Seren Bundle — Privacy Policy
Effective June 6, 2026
Seren Bundle ("the app", "we", "us") is a Shopify app that lets merchants create volume, classic, buy‑X‑get‑Y, gift‑with‑purchase, and mix‑and‑match bundle offers, applied automatically at checkout via Shopify Functions. This policy explains what data the app processes and how we protect it.
Information we process
- Store & merchant data: your store domain, the Shopify access token used to call the Shopify Admin API on your behalf, and the bundle configuration you create (product and collection identifiers, discount values, tiers, gifts, badges, and schedules).
- Anonymous storefront analytics (optional): when a shopper views or interacts with a bundle widget, we may record an anonymous event — a random, per‑session identifier plus the bundle viewed or clicked — solely to measure how the widget performs. This identifier is not linked to any individual and is not combined with any personal information.
Information we do NOT collect
We do not request, access, or store customers' personal information — no names, email addresses, phone numbers, shipping or billing addresses, payment details, or order history. The app does not request order or customer data scopes. At checkout, Shopify Functions apply your bundle discount based only on the products and quantities in the cart; this runs inside Shopify, and the app does not receive or store the shopper's personal or payment data.
How we use data
We use the data above solely to (1) provide the bundle‑discount functionality you configure, and (2) measure widget performance. We do not use it for any other purpose, we do not sell it, and we do not share it for advertising.
Sharing & service providers
We share data only with the infrastructure providers needed to run the service: Shopify (platform), Fly.io (application hosting), and Neon (database hosting). Each processes data on our behalf under their own security and privacy commitments.
Security
All data is encrypted in transit (TLS/HTTPS) and at rest. Access to production systems is restricted to authorized personnel.
Data retention & deletion
Store records and bundle configuration are retained while the app is installed and are deleted when you uninstall the app or when Shopify sends a shop‑redaction request. Anonymous analytics are retained only for a limited period needed for performance reporting. We honor Shopify's mandatory privacy webhooks: a customer data‑request returns nothing because we hold no customer personal data; a customer‑redact request has nothing to erase for the same reason; a shop‑redact request deletes that store's bundle data.
Your rights
Depending on your region (e.g. GDPR, CCPA), you or your customers may have rights to access, correct, or delete personal data. Because we hold no customer personal data, most such requests are satisfied automatically; for any question or request, contact us at the address below and we will respond promptly.
Changes
We may update this policy; material changes will be reflected by updating the effective date above.
Contact
Questions or requests: ecomsliu@gmail.com