Privacy and data handling
Learn what data Pushrr collects, why it is needed, and how Shopify merchants should explain web push data use.
Privacy and data handling
Pushrr collects the minimum data needed to provide browser push notifications, campaign reporting, and Shopify recovery automation.
Data Pushrr uses
Pushrr may process:
- Merchant account and workspace details.
- Shopify store domain and installation state.
- Subscriber browser push subscription data.
- Browser, operating system, device, and approximate location metadata.
- Campaign content and delivery events.
- Cart, checkout, and order event data needed for recovery automation.
- Click, impression, unsubscribe, and recovery attribution events.
Why this data is needed
| Data | Purpose |
|---|---|
| Push subscription endpoint and keys | Send browser push notifications. |
| Subscriber status | Avoid sending to unsubscribed or inactive users. |
| Store URL and Shopify domain | Validate storefront requests and Shopify ownership. |
| Cart and checkout data | Trigger abandoned cart and checkout recovery. |
| Delivery and click events | Report campaign and automation performance. |
Merchant responsibilities
Merchants should make sure their storefront privacy policy explains that browser notifications may be used for marketing, transactional updates, or cart recovery where applicable.
Merchants should not upload personal data to campaign copy, images, or links unless they have the right to use it.
Unsubscribe behavior
Visitors control browser notification permission in their browser. When a subscriber unsubscribes or an endpoint becomes invalid, Pushrr stops sending normal campaigns to that subscriber.
App uninstall
When Pushrr is uninstalled from Shopify, Shopify sends uninstall information to the app. Pushrr records the Shopify installation as inactive so Shopify-dependent features stop using that connection.
Uninstalling the Shopify app does not immediately delete the Pushrr workspace, campaign history, subscriber records, or reporting data. It disconnects Shopify-dependent features until the merchant reconnects or requests deletion.
Data deletion requests
For privacy or deletion requests, contact Pushrr support with the store domain and workspace email. Pushrr support can verify the merchant account before processing account or store data requests.
Shopify privacy webhooks
Shopify public apps must support privacy compliance webhooks. Pushrr handles:
| Shopify topic | Pushrr behavior |
|---|---|
customers/data_request | Records a GDPR request for support follow-up and stores the request payload encrypted. |
customers/redact | Deletes matched subscriber/contact data for the shop and unlinks matching conversion records from redacted Shopify orders. |
shop/redact | Creates an aggregate analytics snapshot, scrubs stored GDPR request payloads and hashes for the site, and deletes the Pushrr site connected to that Shopify shop. |
Shopify requires apps to acknowledge compliance webhooks and complete data request or redaction work within 30 days unless legal retention obligations apply. Pushrr records received data requests with a 30-day due date for operational follow-up.
Retained aggregate data
After shop redaction, Pushrr may keep aggregate, non-identifying analytics snapshots such as total subscribers, total campaigns sent, total delivered notifications, total clicks, total conversions, and total revenue. These snapshots are stored without the raw shop domain.