Privacy Policy for Shopify
Last update: 09/03/2026
This Privacy Policy describes how SalesAutopilot Kft. ("SalesAutopilot," "we," "us") collects, uses, and shares information in connection with the SalesAutopilot app ("the App") for the Shopify platform. It applies specifically to data processed through the App's integration with a merchant's Shopify store. For our general data-handling practices as a marketing automation platform, see our full Privacy Policy at https://www.salesautopilot.hu/adatkezelesi-tajekoztato.
By installing the App, the merchant ("you") agrees to the collection and use of information as described in this policy.
1. Who we are
SalesAutopilot Kft. is a marketing automation platform based in Hungary, offering email and SMS marketing, subscriber management, and e-commerce integrations.
- Company: SalesAutopilot Kft.
- Registered address: 1016 Budapest, Zsolt utca 6/A, V. em. 1., Hungary
- Company registration number: Cg. 01-09-286773
- Tax number: 25743500-2-41
For this Shopify integration, SalesAutopilot Kft. acts as a data processor on behalf of the merchant with respect to the merchant's customer data, and as a data controller with respect to the merchant's own account and contact data.
2. Information we collect through Shopify's APIs
When you install the App and connect your Shopify store, we request the following access scopes and collect the corresponding data through Shopify's Admin API and webhooks:
| Scope | Data collected | Purpose |
|---|---|---|
| read_orders | Order details: line items, quantities, prices, discounts, shipping/billing address, payment and fulfillment status, currency | Syncing orders into your marketing lists, triggering order-based automations, calculating discount/coupon usage |
| read_customers | Customer name, email address, phone number, address, and email marketing consent status | Creating and updating subscriber records, respecting marketing consent (opt-in/opt-out) |
| read_checkouts | Abandoned checkout data: buyer email, cart contents, checkout URL | Sending cart-recovery messages for checkouts that were started but not completed |
| read_products | Product title, handle, type, category, price, stock level, images, SKU, variants | Syncing your product catalog for use in campaigns and product recommendations |
| read_fulfillments, read_merchant_managed_fulfillment_orders | Shipment and fulfillment status of orders | Keeping order status up to date in your marketing lists (e.g. for status-based automations) |
| write_discounts | N/A (write-only) | Creating discount codes in your store when you generate a coupon in SalesAutopilot |
We do not request or use scopes beyond those listed above, and we do not access protected customer data (name, email, phone, address) for purposes other than those described in this policy.
3. Information we collect directly from the merchant
When you create a SalesAutopilot account and configure the App, we collect:
- Account and contact information you provide (name, email address, phone number, company details)
- Configuration choices you make within the App (which lists/forms to use, automation settings)
- Automated technical logs (IP address, browser/device information, timestamps) generated when you use the SalesAutopilot admin interface, for security and troubleshooting purposes
4. Information we collect from your customers
Beyond the data received through Shopify's APIs (Section 2), the App itself does not place additional tracking cookies or scripts on your storefront. If you use SalesAutopilot's own tracking features (e.g. for email open/click tracking) outside of this Shopify integration, that is governed by our general Privacy Policy, not by this document.
5. How we use the information we collect
We use the data described above solely to provide and improve the App's functionality:
- Creating and updating subscriber and order records in your SalesAutopilot account
- Sending marketing emails/SMS you configure (e.g. order confirmations, abandoned-cart recovery, newsletters) to your customers, based on their consent status as reflected in Shopify
- Generating product recommendations within your campaigns, based on aggregate purchase patterns
- Creating discount codes in your Shopify store when you generate coupons in SalesAutopilot
- Diagnosing and fixing technical issues with the integration
We do not sell customer data, and we do not use data obtained through the App for advertising or for any purpose unrelated to providing the App's marketing-automation functionality to you.
6. Data retention
We retain data collected through the App for as long as your Shopify store remains connected to your SalesAutopilot account, and thereafter in line with our standard account retention periods (currently up to 5 years after account termination for free accounts, and up to 8 years for paid accounts, or longer where required by accounting/tax law).
When you uninstall the App, we delete the store's webhook subscriptions and stop syncing new data immediately. Data already synced into your SalesAutopilot lists (e.g. existing subscriber and order records) is retained under your SalesAutopilot account's own settings and is not automatically deleted by uninstalling the App — you can request deletion at any time using the contact details in Section 9, or through Shopify's customer data request/erasure webhooks, which we support (see Section 8).
7. Where your data is processed
SalesAutopilot Kft. is established in Hungary, in the European Union. Data collected through the App is hosted and processed primarily on infrastructure located within the European Union (AWS, Ireland). Certain data may also be processed by service providers used for functions such as email/SMS delivery; where such providers are located outside the European Economic Area, we rely on appropriate safeguards (such as Standard Contractual Clauses) as required under GDPR.
8. Your customers' rights and Shopify's mandatory compliance webhooks
We support Shopify's mandatory GDPR webhooks for all merchants using the App:
customers/data_request— when a customer requests their data from you, Shopify notifies us and we can provide the data we hold about that customer.customers/redact— when you or a customer request deletion of that customer's data, we erase the corresponding data we hold.shop/redact— 48 hours after you uninstall the App, if you also request it, we erase the data we hold in connection with your store.
Your customers may also exercise their data protection rights (access, rectification, erasure, restriction, objection, portability) by contacting you as the merchant, or by contacting us directly using the details in Section 9.
9. Contact us
If you have questions about this Privacy Policy or how the App handles data, contact us at:
- Email: info@salesautopilot.hu
- Phone: +36 1 490 0172
- Address: SalesAutopilot Kft., 1016 Budapest, Zsolt utca 6/A, V. em. 1., Hungary
SalesAutopilot Kft. has assessed that it is not required to appoint a Data Protection Officer under Article 37 of the GDPR; data protection inquiries are handled through the contact channels above.
10. Changes to this policy
We may update this Privacy Policy from time to time to reflect changes in the App's functionality or applicable law. We will update the "Last updated" date above when we do. Material changes will be communicated to merchants through the SalesAutopilot admin interface or by email.
