FitFinder — Privacy Policy
FitFinder ("the app") gives Shopify merchants a fitment finder: a cascading search (for example Year → Make → Model) that shows only the products which fit the item a shopper owns, plus a "does this fit?" check on the product page. This policy explains exactly what data the app processes and why.
Permissions the app requests
One, and only one: read products. The app never writes to the catalogue, and it does not request access to orders, customers, checkouts, inventory, themes or any other resource. It holds no protected customer data of any kind.
Data the app reads from Shopify
When a merchant imports a fitment file, the app looks up the SKUs (or product handles) in that file against the store's product variants, so it can translate them into product ids and handles. For each match it reads only the product's id, handle, title and status. This happens during an import and nowhere else.
On the storefront results page, product titles, images and prices are rendered by the merchant's own theme at the moment the page loads. The app supplies a list of product handles; it does not store or transmit product content.
Data the app stores
- The fitment rows the merchant imports: the attribute values, the SKU, and the resolved product id and handle.
- The merchant's search-field labels and page settings.
- A record of each import, including the list of SKUs that matched no product, so the merchant can correct them.
- Optionally, and only if the merchant leaves the setting enabled: an anonymous count of which attribute combinations shoppers searched for and how many products were returned.
Data the app does NOT collect
No customer personal data whatsoever: no names, email addresses, postal addresses, payment details, order records, IP addresses, cookies, device identifiers or session identifiers. The search record described above contains nothing but the attribute values chosen and a result count; it cannot be linked to a person.
"My Garage" — the shopper's saved vehicles — is stored entirely in the shopper's own browser using localStorage, capped at ten entries. It is never written to a customer account and never leaves that browser except as the attribute values sent to answer a single "does this product fit?" question.
Storefront requests
The storefront talks to the app through a Shopify app proxy. Shopify signs every such request, and the app verifies that signature on each one before doing any work. Unsigned or altered requests are rejected.
Data retention and deletion
Search history is capped and pruned automatically. Uninstalling the app deletes the stored search history immediately and revokes the app's access. All remaining data for the shop is permanently deleted in response to Shopify's shop redaction webhook. A merchant can also delete all fitment data at any time from the app's settings page.
Because the app stores no customer data, Shopify's customer data-request and customer redaction webhooks are acknowledged with nothing to report and nothing to erase.
Third parties
None. No data is sold, shared, or sent to any third-party service, analytics provider or advertising network.
Contact
Fleeta Limited — sales@fleeta.co.uk