Ecom Upsell Cross sell

Privacy Policy

Effective August 11, 2026

Ecom Upsell Cross sell helps Shopify merchants configure product and cart upsell offers. The app stores merchant configuration and aggregate performance data without building customer profiles or retaining buyer identity or contact details.

Information we process

  • Merchant store information needed to install and operate the app, including the myshopify.com domain, installation state, granted scopes, settings, and encrypted Shopify access tokens.
  • Upsell configuration selected by the merchant, including Shopify product and variant identifiers, placement, discount, schedule, status, and priority.
  • Aggregate storefront events such as offer views and add-to-cart counts, with short-lived event identifiers used only to prevent duplicate counting.
  • Minimum order line-item, discount, currency, and status data needed to attribute an upsell and calculate aggregate revenue. Buyer names, email addresses, telephone numbers, and addresses are not stored.
  • Information a merchant voluntarily sends when requesting support.

How we use information

We use this information to authenticate merchants, operate and secure the app, publish offers and discounts, enforce plan limits, calculate aggregate analytics, answer support requests, and meet legal obligations. We do not sell personal information or use app data for advertising.

Storefront and customer data

Storefront events contain only offer, revision, placement, and aggregate event information. They are not used to identify shoppers across visits or stores. Shopify order access is used only to attribute upsell line items and calculate aggregate revenue.

Retention

  • Raw storefront deduplication events are retained for 7 days.
  • Daily aggregate offer, order-attribution, and revenue metrics are retained for up to 30 days on Free and up to 24 months on Pro.
  • Merchant settings and offer configuration are retained while the app is installed and for any period required by applicable law.
  • Operational logs and error traces are retained for up to 30 days and are configured without customer personal information.

When the app is uninstalled, its local access token is invalidated, scheduled processing and Shopify API calls for that store stop, and data is deleted or anonymized under Shopify privacy webhooks and applicable retention obligations.

Service providers and transfers

Shopify provides the commerce platform, authentication, APIs, theme editor, and billing surfaces. Cloudflare provides application hosting, database, network, and security infrastructure. These providers process data under their own contractual and security commitments and may process it in multiple jurisdictions.

Security

Access tokens are encrypted at rest. Administrative requests require Shopify authentication, webhook signatures are verified, and access is limited to information needed to operate the app. No storage or transmission method can guarantee absolute security.

Privacy requests

Shopify sends mandatory customer data request, customer redaction, and shop redaction webhooks to the app. Merchants may use the support options in Shopify Admin to request access, correction, or deletion of support information. Include the store domain, but never send access tokens or customer personal data.

Changes and contact

We may update this policy when the app, legal requirements, or service providers change. The effective date identifies the latest version.

Open Shopify Admin and search for the app named exactly Ecom Upsell Cross sell.

Open Shopify Admin