Shopcast privacy policy

Effective August 17, 2026

What Shopcast does

Shopcast turns store analytics into a television dashboard. The organization identified as the app provider in the Shopify App Store listing operates Shopcast and is responsible for the data processing described here.

Data we process

Shopcast processes store identity, merchant-provided logo overrides, orders, products, inventory, sales channels, store locations and published locales. When Shopify grants protected customer-data access, Shopcast uses only the destination city, region and country needed for geographic sales visualization and analytics. Shopcast does not need customer names, email addresses, phone numbers, street addresses or postal codes. The Apple TV app creates a random installation identifier used only to count activated displays and app versions.

How data is used

Data is used only to provide the merchant-requested dashboard, geographic sales visualization, inventory insights, aggregate activation analytics, device security, troubleshooting and abuse prevention. Shopcast does not sell customer data, use it for advertising or track activity across other companies' apps or websites.

Storage and retention

Shopify access tokens remain on the server and are encrypted at rest. Apple TVs receive revocable device tokens, not Shopify credentials. The random installation identifier is one-way hashed before storage and is not stored with a Shopify account, shop, token, IP address or sales data. The activation record contains only first/last-seen times and first/last app build and is retained to measure lifetime and active installations while Shopcast operates. Custom logo overrides are stored as private objects and served through versioned image URLs. Minimized live-sale events expire after 48 hours, and derived recommendation history expires after 30 days. Security audit records expire after 400 days. Uninstall immediately removes credentials, custom logos, live events and recommendation history; Shopify's subsequent redaction request deletes the remaining store records.

Sharing and international processing

Data is processed by the infrastructure providers used to operate Shopcast and by Shopify APIs. Access is limited to authorized personnel with an operational need. Production and non-production data are kept separate; production merchant data is not copied into development fixtures.

Merchant and customer rights

Merchants can uninstall Shopcast and revoke connected displays. Shopify privacy webhooks support data-access and deletion requests. Customers should submit requests through the merchant that controls their Shopify order data.

Security and incidents

Shopcast uses encrypted transport, encrypted secrets and tokens, tenant-scoped authorization, access logging, retention controls and an incident-response process. No system can guarantee absolute security.

Contact

Privacy questions and requests: shopcast@shopify.com.

Privacy · Data protection terms