What Baggle stores, why, and for how long.
Last updated September 23, 2026
Who this covers
This policy describes how Baggle: Unauthorized Resellers (“Baggle”, “we”) processes data when a merchant installs the app on a Shopify store. It covers data about the merchant’s store and data about the store’s customers that Shopify sends to the app.
What we receive from Shopify
When you install Baggle, you grant it the Shopify access scopes it requests: reading orders, writing order tags, reading customers, and reading fulfilment orders. Using those scopes the app receives:
- New and updated orders, through Shopify webhooks, as they happen.
- A one-time export of your recent order history (the last 60 or 90 days, depending on the scope Shopify grants) when you install or press “Scan again”.
- Your store domain, plan and the settings you choose inside the app.
For each order, the app reads the customer name, email, phone, shipping address, line items, quantities, discount codes and timestamps.
What we store
- Normalized order rows for the last 90 days: hashed keys derived from the address, email, name and phone, together with the display name, email and address so the dashboard can show them to you.
- Per-order decisions: the verdict, the rules that fired, the numbers they were computed from, and the earlier orders they were linked to.
- Your review verdicts (“Confirm reseller” / “Not a reseller”), your authorized partner list, and your settings.
- Operational records: webhook delivery ids, history-scan runs, and support messages you send from the app.
Rows older than 90 days are deleted on a rolling basis.
What we write back to your store
One thing, and only when you switch it on: a tag (by default reseller-suspect) on a live order that scores “Likely reseller”. Baggle never cancels, holds, refunds or edits orders, and never contacts your customers. Orders from the history scan are never tagged.
Optional AI review
AI review is off by default. If you switch it on in Settings, each order is also sent to TypeSafe (the provider of the Jev model) together with the linked earlier orders: customer name, email, shipping address and items. TypeSafe acts as a sub-processor, does not train on requests under its data processing agreement, and the state sent is not stored by us. You can switch AI review off at any time, after which nothing is sent.
Deletion and compliance
- Uninstalling the app deletes everything stored for your store.
- Shopify’s mandatory compliance webhooks are honoured:
customers/data_request,customers/redactandshop/redactare processed automatically. - You can ask us to delete your store’s data at any time by contacting support.
Where data lives and who can see it
Data is stored in a managed Postgres database and a Redis queue operated for the app. Access is limited to the people who run Baggle, for the purpose of operating and supporting the app. We do not sell data, and we do not use one merchant’s data to score another merchant’s orders.
Changes and contact
We will update this page when the app’s data handling changes and note the date above. Questions go to support@baggle.app.