MakerPantry — Privacy Policy
Effective 2026-07-02
MakerPantry (“the app”, “we”) is a Shopify app that helps makers track raw-material inventory, per-batch lots, and product recipes so their storefront reflects how many finished goods they can actually build. This policy explains what data the app accesses, why, and how it is handled.
Information we access
When you install the app on your Shopify store, with your authorization we access:
- Store & product data — your shop domain, products, variants, SKUs, inventory items, and locations. Used to map your catalog to recipes and to read/write inventory availability.
- Order line items — when an order is created, we read only the line items (SKU and quantity) to deduct materials. We do not read, request, or store customer names, emails, addresses, phone numbers, or payment details.
Information we store
- Your shop domain and Shopify OAuth session data — access/refresh tokens plus the session metadata Shopify provides for the installing user (such as name, email, and account-owner status). This is used to authenticate API calls on your behalf.
- Inventory data you create in the app: materials, lots, quantities, costs, product recipes (bills of materials), reconciliation/drift logs, and processing bookkeeping (e.g. webhook idempotency keys).
We do not store protected customer personal information.
How we use it
Data is used solely to provide the app’s functionality: computing buildable inventory, deducting materials on sales, and keeping your Shopify availability in sync to prevent overselling. We do not use your data for advertising, and we do not sell it.
Data sharing
We do not share your data with third parties except the infrastructure required to run the app (our hosting and database provider) and Shopify itself. These providers process data only to operate the service.
Protected Customer Data
Shopify classifies the orders webhook payload as Protected Customer Data. Although the app only uses order line items (SKU and quantity) and never customer personal information, we handle any such data in line with Shopify’s Protected Customer Data requirements: access is limited to the app’s core inventory function, data is encrypted in transit, and we retain only what is needed to operate the service.
Data retention & deletion
We retain your data while the app is installed. When you uninstall the app, your access token is invalidated and your store’s data is deleted within 30 days. You may request deletion at any time by contacting us.
Security
Data is transmitted over encrypted connections (HTTPS/TLS) and stored on managed infrastructure with access controls. Access tokens are stored server-side and never exposed to the browser.
Changes to this policy
We may update this policy as the app evolves. Material changes will be reflected by updating the effective date above.
Contact
Questions or data requests: support@makerpantry.com