Legal
Privacy Policy
Last updated February 9, 2026.
1. Introduction
Nereus Upsell Lab ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard information when you use our Shopify app.
2. Information We Collect
When you install and use Nereus Upsell Lab, we collect:
- Store Information: Your Shopify store domain, access token, and installed scopes
- Product Data: Product titles, IDs, and inventory status to display bundle offers
- Order Data: Order information to track bundle revenue and performance
- Usage Data: Analytics events (bundle impressions, clicks, conversions) to improve our service
- Billing Information: Subscription status and payment information (processed by Shopify)
3. How We Use Your Information
We use the collected information to:
- Provide and maintain the Nereus Upsell Lab service
- Display bundle offers to your customers
- Track bundle performance and revenue
- Process billing and manage subscriptions
- Improve our app features and user experience
- Provide customer support
4. Data Storage and Security
Your data is stored securely using:
- Database: PostgreSQL on Render.com with SSL encryption
- Access Tokens: Encrypted using AES-256-GCM encryption
- Data Retention: We retain data for as long as your store uses the app
5. Data Sharing
We do not sell, trade, or rent your data to third parties. We only share data with:
- Shopify: To authenticate your store and process billing
- Render.com: Our hosting provider, subject to their privacy policy
6. Your Rights (GDPR Compliance)
You have the right to:
- Access: Request a copy of your data
- Deletion: Request deletion of your data
- Correction: Request correction of inaccurate data
- Portability: Request your data in a machine-readable format
7. Data Deletion
When you uninstall Nereus Upsell Lab:
- All bundle configurations are immediately deleted
- Analytics data is anonymized after 90 days
- Access tokens are immediately deleted
- You can request complete data deletion by contacting us
8. Cookies and Tracking
We use minimal tracking:
- Session cookies for app authentication
- Analytics events to track bundle performance (no personal customer data)
- No third-party tracking or advertising cookies
9. Children's Privacy
Nereus Upsell Lab is not intended for use by children under 13. We do not knowingly collect data from children.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of changes by updating the last-updated date.
11. Contact Us
For privacy questions or data requests, contact us at:
- Email: [email protected]
- Website: upsell.nereusdata.io
12. GDPR Data Controller
Nereus Data
Data Protection Officer:
[email protected]