← GuardUp

Privacy Policy

Last updated: April 14, 2026

Who we are

GuardUp is a Shopify app that monitors your store's discounts, prices, and inventory for configuration mistakes and potential revenue leaks. This policy covers what data the app reads, what it stores, and how we handle it.

Data we access

With your consent during install, GuardUp requests the following Shopify scopes:

We do not request access to orders or customer data.

Data we store

On our servers we store only:

We do not store customer names, emails, addresses, order contents, payment details, or any other personally identifiable information about your shoppers. If a Shopify webhook payload contains PII, we read only the non-PII fields we need and discard the rest.

Data retention

Your data stays on our servers for as long as GuardUp is installed on your store. When you uninstall, we delete every trace of your shop within minutes via Shopify's app/uninstalled webhook, and Shopify's 48-hourshop/redact safety webhook runs a second cleanup pass.

GDPR / customer data requests

GuardUp implements Shopify's three mandatory GDPR webhooks:

Third-party services

We use Mantle to handle billing and subscription state. Mantle receives only the minimum information needed to identify your shop and its subscription status: your store domain, Shopify shop ID, and the plan you are on.

Security

All traffic is encrypted in transit with TLS. Webhook requests are verified with HMAC signatures before processing. Secrets are stored in environment variables on a locked-down VPS and never committed to source control.

Contact

Questions, concerns, or GDPR requests? Email hello@boost-apps.co and we will respond within 5 business days.