapshots, settings, and restoration audit records are retained while the app is installed so its features continue to work.
  • After Shopify confirms an uninstall or shop-redaction event, SaleGit deletes the live installation, sessions, tokens, catalog, settings, jobs, local analytics, and related merchant data. A minimal tombstone containing installation identifiers and timestamps can be retained to prevent delayed events from recreating deleted data.

Residual copies can remain temporarily in infrastructure backups or security logs until their normal rotation or expiry. Pseudonymous PostHog events follow the retention settings of our PostHog project. Contact us to request deletion or information about the retention schedule that applies at the time of your request.

Security

We use reasonable administrative and technical safeguards designed to protect information, including HTTPS in transit, authenticated Shopify requests, tenant-scoped data access, verified webhooks, restricted application access, and data minimization. No method of storage or transmission is completely secure.

Your choices and rights

Merchants can keep optional product-write permission disabled. Uninstalling SaleGit stops normal processing and starts the deletion flow described above. Depending on local law, an individual can request access, correction, deletion, restriction, or portability, or object to certain processing. We may need enough information to verify the request and identify the relevant Shopify shop.

Shopify customers should normally direct requests to the merchant whose store they used. Shopify can forward applicable privacy requests to SaleGit through its mandatory compliance webhooks.

International processing and policy changes

Service providers may process information in countries other than the merchant’s country. Where required, we rely on appropriate contractual or legal safeguards. We may update this policy as SaleGit changes. The date above will identify the current version, and material changes will be communicated when required by law.

Contact

Questions, privacy requests, and data-deletion requests can be sent to salegit-support@annotationasaservice.xyz.