Effective date: August 2026
This policy covers the Shopify apps built and operated by Softlimit ("Softlimit," "we," "us"). It explains what each app processes and stores when a merchant installs it and when shoppers interact with it on a merchant's storefront. It is separate from our website privacy policy, which covers visitors to softlimit.com.
If anything here is unclear, email ben.lord@softlimit.com.
customers/data_request, customers/redact, and shop/redact. When a merchant uninstalls an app, that shop's data is deleted on Shopify's standard redaction timeline.Looksee adds visual search to a merchant's storefront: a shopper uploads a photo and sees similar products from that store's own catalog.
Shopper-uploaded photos. When a shopper uploads a photo to search, that image is held in memory only for the duration of the request, just long enough to send it to Shopify's Global Catalog for matching and return results. It is never written to disk, never saved to a database, and never retained after the request completes. We do not build a library of shopper photos, and we cannot retrieve a photo after the fact, because it no longer exists.
Search metadata. To power the merchant dashboard (search volume, result quality, popular matches), we log a limited record for each search: timestamp, number of results returned, the search hint used, and, if the shopper clicks through, the handle of the product they clicked. We do not log or store the photo itself, any part of its image data, or any information that identifies the shopper who uploaded it. We do not know who a shopper is, and we don't try to find out.
No customer accounts, no customer identity. Looksee's storefront feature works anonymously. We never ask a shopper to log in, never link a search to a customer record, and never receive customer data (names, emails, order history) from Shopify as part of how the app functions.
This data is stored to make the app work. It is not used for any purpose beyond operating Looksee for that merchant.
read_products scope) and the Global Catalog API (to perform visual matching). Shopify's own privacy practices govern its handling of this traffic.Search metadata is retained for as long as a merchant's app installation is active, to power the dashboard's analytics. If a merchant uninstalls Looksee, we delete that shop's settings and search history in response to Shopify's standard shop/redact webhook.
Because Looksee does not collect shopper identity or customer data, most data subject rights requests forwarded to us via Shopify's customers/data_request webhook will have no data to return: there is nothing tied to an individual shopper to retrieve. We honor customers/redact requests as a no-op for the same reason: we hold no personal data about any named customer to erase. shop/redact requests (triggered on uninstall) result in deletion of that shop's settings and search records, as described above.
If you are a shopper with a question about a search you performed on a merchant's store, the merchant is your first point of contact, since they operate the storefront. If you'd like to reach us directly, email the address below.
If this policy changes in a material way, we'll update the effective date above. Continued use of a Softlimit app after a change constitutes acceptance of the revised policy.
Softlimit
ben.lord@softlimit.com