Privacy Policy for Cart Upsell

Last Updated: March 20, 2026

This Privacy Policy describes how your personal information is collected, used, and shared when you install or use the "Cart Upsell" application (the “App”) in connection with your Shopify-supported store.

1. Information We Collect

When you install the App, we are automatically able to access certain types of technical information from your Shopify account. However, our App intentionally does NOT collect, store, or process any personally identifiable information (PII) of your customers (such as names, emails, shipping addresses, or phone numbers) on external databases.

The App only requests the absolute minimum required API permissions to function properly:

  • Theme Data (read_themes, write_themes): To dynamically inject the necessary Cart Upsell app blocks into your active Shopify storefront without destructively altering your source code.
  • Product Data (read_products): To retrieve and display relevant product information (titles, prices, variants, images) inside the upsell block on your cart page.

2. How We Use Your Information

We do not maintain external, persistent databases that store your shop's or customers' private data. The App operates primarily in real-time within your secure Shopify environment. We use the technical information gathered solely to:

  • Provide and operate the core functionality of the App (displaying native cart upsells).
  • Ensure the App layout renders correctly within your specific theme architecture without layout shifts.

3. Sharing Your Information

We do not sell, rent, or trade any merchant or customer data with external marketing third parties. We only transmit technical information back to Shopify automatically as required by the official Shopify API structure to facilitate the App’s core functionality.

We may only share information to comply with applicable laws and regulations, to respond to a subpoena, search warrant, or other lawful requests for information we receive, or to otherwise protect our legal rights.

4. Your Rights & Data Compliance (GDPR / CCPA)

If you are a European resident (GDPR) or a resident of California (CCPA), you have the right to access personal information we hold about you and to ask that your personal information be corrected, updated, or deleted. If you would like to exercise this right, please contact us through the contact information below.

Furthermore, the App strictly implements Shopify's mandatory mandatory privacy compliance webhooks (customers/data_request, customers/redaction, and shop/redaction), ensuring full alignment with Shopify's global privacy standards, even though our application functions without storing personal customer payloads.

5. Changes

We may update this privacy policy from time to time in order to reflect, for example, changes to our technical practices or for other operational, legal, or regulatory reasons.

6. Contact Us

For more information about our privacy practices, if you have questions, or if you would like to make a complaint, please contact us by email at: cart.upsell@goezpri.de