Returns Intelligence

Privacy Policy

This policy explains the merchant and customer data processed by Returns Intelligence to provide returns analytics for Shopify merchants.

Last updated July 30, 2026.

Operator And Contact

Returns Intelligence is provided by Pacdev Lab, a project and trade name used by Cecil Teran, an individual sole proprietor based in Ecuador. Legal, privacy, security, billing, and support questions can be sent to [email protected].

Pacdev Lab may update this operator information if a formal company is created or another entity becomes responsible for the app.

Data We Process

We process Shopify order, return, refund, line item, product, SKU, quantity, timestamp, status, reason, and monetary amount data needed to calculate cohort return metrics and related diagnostics.

When merchants enable integrations, we also process return lifecycle, marketplace, shipping, inventory, and accounting evidence needed for configured reports and diagnostics. Examples include WeSupply, Amazon Seller Central, ShipStation, Cin7, and provider-neutral return-data uploads. Raw Shopify, vendor, and webhook payloads may be stored as sensitive replay and debugging evidence where practical.

We collect merchant and admin user information needed for account access, workspace membership, billing, support, security, and audit trails. We do not operate a shopper-facing portal and do not collect data directly from shoppers through the app.

Shopify dashboard reporting does not require customer names, email, phone, or address fields, and those fields are not part of dashboard reporting, exports, APIs, or logs. Connected return providers may supply customer identifiers or contact fields in raw operational payloads; those fields are restricted, retained only as documented in this policy and the Data Processing Addendum, and included in privacy deletion workflows. Shopify privacy webhooks may include customer and order identifiers so we can locate and fulfill data-rights requests.

Purpose

We use merchant data only to provide the app: return-rate analytics, product and SKU reporting, diagnostics, exports, alerts, billing and entitlement checks, support, security, and reliability operations.

On the public returnsintel.com website only, and only after a visitor grants analytics permission, we use Google Analytics 4 to measure page visits, traffic sources, resource engagement, and clicks to the Shopify App Store. Public-site analytics is not loaded on the authenticated app. We disable Google advertising signals and do not use this data for advertising.

We do not sell merchant or customer personal data and do not use it for cross-merchant advertising or profiling.

Rights Requests

Shopify customers/data_request, customers/redact, and shop/redact webhooks are verified with Shopify HMAC signatures, deduplicated, recorded in a tenant privacy request ledger, and assigned a 30-day target due date.

Data-request fulfillment prepares a merchant-facing export summary for the scoped customer/order identifiers. Customer redaction removes or anonymizes customer-identifying fields while preserving lawful business analytics where appropriate.

Shop redaction, uninstall cleanup, and verified deletion requests revoke active credentials promptly and use the protected account lifecycle cleanup workflow after the operational recovery window. Correction requests are reviewed because the source system may remain the authoritative record.

If you are located in the European Economic Area, you have the right to lodge a complaint with your local data protection supervisory authority. If you are located in the United Kingdom, you may contact the Information Commissioner's Office (ICO). If you are a California resident, you may contact the California Attorney General.

Retention

Raw Shopify and vendor payloads are retained only while needed for replayability, diagnostics, support, and reliability, with a default target of up to 24 months for active tenants unless a plan or legal obligation requires a different period.

Support requests, support access grants, audit evidence, sync checkpoints, billing records, delivery logs, and privacy request ledger rows follow the retention periods in the Data Processing Addendum unless a legal, tax, dispute, fraud, or security hold applies.

Generated server-side privacy export artifacts are short-lived, tenant-scoped, audited, and expire by default. Dashboard and API exports are streamed when possible and are not retained as durable artifacts unless a workflow explicitly creates one.

For merchants whose Shopify store becomes permanently inaccessible or whose Shopify subscription lapses, and for whom we receive no shop/redact webhook within 180 days of last successful API contact, we may treat the account as terminated and apply the post-uninstall deletion timeline described in the Data Processing Addendum.

Subprocessors And Service Providers

Subprocessors are vendors we use to host, secure, transmit, support, or operate the app when they may process merchant or customer personal data on our behalf.

The app is hosted on Railway, uses Railway Postgres for app data, uses Cloudflare Access or an equivalent perimeter for protected dashboard access, and uses Shopify APIs and Partner services for install, billing, and merchant data access.

Google Analytics is an optional public-website analytics provider. It is activated only after visitor consent and can be disabled at any time using the controls on this page.

Optional merchant-enabled integrations, such as WeSupply, Amazon Seller Central, ShipStation, or Cin7, are used only when the merchant configures those connections. The Data Processing Addendum includes a subprocessor and merchant-enabled integration table with purposes, data categories, default status, and retention notes.

Returns Intelligence is operated from Ecuador and stores data primarily in the United States through Railway's infrastructure. Where required for international data transfers (such as transfers from the European Economic Area, the United Kingdom, Switzerland, or under Ecuador's Ley Orgánica de Protección de Datos Personales), we use appropriate transfer mechanisms and safeguards in accordance with applicable data protection laws.

Legal Basis For Processing

Where the GDPR or similar frameworks apply, we process personal data on the following legal bases:

Performance of a contract: Processing necessary to provide the app and its analytics features as described in the Terms of Service.

Legitimate interests: Processing for security, fraud prevention, service improvement, and operational analytics, where those interests are not overridden by data subject rights.

Legal obligation: Processing required to comply with applicable law, including tax, anti-fraud, and data retention obligations.

Consent: Where we rely on consent, we will obtain it explicitly and you may withdraw it at any time by contacting us.

As a processor acting on behalf of merchants, the merchant (controller) is responsible for establishing the legal basis for processing its customer data through its own privacy notices.

Merchant Controls

Merchants are responsible for having the rights and notices needed to connect their store and selected integrations to the app.

Workspace owners and admins can open data-quality support requests and grant scoped, time-limited support access for specific orders, returns, RMAs, SKUs, products, date ranges, sync checkpoints, or reporting months. Support access grants and revocations are audited.

For data-quality cases, merchants should provide concrete examples such as order IDs, return or RMA IDs, SKU/product, date range, reporting month, expected result, actual result, and redacted screenshots or export snippets when relevant.

Questions, rights requests, policy questions, and security notices can be sent to [email protected].

California Privacy Rights (CCPA/CPRA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act as amended by the California Privacy Rights Act. We do not sell or share (as defined by CCPA) personal information, and we do not use personal information for cross-context behavioral advertising. You may request access, deletion, or correction of your personal information by contacting us at [email protected]. We will not discriminate against you for exercising your privacy rights.

Policy Changes

We may update this policy as the app, legal requirements, subprocessors, integrations, or retention practices change. Material changes are reflected on this page.

Public Website Analytics

Your current preference is not allowed. You can change it at any time.