Privacy Policy

Peekaboo Pricing ("we," "our," or "us") is committed to protecting the privacy of merchants and their customers using our Shopify app. This Privacy Policy explains how we collect, use, disclose, and safeguard information. By using the App, you agree to this policy.

Merchants: This policy applies to your use of the App.

Customers: If interacting with a merchant's storefront, your information is collected on behalf of the merchant, and their privacy policy also applies. Customers should contact the merchant with any questions about how their data is used.

1. Information We Collect

Merchant Information

When you install the App, we collect:

  • Shopify store details: shop name, domain, and contact information.
  • Configuration data: hide-price options, email provider settings (SMTP2GO, Brevo API keys), reCAPTCHA keys, and custom form fields.
  • Usage data: app settings, product assignments, form and email activity logs.

Customer Information

Through forms or hidden price interactions on merchant storefronts, we may collect:

  • Personal details: name, email, phone, and any merchant-defined custom fields (e.g., messages or inquiries).
  • Technical data: IP address and reCAPTCHA tokens for spam prevention.

We do not collect payment or sensitive personal information unless the merchant explicitly requests it through custom form fields.

Automatically Collected Information

We collect device and usage data such as browser type, operating system, and interactions with the App to improve performance and functionality.

2. How We Use Your Information

  • For Merchants: Provide features like price hiding, custom form handling, automated emails, optional secure price reveal links, and configuration backups. Settings and data sync between Shopify and our systems.
  • For Customers: Process form submissions, deliver optional secure price reveal links via email, and prevent spam using Google reCAPTCHA.
  • General Purposes: Maintain security, troubleshoot issues, comply with legal obligations, and analyze usage to improve the App.

Third-party services (Cloudflare, SMTP2GO, Brevo, Google reCAPTCHA) may access data as required to perform their functions.

3. Sharing of Information

We do not sell personal information. We may share data:

  • With service providers (e.g., email senders, storage hosts) who are bound by confidentiality agreements.
  • To comply with laws, legal requests, or to protect rights.
  • In the event of a business transfer (merger or acquisition).

Customer data is shared with the merchant who owns the storefront, and the merchant is responsible for compliance with applicable data protection laws.

4. Data Security

We implement security measures including separation of store data, encryption for price reveal links (AES-256-GCM), HMAC authentication, and input validation. Data is stored in Shopify metafields/metaobjects and Cloudflare KV with isolation prefixes. Email logs and tokens have limited retention (7 days for logs, 72 hours for tokens). No system is completely secure, but we take reasonable precautions.

5. Your Rights and Choices

  • Merchants: Access, update, or delete App data via the admin interface. Uninstalling the App triggers data cleanup after a brief period.
  • Customers: Contact the merchant to access, correct, or delete your data.
  • Opt-Out: Customers can choose not to submit forms or interact with hidden prices to avoid data collection.

6. International Data Transfers

Data may be processed in the United States or other countries. We implement safeguards to ensure appropriate protection for cross-border transfers. Merchants are responsible for ensuring compliance with local privacy regulations, including GDPR if applicable.

7. Children's Privacy

The App is not intended for children under 13. We do not knowingly collect data from children. If we learn that a child has submitted information, we will delete it.

8. Changes to This Policy

We may update this policy periodically. Changes will be posted here. Continued use of the App constitutes acceptance of any updates.