Measure Lab — Privacy Policy
Last updated: 14 July 2026
Measure Lab (“Measure Lab”, “we”, “us”) is a Shopify app that lets merchants build custom pricing and measurement calculators for their products. This policy explains what data the app processes, why, how long we keep it, and how to request access or deletion. It applies to the Measure Lab app installed on a Shopify store and the storefront widget it adds to that store.
1. Who we are
Measure Lab is a Shopify app operated by an independent sole trader (individual business). The operator is the data controller for the data described below that we store on our own infrastructure, and a data processor acting on the merchant’s behalf when we process their store’s order data. The controller can be reached at support@measure-lab.app, which is the point of contact for any privacy request.
2. Information we process
Store & account data
- Your Shopify store domain and the access token/session created when you install the app (used to authenticate the app with Shopify).
- The calculators and configuration you create in the app (customer inputs, pricing formulas, templates). This is business configuration, not personal data.
Order & customization data
With your permission (the read_orders scope), Measure Lab
subscribes to your store’s orders/create,
orders/cancelled, and refunds/create events so it
can record how your calculators are used and verify prices. For each
customized line in an order we store:
- Order ID and order name (e.g.
#1001) and the order date; - Product ID/title, currency, and the customization amount;
- The customization selections the shopper made — the measurements, options, and any free-text fields your calculator offers (for example a “name to engrave” field). If your calculator collects free-text, a shopper’s typed value is stored here as part of the order record.
Because these records are tied to an order, they may indirectly relate to an individual. We keep them minimal and purpose-limited (see retention and deletion below).
Storefront widget
The Measure Lab block on your product pages runs in the shopper’s browser to calculate a price from the inputs they choose. Those inputs are attached to the cart line so the correct price flows through to checkout and the order. The widget also sends an occasional, non-personal “block is installed” signal to the app so your setup checklist can confirm the block is live; it contains no shopper information.
What we do NOT collect
- We do not store shopper identifiers — no customer name, email, phone number, billing/shipping address, or payment details.
- We do not use advertising or cross-site tracking cookies.
3. How we use data
- To run your calculators and show correct custom pricing in cart and checkout.
- To show you analytics and pricing-integrity checks about your own store’s orders.
- To operate, secure, debug, and support the app.
We do not sell personal data or share it for advertising.
4. Sharing & subprocessors
We share data only with the infrastructure providers needed to run the service:
- Shopify — the platform the app runs on and the source of order data.
- Render (Render Services, Inc.) — hosts the app server and the managed PostgreSQL database that stores the data described above.
- Resend (Resend, Inc.) — delivers support emails; processes only the contents of a support message you send us and the reply-to address you provide.
These providers process data on our behalf under their own security and privacy terms. We do not otherwise disclose data except where required by law.
5. Data retention
- Order customization records are retained for about 24 months and then automatically deleted.
- Operational webhook logs are retained for about 30 days.
- All data for a store is deleted when the app is uninstalled or when Shopify sends a shop-deletion request (see below).
6. Your rights & data requests (GDPR/CCPA)
Measure Lab implements Shopify’s mandatory privacy webhooks, so requests made through a Shopify store are honored automatically:
- Customer data request — we return the customization data we hold for the specified orders.
- Customer redaction — we delete the customization records for the specified orders.
- Shop redaction — we permanently delete all data we hold for that store.
Shoppers should contact the store they purchased from to exercise their rights; the store can forward the request to us. You can also email support@measure-lab.app and we will help with access, correction, or deletion.
7. Security
Data is transmitted over encrypted connections (HTTPS/TLS) and stored in a managed database with access restricted to the app. No method of storage or transmission is perfectly secure, but we take reasonable measures to protect the data we hold.
8. International transfers
Our providers may process data in regions outside your own. Where required, such transfers rely on appropriate safeguards offered by those providers.
9. Children
The app is a business tool for merchants and is not directed to children. We do not knowingly collect data from children.
10. Changes to this policy
We may update this policy as the app evolves. Material changes will be reflected by updating the “Last updated” date above.
Contact
Questions or data requests: support@measure-lab.app