Privacy Policy
Last updated: 18 July 2026
Landfall (“the app”, “we”) is a Shopify app that shows shoppers a delivery date learned from a merchant’s own fulfilment history and grades those dates against real delivery events. This policy explains what data the app accesses, what it stores, and why. We hold Protected Customer Data access at Level 0 — we do not access or store customer names, emails, addresses or phone numbers.
What we access
With the merchant’s authorisation, Landfall reads from the store’s Shopify admin:
- Order and fulfilment records — timestamps, destination country/region, carrier and delivery events — for roughly the most recent 60 days.
- Products and variants — to scope processing times.
- Markets and locations — to model shipping lanes and fulfilment origins.
What we store
- Aggregate learning models — statistical lead times keyed by destination zone, carrier and product/variant. These contain no personal data.
- Promise records — the date we showed for an order, and whether the parcel met it. We retain the Shopify order ID only so we can delete the record on a GDPR erasure request; no customer identity is stored.
- Merchant settings — your configuration (rules, cutoff, holidays, etc.).
- Aggregate widget analytics — anonymous daily counts of how often the delivery-date widget was viewed, hovered, clicked, or preceded an add-to-cart, split only by device type (desktop/mobile). No IP addresses, cookies, identifiers or personal data of any kind. This pixel is optional and can be disabled in the widget block settings.
What we do NOT do
- We do not store customer names, emails, addresses or phone numbers.
- We do not set cookies or fingerprint shoppers.
- We do not sell, rent or share data with third parties.
- We do not use your data to train models for other merchants.
Data storage & security
Data is stored on our own server, encrypted at rest (LUKS/AES) and in transit (TLS). Access is restricted to the app’s service account. The app’s OAuth token is stored encrypted and never exposed to the browser.
GDPR & data requests
We honour Shopify’s mandatory compliance webhooks: customers/data_request, customers/redact and shop/redact. On a customer redaction we delete any promise records tied to that order ID; on shop redaction we delete all data for the store. Merchants or their customers can also email us to request access or deletion.
Contact
Questions about this policy: connect@talonoid.com · WhatsApp. Data controller: TALONOID® Technologies.