FeedProof is a Shopify app that audits a store's product catalog for AI-assistant discovery, drafts reversible fixes for the gaps it finds, and reports which products earn revenue from AI referrals. This policy explains what data the app reads, why it reads it, how long it is kept, and how to have it deleted.
It covers the FeedProof Shopify app, the FeedProof agency console, and this website. It also contains our data processing terms for merchants, which take effect when you install the app. It is written to be read, not to be survived, so it is short.
The short version. FeedProof reads product data and order totals. It does not read customer names, email addresses, phone numbers, or addresses, and it does not request access to those fields. Uninstalling the app deletes everything within 48 hours.
Who we are
FeedProof is operated by Daniel Cantón, an independent developer based in Portugal. For any privacy question, including a request to access or delete your data, email privacy@getfeedproof.com. We answer within 30 days and usually within two working days.
Under the GDPR, a merchant using FeedProof is the data controller for their store's data, and FeedProof is a data processor acting on that merchant's instructions.
What the Shopify app reads
FeedProof requests the narrowest set of Shopify access scopes that make the product work. Each one maps to a specific feature:
| Scope | What it reads or writes | Why |
|---|---|---|
write_products | Product titles, descriptions, images, variants, vendors, product types, tags, SKUs, barcodes and prices | To score each product against the readiness rubric, and to write approved fixes back |
write_metaobjectswrite_metaobject_definitions | Structured product attributes in the feedproof namespace | To store enriched attributes and the previous value of anything we change, so every edit can be undone |
read_orders | Order totals, currency, order dates, line-item products, SKUs and quantities, and the landing and referring page of the visit | To attribute orders to AI-assistant referrals and report which products earn that revenue |
What we deliberately do not read
FeedProof operates at Protected Customer Data Level 1 under Shopify's classification. From an order, the app reads the value and the products. It never reads the customer object attached to that order, and it has not requested access to Shopify's protected customer fields:
- Customer names
- Email addresses
- Phone numbers
- Billing and shipping addresses, geolocation and postcodes
These fields are not stored, not logged, and not sent to any third party. If Shopify ever returns them in an API response, they are discarded before the response is written to our database.
What this website collects
The free readiness check on this site reads a store's publicly available product feed, the same data any shopper's browser can fetch. It requires no login and no access to the store's admin.
If you submit your email address to request the full report or early access, we store that address so we can send it to you and tell you when the product opens up. We do not sell it, rent it, or add it to anyone else's list. Reply to any email to be removed.
Where the data goes
Store data is processed by a small set of subprocessors, each of which handles only what its job requires:
| Subprocessor | Purpose | Region |
|---|---|---|
| Fly.io | Application hosting | Frankfurt, Germany |
| Supabase | Database | Frankfurt, Germany |
| Anthropic | Drafting product copy from product data | United States |
| Perplexity | Checking whether AI assistants name a store | United States |
| SerpAPI | Finding third-party pages that rank for a store's categories | United States |
| Resend | Sending report and digest emails | United States |
Only product data reaches the drafting and search subprocessors. No order data and no customer data is sent to any of them. Transfers to United States subprocessors rely on the European Commission's Standard Contractual Clauses.
How long we keep it
- Product and audit data — for as long as the app is installed, so scores can be compared over time.
- Order attribution records — for as long as the app is installed. These hold an order ID, a value and a product reference, never a customer.
- Everything for a store — deleted within 48 hours of uninstalling the app.
- Waitlist email addresses — until you ask us to remove them.
Deletion and your rights
FeedProof implements Shopify's mandatory privacy webhooks. When Shopify sends shop/redact, every record belonging to that store is deleted, across all tables, not just the obvious ones. customers/redact and customers/data_request are also implemented, and both return promptly because the app holds no customer records to redact or disclose.
You can also ask us directly. Email privacy@getfeedproof.com to access, correct, export or delete your data, to object to or restrict processing, or to withdraw consent. If you are in the EEA or the UK and you are unhappy with our response, you may complain to your local data protection authority.
Security
- All traffic is encrypted in transit with TLS, and the database is encrypted at rest.
- Shopify access tokens are held in an access-controlled database, encrypted at rest, and are never written to logs.
- Each store's data is isolated by shop domain, and agency access is scoped to the stores that agency is linked to.
- Access to production data is limited to the operator of the service.
- Production data is never copied into development or test environments.
If we become aware of a breach affecting a merchant's data, we will notify the affected merchants and Shopify without undue delay and within 72 hours of becoming aware of it.
Consent and data sales
Customer consent. FeedProof does not set cookies or trackers on a merchant's storefront and does not identify individual shoppers. Referral attribution relies on the landing and referring page that Shopify attaches to an order, and Shopify withholds those fields when a visitor has declined analytics tracking under the store's consent settings. An order from a visitor who has not consented therefore reaches us without referral data and is never attributed. We do not attempt to reconstruct it by any other means.
Data sales and sharing. We do not sell personal data, and we do not share it for cross-context behavioural advertising, under the CCPA/CPRA or any comparable law. There is nothing to opt out of, and any opt-out signal a customer sends is satisfied by default. Our subprocessors are listed above; each is a service provider acting on our instructions, and none receives order or customer data.
Automated decision-making. FeedProof makes automated suggestions about product records, not about people. It performs no profiling and no automated decision-making that produces legal or similarly significant effects on any individual.
Data processing terms for merchants
This section is the data processing agreement between you and FeedProof. Installing the FeedProof app constitutes your acceptance of these terms. They apply for as long as the app is installed on your store.
Roles
You are the data controller for your store's data. FeedProof is your data processor and acts only on your documented instructions, which are the settings you choose in the app and the actions you take in it. If we are ever required by law to process your data otherwise, we will tell you first unless the law forbids it.
Scope of the processing
| Subject matter | Auditing a product catalog for AI discoverability, drafting reversible fixes, and attributing orders to AI-assistant referrals |
|---|---|
| Duration | For as long as the app is installed |
| Categories of data | Product data; order value, currency, date, line-item products, SKUs and quantities; the landing and referring page of a visit. No customer identifiers. |
| Data subjects | Store visitors who place an order, indirectly and without being identified |
Our obligations
- Process your data only for the purposes described in this policy, and never for our own purposes.
- Keep it confidential, and bind anyone with access to the same duty.
- Apply the security measures set out above, and keep them at least as strong.
- Use only the subprocessors listed above. We will update this page and email merchants with the app installed before adding a new one, and you may object.
- Assist you with data subject requests, regulator enquiries and breach notifications, at no charge.
- Notify you without undue delay, and within 72 hours of becoming aware, of any breach affecting your data.
- Delete your data on uninstall and on
shop/redact, and provide written confirmation on request. - Make available the information you need to demonstrate compliance, and accept an audit no more than once a year on reasonable notice.
Your obligations
You confirm you have the lawful basis and any notices or consents required to have us process your store's data as described. You are responsible for the instructions you give the app, including which fixes you approve and apply.
International transfers
The subprocessors listed above in the United States receive only product data. Those transfers rely on the European Commission's Standard Contractual Clauses, which are incorporated into these terms by reference.
Cookies
This website sets no advertising or analytics cookies. The embedded Shopify app uses a session cookie to keep you signed in, and the agency console uses a signed session cookie for the same purpose. Neither is used for tracking.
Children
FeedProof is a business tool. It is not directed at children and we do not knowingly collect data from anyone under 16.
Changes
If this policy changes in a way that affects what we collect or why, we will update the date at the top and email merchants with the app installed before the change takes effect.