Privacy Policy

Effective date: July 26, 2026

This policy describes what data FitKit (“the App”), published by A.N. ADVISORY (“we”, “us”), processes when a merchant installs it from the Shopify App Store, and how we handle privacy requests. FitKit displays size charts and rule-based size recommendations on product pages. It is deliberately built so that it collects no personal data about your customers at all — this policy is short because there is genuinely little to describe.

The short version

  • We store shop-level data only: your settings, the size charts you build, their assignments to products, and anonymous daily analytics counters.
  • Zero buyer personal data. No email addresses, no names, no accounts, and no IP addresses are stored — the App has nothing to identify a visitor with.
  • The size recommender matches the measurements a visitor types against the ranges in your chart, instantly, by rules. Those measurements are never stored and never sent to any third party. There is no AI service behind it.
  • No tracking cookies on your storefront. The widget uses technical sessionStorage only (for example, remembering the visitor's cm/inches choice during their session).
  • The App requests a single Shopify permission: read_products, used to assign charts to your products, collections, vendors, and tags.
  • Shopify's privacy webhooks are implemented, and uninstalling deletes all of your shop's data.
  • We never sell data and we run no advertising or profiling of any kind.

1. Data we process

Merchant (shop-level) data

  • Shop identification: your myshopify.com domain and the API access token Shopify issues to the App, used solely to operate the App for your store.
  • Settings: display options such as the “Size guide” label, colors, button style, link position, default units, language options, and your selected plan.
  • Size guide content: the tables you build (rows, columns, values), “how to measure” text blocks, and any guide image you upload (500 KB max per image).
  • Assignments: which guide applies to which product, tag, collection, or vendor. To offer these pickers, the App reads product titles, tags, collections, and vendors from Shopify via the read_products scope — the only scope it requests. It reads no customer or order data, and it could not: it has no permission to.
  • Analytics counters Pro: anonymous daily counters per product — how many times the size guide was opened, and how many of those opens were followed by an add to cart. These are aggregate numbers only; they contain no visitor identifier of any kind and cannot be traced back to a person.
  • Support correspondence: if you email us, we keep the thread so we can help you.

Buyer (customer-level) data

None. This is not a simplification — it is how the App is built:

  • No customer names, email addresses, phone numbers, or addresses — the App never asks for them and has no Shopify permission to read them.
  • No IP addresses stored, no device fingerprints, no behavioral profiles.
  • No cookies set by the App on your storefront — analytics work with anonymous daily counters, not visitor tracking.
  • The measurements a visitor enters into the size recommender are matched against your chart's ranges on the spot and are not stored by the App and not transmitted to any third party. No AI or external API is involved.
  • The storefront script makes no network call at page load — the configuration is delivered through a Shopify metafield with your page, and the modal loads lazily on the first click. The only browser storage used is technical sessionStorage (e.g. the visitor's unit choice), which expires when the browser tab is closed and is never read by our servers.

2. How we use the data

  • To display your size charts and “how to measure” content on the right product pages, per your assignment rules.
  • To run the rule-based size recommender against the ranges defined in your charts.
  • To show you, the merchant, your analytics: guide opens and the add-to-cart rate after an open, per product (Pro plan).
  • To provide support when you contact us.

We do not sell or rent any data, and we use no data for advertising or profiling. Legal basis under GDPR: performance of our contract with you, the merchant (Art. 6(1)(b)). Since the App processes no buyer personal data, no consent banner or additional legal basis is required for the storefront widget.

3. Sub-processors and where data lives

  • Cloud hosting provider — the App's production application and database, where your settings, size charts, assignments, and analytics counters are stored. Access is limited to the App's developer and protected by authentication.
  • Shopify — product, collection, vendor, and tag data are read from your store via Shopify's APIs and remain inside Shopify's infrastructure; the guide configuration shown on your storefront is stored as a metafield on your own shop.

That is the complete list. There is no email provider, no analytics service, no AI provider, and no advertising network involved in operating the App.

4. GDPR and Shopify privacy webhooks

The App implements all three mandatory Shopify privacy webhooks:

  • customers/data_request — a customer asks for their data. Because the App stores no customer data, there is nothing to export; we acknowledge the request and confirm this to the merchant.
  • customers/redact — a customer asks for deletion. Because the App stores no customer data, there is nothing to delete; the request is acknowledged automatically.
  • shop/redact — sent by Shopify 48 hours after you uninstall the App. We permanently delete your shop's settings, access token, size charts, uploaded images, assignments, and analytics counters within 30 days of receiving it.

Merchants in the EU/EEA, UK, or similar jurisdictions may request access, correction, or deletion of shop-level data at any time at the address below; we respond within 30 days.

5. Data retention

  • Settings, size charts, images, and assignments: kept while the App is installed; you can delete any guide yourself at any time from the admin.
  • Analytics counters: kept as daily aggregates while the App is installed.
  • After uninstall: everything is deleted within 30 days via the shop/redact flow described above.
  • Support emails: retained for up to 24 months, then deleted.

6. Security

Data is transmitted over TLS and stored in a production database with authenticated, developer-only access. Webhook payloads from Shopify are verified with HMAC signatures. Admin access to the App runs through Shopify's own embedded-app session token authentication.

7. Changes to this policy

If we change what the App collects — for example, if a future feature requires new data — we will update this page, change the effective date at the top, and summarize the change in the App's changelog before it takes effect.

8. Contact

Questions, or a privacy request? Email anadvisory.fr@gmail.com. We read everything and reply within one business day.