Privacy Policy

Snapshot CRO · Effective date: August 23, 2026

Snapshot CRO ("the App", "we", "us", "our") provides conversion analytics and A/B testing tools ("the Service") to merchants who use Shopify to power their stores. This Privacy Policy describes how personal information is collected, used, and shared when you install or use the App in connection with your Shopify-supported store.

1. Information We Collect

Information about you (the merchant)

When you install the App, we receive certain information from your Shopify account through Shopify's APIs:

Information about your store's visitors

Once installed and enabled, the App collects analytics data about how visitors browse your storefront so we can provide you with conversion insights. This includes:

What we do not collect or store

2. How We Use Information

We use the information we collect to:

We do not sell or rent personal information, and we do not use visitor data for advertising or share it with data brokers.

3. How We Share Information

We share information only with the service providers we need to operate the App:

We may also disclose information if required to do so by law, regulation, or valid legal process, or to protect our rights, our users, or the security of the Service.

4. Data Retention and Deletion

5. Privacy Rights and Compliance Webhooks

The App implements Shopify's mandatory compliance webhooks and honors them for all stores, regardless of where a data subject is located:

Because the App does not store customer names, email addresses, or Shopify customer IDs, in most cases we hold no data that can be linked to an individual customer; where that is the case, there is nothing to return or erase, and we confirm completion of the request.

For the purposes of the EU/UK General Data Protection Regulation (GDPR) and similar laws, the merchant is the data controller of their storefront visitors' personal data, and we act as a data processor on the merchant's behalf, processing visitor data only to provide the Service. For information we hold about you as a merchant, we act as a controller. Data subjects may exercise rights of access, correction, deletion, and objection by contacting us at the address below; we respond within the timelines required by applicable law.

6. Your Responsibilities as a Merchant

Because you are the data controller for your store's visitors, you are responsible for:

7. Security

We use reasonable administrative and technical safeguards to protect the information we process, including access controls and encrypted connections to the App and its database. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.

8. Children's Privacy

The Service is intended for business use by merchants and is not directed to children. We do not knowingly collect personal information from anyone under 16. If you believe we have collected such information, contact us and we will delete it.

9. International Transfers

The App is hosted in the European Union. Information may be processed in other countries by our service providers; where required, we rely on appropriate safeguards for such transfers.

10. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes to our practices or for operational, legal, or regulatory reasons. The current version will always be posted at this page with its effective date. Your continued use of the App after an update constitutes acceptance of the revised policy.

11. Contact Us

For questions about this Privacy Policy or to make a privacy request, contact us by e-mail at shep@therealheroesofecommerce.com.