GuaranteeMark — Privacy Policy

GuaranteeMark ("the app") shows the European Union's harmonised notice on the legal guarantee of conformity, and the optional GARAN durability label, on a Shopify store's product pages. This policy explains exactly what data the app processes and why.

Data we process

The app reads the store's product catalogue through the Shopify Admin API: the product id, title, handle, product type and tags. It stores that list so the merchant can search it and mark the products the legal guarantee does not apply to. It also stores the merchant's exclusion rules, their reusable durability-guarantee records (brand, model identifier, duration in years and their confirmation that the guarantee meets the four legal conditions), a log of what the app wrote to Shopify, and the shop's access token.

The app writes one metafield per product, $app:guarantee, and only on products that are excluded from the notice or carry a durability label. It also creates that metafield's definition once, when the app is installed. It writes nothing else to the store.

Data we do NOT collect

GuaranteeMark stores no personal data about anyone. It does not request or receive access to orders, customers, carts, checkouts, addresses, email addresses or payment details, and it holds no identifiers for the store's shoppers. The permissions the app asks for at install (read_products and write_products) do not include any protected customer data.

The theme blocks the app adds to the storefront run no JavaScript, set no cookies and send no requests to the app's own servers. The notice is a static image served from Shopify's CDN, so the app never sees a shopper's visit.

The notice artwork

The notice and label images are the European Commission's own files, published in Annexes I and II to Commission Implementing Regulation (EU) 2025/1960 in the Official Journal of the European Union. They are bundled with the app unchanged and are not machine-translated.

Data retention and deletion

Uninstalling the app deletes the shop's access token immediately. All remaining data for the shop — products, exclusion rules, durability guarantees and sync logs — is permanently deleted in response to Shopify's shop redaction webhook. The customer data request and customer redaction webhooks are answered with a 200 because the app holds no customer data to report or erase.

Metafields the app wrote to products remain on those products after uninstall, so the storefront does not change unexpectedly. A merchant can delete them in Shopify admin at any time.

Third parties

No data is sold, shared or sent to any third party. The app calls only Shopify's Admin API.

Contact

Fleeta Limited — sales@fleeta.co.uk