Privacy Policy
CostSentry (“we”, “us”) runs the website costsentry.app, the free Supplier Price Margin Checker, and the CostSentry app for Shopify. This policy is short because we collect very little — and because the most sensitive thing you hand us, your supplier costs, is treated as exactly that.
1. What we collect
- Your Shopify store data, once you install the app. Product titles, variants, SKUs, barcodes,
retail prices and the cost per item already stored in Shopify. We request the scopes
read_products,read_inventoryandwrite_inventory— nothing else. - Supplier price lists you upload, and the cost history we build from them. This is what the product exists to do: keep the price history Shopify does not.
- Your settings — target margin, margin floor, notification email, Telegram chat ID, digest frequency.
- Contact email, if you joined the early-access list or wrote to us, plus the date and request IP for spam prevention.
- Anonymous page views on the website. No cookies, no third-party trackers. Visitor IPs are one-way hashed with a daily-rotating salt, so we can count unique visits for a day without storing or recovering an IP address.
2. What we never collect
- No customer data. We do not request the
read_ordersorread_customersscopes. Your buyers' names, emails, addresses and order history never reach us — the product doesn't need them. - No payment card data. Billing runs through Shopify; we never see card numbers.
- No advertising or cross-site tracking cookies.
- No selling, renting or sharing of your data with advertisers or data brokers. Ever.
3. The free tool never sends us anything
The Supplier Price Margin Checker runs entirely in your browser. The files you drop into it — your product export and your supplier's price list — are parsed locally and never leave your device. There is no upload, no account, and nothing for us to store.
4. How we use your data
- To detect supplier cost changes and calculate what they do to your margins.
- To send the alerts and digests you configured, and occasional service notices about the app.
- To write a new cost back into your Shopify products — only when you ask for it, per item or via the auto-apply setting you control. We never change your retail prices.
- To prevent spam and abuse of our forms, and to understand aggregate website traffic.
5. Where your data lives
CostSentry runs on our own servers in Germany (Hetzner). Data is stored in an isolated database per deployment and is not pooled with other services. We use a small number of providers to operate the service — hosting and email delivery — and they process data only on our behalf.
6. How long we keep it
Cost history is kept while your store has the app installed, because the entire value of the product is the trail over time. When you uninstall, we stop syncing immediately. Shopify sends us a shop-redact request 48 hours after uninstall, and at that point we erase your store's data — suppliers, price lists, cost history and events. You can also ask us to erase it sooner by writing to the address below.
7. Your rights
You can ask what we hold about you, ask for a copy, ask for corrections, or ask us to delete it. Write to hello@costsentry.app and we'll act within 30 days. If you are in the EU or UK, you also have the right to complain to your local data protection authority.
8. GDPR requests from Shopify
We implement Shopify's mandatory compliance webhooks. Because we hold no customer data, a
customers/data_request or customers/redact request returns nothing — there is nothing to
return or erase. A shop/redact request deletes the store's data as described above.
9. Changes
If this policy changes materially, we'll update the date at the top and, for anything that affects how your data is handled, tell you by email.
10. Contact
CostSentry — hello@costsentry.app