Last updated: June 28, 2026
The General Data Protection Regulation (GDPR) and UK GDPR protect the privacy rights of individuals in the European Economic Area (EEA) and United Kingdom. Appziot is committed to GDPR compliance when processing personal data of merchants, authorized users, and end customers whose data we process on behalf of merchants.
This page supplements our Privacy Policy and describes how we meet GDPR-related obligations for our Shopify app and related services.
Depending on the context:
Where GDPR applies, you may have the following rights:
Request a copy of personal data we hold about you.
Request correction of inaccurate or incomplete personal data.
Request deletion of personal data, subject to legal exceptions.
Request limitation of processing in certain circumstances.
Object to processing based on legitimate interests or for direct marketing.
Receive personal data you provided in a structured, commonly used, machine-readable format where applicable.
Withdraw consent at any time where processing is based on consent, without affecting prior lawful processing.
We process personal data under the following legal bases:
Categories of personal data we may process include:
Appziot implements Shopify’s mandatory GDPR webhooks to support merchant compliance obligations:
Merchants must still respond to their customers within applicable legal timeframes. Appziot assists by processing these webhooks on the merchant’s behalf.
We retain personal data only as long as necessary for the purposes described in our Privacy Policy, including providing the Service, meeting legal obligations, and resolving disputes. Data associated with uninstalled shops is deleted or anonymized following shop/redact processing, subject to backup retention cycles and legal holds.
We implement appropriate technical and organizational measures, including encryption in transit, access controls, and secure authentication. See our Data Security page for more information.
Personal data may be transferred outside the EEA/UK to countries such as India and the United States. Where required, we rely on appropriate safeguards, including Standard Contractual Clauses approved by the European Commission or UK authorities, and supplementary measures where appropriate.
We use subprocessors to deliver the Service, including:
Subprocessors are bound by contractual obligations to protect personal data consistent with GDPR requirements.
For GDPR-related inquiries, contact our Data Protection contact at:
Email: support@appziot.com
To exercise GDPR rights:
We respond within one month. Complex or numerous requests may take up to three additional months, with notice where permitted.
If you are an end customer of a merchant using Appziot, please contact the merchant first. Merchants control most customer data processed through their stores and apps.
You have the right to lodge a complaint with your local supervisory authority. We encourage you to contact us first so we can address your concerns.
Appziot
Email: support@appziot.com
Address: India