This page is the plain-language summary of how RivalEdge handles data — the same commitments formalized in our Privacy Policy. The short version: public data in, narrow read-only access to your store, nothing private touched.
What we access
- Public competitor catalogs— product, price, variant, and stock feeds that any shopper’s browser can read. No private, customer, or order data of those stores.
- Your product catalog— through Shopify’s official API, used only to match your products to competitors.
- The contact details you give us — email and niche, only if you request an audit report or install the app.
Shopify scopes we request
read_products— read-only access to your product catalog, to match against competitors and build your action list.
That is the only scope this version requests. We do not request access to orders, customers, financials, or write access to your products. Because access is read-only, RivalEdge recommends price changes and links you to apply them in Shopify Admin — it does not change your prices itself.
What we never touch
- Customer personal data or order history.
- Payment or financial data — billing is handled entirely by Shopify.
- Anything behind a competitor’s login or private API.
How it’s protected & how long we keep it
- Store access is via Shopify’s official OAuth with a narrow read-only scope; data is transmitted over TLS.
- Competitor observations are retained per your plan’s price-history window and downsampled beyond it.
- Uninstalling the app stops monitoring and deletes your store’s stored data on the next retention cycle; we honor Shopify’s redaction webhooks.
- Every email includes a one-click unsubscribe honored via a suppression list.
Compliance
We support Shopify’s mandatory GDPR data-request and redaction webhooks (customers/data_request, customers/redact, shop/redact). Since we do not store store-customer personal data, customer-redaction requests have nothing to remove on our side; shop-redaction deletes that shop’s stored data.
Questions
privacy@rivaledge.app
RivalEdge — [PLACEHOLDER: physical mailing address required before launch]