Your Privacy Matters

Privacy Policy

How we collect, use, and protect your information

Last Updated: February 24, 2025
GDPR & CCPA Compliant

1. Introduction

Welcome to Statty AI. We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, disclose, and safeguard your information when you use our Shopify analytics application.

By installing and using Statty AI, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not install or use our application.

This policy applies to all users of Statty AI, regardless of their location. We comply with applicable data protection laws including GDPR (General Data Protection Regulation), CCPA (California Consumer Privacy Act), and other international privacy regulations.

2. Information We Collect

2.1 Store Data

When you install Statty AI, we collect and process the following data from your Shopify store:

  • Product Information: Product names, descriptions, prices, variants, inventory levels, SKUs, and categories
  • Order Data: Order details, transaction amounts, payment status, fulfillment information, and shipping details
  • Customer Information: Customer names, email addresses, purchase history, order frequency, and geographic location
  • Analytics Data: Store performance metrics, traffic sources, conversion rates, and sales trends

2.2 Account Information

We collect information about your Statty AI account:

  • Store owner name and email address
  • Shopify store URL and domain
  • Subscription plan and billing information
  • App usage data and preferences

2.3 Technical Information

We automatically collect certain technical information when you use our services:

  • IP address, browser type, and device information
  • Operating system and version
  • Log data including access times and pages viewed
  • Cookies and similar tracking technologies

3. How We Use Your Data

We use the collected information for the following purposes:

Analytics & Insights

Generate AI-powered analytics, forecasts, and actionable recommendations for your store

Service Delivery

Provide, maintain, and improve our analytics platform and features

Notifications

Send alerts for anomalies, important insights, and system updates

Security

Detect and prevent fraud, abuse, and security incidents

Customer Support

Respond to your requests, questions, and provide technical assistance

Development

Develop new features and improve our AI algorithms

Legal Basis for Processing (GDPR)

We process your data based on: (1) Contractual necessity to provide our services, (2) Legitimate interests in improving our platform, (3) Your consent where required, and (4) Compliance with legal obligations.

4. Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

Service Providers

We work with trusted third-party service providers who assist us in operating our platform, including cloud hosting (AWS, Google Cloud), payment processing, and analytics services. These providers are contractually obligated to protect your data and use it only for specified purposes.

Legal Requirements

We may disclose your information if required by law, court order, or government request, or to protect our rights, property, or safety, or that of our users or the public.

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change and choices you may have.

With Your Consent

We may share your information with third parties when you explicitly consent to such sharing.

What We Don't Do

  • We do NOT sell your data to third parties
  • We do NOT share your data with advertisers
  • We do NOT use your data to train AI models for other customers

5. Data Security

We implement industry-standard security measures to protect your information:

Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption standards

Secure Infrastructure

Hosted on SOC 2 compliant servers with 99.9% uptime SLA and redundant backups

Access Controls

Strict access controls and authentication protocols, including OAuth 2.0 for Shopify integration

Monitoring

24/7 security monitoring, intrusion detection, and regular security audits

Staff Training

Regular security training for all employees with access to customer data

Incident Response

Comprehensive incident response plan with immediate breach notification procedures

Note: While we implement robust security measures, no method of transmission over the internet or electronic storage is 100% secure. We continuously update our security practices to protect your data.

6. Data Retention

We retain your information only for as long as necessary to provide our services and fulfill the purposes outlined in this policy:

1

Active Subscription

While your subscription is active, we retain all your store data to provide continuous analytics and insights.

2

After Uninstallation

If you uninstall Statty AI, we retain your data for 90 days to allow for reactivation. After 90 days, all data is permanently deleted unless legally required to retain it longer.

3

Aggregated Data

We may retain anonymized, aggregated data indefinitely for statistical analysis and service improvement.

4

Legal Requirements

We may retain certain data longer if required by law, regulation, or legal proceedings (e.g., tax records for 7 years).

7. Your Privacy Rights

Depending on your location, you may have the following rights regarding your personal data:

Right to Access

Request a copy of the personal data we hold about you

Right to Rectification

Request correction of inaccurate or incomplete data

Right to Erasure

Request deletion of your personal data ("right to be forgotten")

Right to Restrict Processing

Request limitation on how we use your data

Right to Data Portability

Receive your data in a structured, machine-readable format

Right to Object

Object to processing of your data for certain purposes

Right to Withdraw Consent

Withdraw consent for data processing at any time

How to Exercise Your Rights

To exercise any of these rights, please contact us at:

support@stattyai.com

We will respond to your request within 30 days. You may need to verify your identity before we process your request.

8. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to improve your experience and analyze usage patterns:

Essential Cookies

Required for the application to function properly. These cannot be disabled.

Examples: Authentication, security, session management

Analytics Cookies

Help us understand how users interact with our application.

Examples: Google Analytics, usage statistics

Preference Cookies

Remember your settings and preferences for a better experience.

Examples: Language preferences, dashboard layouts

Managing Cookies

You can control cookies through your browser settings. Note that disabling cookies may affect the functionality of Statty AI. Most browsers allow you to refuse or accept cookies, delete existing cookies, or be notified when new cookies are placed.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place:

Standard Contractual Clauses

We use EU-approved Standard Contractual Clauses (SCCs) for data transfers outside the EEA

Adequacy Decisions

We transfer data to countries recognized by the EU as providing adequate data protection

Privacy Shield

Where applicable, we comply with Privacy Shield frameworks and successor mechanisms

Encryption in Transit

All international data transfers are encrypted using industry-standard protocols

10. Children's Privacy

Statty AI is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children under 18.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@stattyai.com, and we will delete such information from our systems.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make changes:

  • We will update the "Last Updated" date at the top of this policy
  • For material changes, we will notify you via email or in-app notification
  • We will provide at least 30 days' notice before any material changes take effect
  • Continued use of Statty AI after changes constitutes acceptance of the updated policy

We encourage you to review this Privacy Policy periodically. You can always find the most current version on our website.

12. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Privacy Team

Response Time

Within 48 hours

Data Protection Officer

For GDPR-related inquiries or to exercise your data protection rights:

Contact DPO

Additional Information

This Privacy Policy applies exclusively to Statty AI and does not cover third-party websites or services that may be linked from our platform. We encourage you to review the privacy policies of any third-party services you use.

For our Terms of Service, please visit: Terms & Conditions

Your Privacy is Our Priority

We're committed to protecting your data with industry-leading security and transparent practices.

GDPR Compliant
CCPA Compliant
SOC 2 Certified
ISO 27001