Privacy Policy
Last updated: September 11, 2026
WarrantyKit is a Shopify app that lets a merchant register their products to the customers who bought them and manage warranty claims against the merchant's own manufacturer warranty. This policy explains what personal data the app processes, why, and how it is protected.
Our role. For the personal data of a store's customers, the merchant (the Shopify store that installs WarrantyKit) is the data controller. WarrantyKit acts as a data processor on that merchant's behalf, processing customer data only to provide the app's functionality to that merchant. This policy also describes how we handle the merchant's own account data, for which NerdLabs is the controller.
1. What We Process
1.1 Merchant / Store Data
The store's myshopify.com domain, an expiring Shopify access token, the subscription plan tier, and the merchant's warranty policies and product assignments.
1.2 Customer (Buyer) Personal Data
From the registrations phase on: email address; name; shipping address (for order-sourced registrations); the Shopify customer and order identifiers when the purchase was made on Shopify; product, variant, SKU and serial number; purchase date and retailer; and any notes the merchant adds.
1.3 Warranty-Claim Data
From the claims phase on: the claim details and the merchant's decision, and any evidence the buyer uploads (photos, video, receipts).
We process the minimum data needed to provide the app's value and use it only for that purpose. We do not sell personal data, and we do not use it for advertising or for automated decisions with legal or significant effects — warranty-claim decisions are made by the merchant.
2. How We Collect It
- From Shopify, when a merchant installs the app and grants access, and through order webhooks and the Admin API for products, orders and customers the merchant already holds.
- From the merchant, when staff register a product or work a claim in the embedded admin.
- From the buyer, when they register a product or file a claim through the merchant's customer portal.
3. How We Protect It
- Customer name and shipping address are encrypted at the column level (AES-256-GCM) on top of a DigitalOcean block-storage volume that is itself encrypted at rest. The encryption key is held only in the server environment.
- All traffic is served over TLS 1.2+.
- Database backups are stored on the same encrypted volume and age out automatically.
- Production access is SSH-key-only and limited to the operator; the host runs fail2ban. Development and production data are kept separate.
- Warranty-claim evidence is stored in a private Cloudflare R2 bucket (encrypted at rest) and served only through short-lived signed URLs; it is never placed on a public CDN.
- We maintain a written security incident-response process and will notify affected merchants of a confirmed personal-data breach within 72 hours.
4. How Long We Keep It
- Registrations are kept while the warranty is live and for 12 months after it expires, then anonymised (identity removed; the non-identifying record may remain for the merchant's defect analytics).
- Evidence files are deleted a configurable number of days after a claim closes (merchant setting; default 180 days).
- When a merchant uninstalls, access tokens are deleted immediately and the store's data is deleted after a 48-hour grace period, and in all cases in response to Shopify's shop-redaction request (within 30 days).
5. Who We Share It With
We use a small number of sub-processors, only as needed to run the service:
- DigitalOcean — server and database hosting (United States).
- Cloudflare — TLS, and R2 storage for claim evidence.
- Mailgun — delivering transactional and GDPR-report emails.
- Shopify — the platform the app runs on.
We do not share personal data with anyone else, and we never sell it.
6. Data Subject Rights (Shopify Privacy Webhooks / GDPR)
Because the merchant is the controller of their customers' data, a buyer who wants to access or delete their data should contact the merchant they bought from. WarrantyKit implements Shopify's mandatory privacy webhooks in full:
- A customer data request gathers every record WarrantyKit holds for that customer (matched by Shopify customer id and by email) and delivers it to the store owner before the request is acknowledged.
- A customer redaction anonymises that customer's records.
- A shop redaction deletes all of the store's data.
These support the merchant's obligations under the GDPR, the CCPA/CPRA and similar laws. Merchants agree to WarrantyKit's terms and this policy when they install the app.
7. Changes
We will update this page when our practices change and revise the date at the top.
8. Contact Us
If you have questions about this Privacy Policy or how we handle your data, contact us at:
NerdLabs (operated by Joren Winge)
Email: support@nerdlabs.us
Website: nerdlabs.us