SellerGlow
Privacy Policy
Last updated: July 25, 2026
SellerGlow LLC ("SellerGlow," "we," "us") provides a Shopify app that helps merchants improve their product listings — importing catalog data, generating AI-assisted suggestions for review, saving approved drafts in SellerGlow, publishing only the drafts you explicitly choose to Shopify, and analyzing how AI-ready a catalog is. This Privacy Policy explains what data we process when you install and use SellerGlow, why, who we share it with, and the choices and rights you have. It applies to the SellerGlow Shopify app, the merchant.sellerglow.com interface, and the public listing pre-flight scan.
1. Information we collect
Store and account data
- Your Shopify store domain and the OAuth access token Shopify issues when you install the app.
- The email address associated with your account, used for support, billing, and account notices.
Catalog data (the content you ask us to work on)
- Product information from your store — titles, descriptions, tags, images, prices, SKUs, product type, vendor, and product metafields — which you import or sync so SellerGlow can analyze and suggest improvements.
Usage data
- Actions you take in the app, job history, credit usage, and basic product-analytics events used to operate and improve the service.
Your store's customers
- SellerGlow works on your product catalog, not your customers. In normal operation we do
not collect, store, or process your customers' personal data. Shopify's mandatory privacy webhooks
(
customers/data_request,customers/redact,shop/redact) are implemented; if Shopify sends one, we confirm and act on the fact that we hold no customer personal data, and we delete store data on ashop/redactrequest.
2. Public listing pre-flight scan
The scan reads the CSV file in your browser and calculates the initial aggregate teaser there. The CSV file, its filename, and image URLs are not uploaded. The browser sends only allowlisted funnel event names associated with a random scan-session identifier. When a report is requested, the server also records the selected destination choices as bounded analytics. Neither path sends listing content or email addresses to analytics.
If you consent to request the listing-by-listing report, the browser sends your email address, selected platform-survey choices, and a bounded derivative for up to 500 listings. That derivative contains the listing identifier, title, description, up to 50 tags, image-alt-text presence markers (not image URLs or alt-text content), and flags indicating whether variant or GTIN data was detected. The server applies deterministic starter checks to those fields and creates the private report.
The rendered report is stored in a private AWS S3 bucket. Its metadata record contains the email
address, selected platforms, creation time, and expiry time. The report route stops serving the
report after seven days; the metadata record uses the same seven-day expiry and DynamoDB's
expiresAt time-to-live field. An enabled S3 lifecycle rule for the private
reports/ prefix expires report objects after seven days.
For the public scan, we use the email address only to deliver the requested report and to keep the selected platform-survey choices with that short-lived request. Scan analytics retain aggregate event counts and destination-choice counts, not CSV rows, listing titles or descriptions, tags, images, filenames, or email addresses.
3. How we use your data
- To provide and operate the service — generate listing suggestions, analyze AI readiness, save drafts you approve in SellerGlow, and publish an approved draft to your Shopify store only when you explicitly choose Publish to Shopify.
- To support you, communicate service and security notices, and handle billing.
- To monitor reliability and improve the product (aggregate/usage analysis).
We do not sell your data, and we do not use your catalog content for advertising.
4. AI processing and sub-processors
SellerGlow uses trusted third parties to deliver the service. We share only what is needed for each function:
| Sub-processor | Purpose | What is shared |
|---|---|---|
| OpenAI; Anthropic (incl. via AWS Bedrock) | Generate listing suggestions, alt text, and readiness analysis | The catalog content you submit for optimization. We use these providers' APIs under terms that do not use submitted data to train their models. |
| Amazon Web Services (AWS) | Hosting, storage, and processing | All service data, stored in the United States (primary region us-east-1). |
| Sentry | Error monitoring | Diagnostic/error data. Authorization and cookie headers and request bodies are stripped before transmission. |
| PostHog | Product analytics | Usage events, identified by store domain. |
| Shopify | The platform you connect | Reads/writes to your store via the scopes you grant at install. |
5. Where we store your data and how we protect it
- Data is stored on AWS in the United States (primary region us-east-1).
- Data is encrypted in transit. Access is restricted, and requests pass through a web application firewall.
6. How long we keep it
- We keep your store and catalog data while the app is installed and for a limited period afterward to support recovery and reinstalls, after which it is deleted.
- You can request earlier deletion at any time (see Section 6). Uninstalling the app and Shopify's
shop/redactwebhook trigger deletion of your store data.
7. Your rights and choices
Depending on where you live (including under GDPR and CCPA/CPRA), you may have the right to access, correct, delete, export, or object to the processing of your data. To exercise any of these, email privacy@sellerglow.com — we will respond within the time required by applicable law. You can also delete your data by uninstalling the app.
8. Cookies and tracking
We use a small number of essential cookies to keep you signed in, and product-analytics instrumentation (PostHog) to understand how the app is used. We do not use third-party advertising cookies.
9. International transfers
SellerGlow operates from and stores data in the United States. If you access the service from outside the U.S., your data is transferred to and processed in the U.S.
10. Children
SellerGlow is a business tool and is not directed to children under 16.
11. Changes to this policy
We may update this policy as the service evolves. Material changes will be reflected by the "Last updated" date above and, where appropriate, communicated to merchants.
12. Contact
Privacy questions: privacy@sellerglow.com
Security reports: security@sellerglow.com