Privacy Policy

Last updated: April 2026

Effective date: 1 April 2026

Overview

Scurix Sticky Add to Cart Bar ("the app", "we", "our", or "us") is a Shopify application developed by Scurix. This Privacy Policy explains what information the app accesses and stores when you install and use it in your Shopify store, how that information is used, and what rights you have in relation to it.

We have designed the app with privacy as a core principle. It accesses only what is strictly necessary to render a sticky add-to-cart bar on your storefront, and it does not sell or share data with third parties for advertising or other commercial purposes.

What the app does NOT collect

The Scurix Sticky Add to Cart Bar does not collect personal data about your customers. It does not set tracking cookies, does not fingerprint visitors, and does not send shopper behavior to any third-party analytics or advertising network.

Specifically, the app does not collect:

What the app does collect

To operate, the app stores the following minimal data associated with your Shopify store (not your customers):

When a shopper loads a product page in your store, the app reads public product data (title, price, compare-at price, featured image, variant ID) from Shopify's storefront in order to render the bar. This product data is not retained on our servers — it is used only to display the bar in the shopper's browser.

Shopify API access

The app requests only the Shopify scopes required to operate:

We do not request or use any scope that grants access to customer records, orders, or payment information.

Cookies & tracking

The Scurix Sticky Add to Cart Bar does not set cookies or use local storage on your customers' devices for tracking. The app admin (the editor used by you, the merchant) may use a single session cookie provided by Shopify for authentication — this is standard for all embedded Shopify apps and is managed by Shopify itself.

Data storage & security

All app settings and metadata are stored on servers hosted within the European Economic Area (EEA). Data is encrypted at rest (AES-256) and in transit (TLS 1.2+). Access is restricted to authorised Scurix personnel, and only where necessary for support, debugging or maintenance.

We do not use third-party analytics services, advertising networks or data brokers in connection with the app.

Data retention & uninstall

Your app settings are retained for as long as the app is installed in your Shopify store. If you uninstall the app, all data associated with your store is deleted automatically within 30 days, in line with Shopify's app data lifecycle.

If Shopify sends us a data erasure or data request webhook on behalf of a customer (customers/redact, shop/redact, customers/data_request), we process the request in accordance with Shopify's Partner requirements — typically, these are no-ops for this app because no customer personal data is stored.

GDPR & CCPA

Because the app does not store personal data about your customers, your obligations as data controller under GDPR (EU) 2016/679 and the California Consumer Privacy Act (CCPA) in relation to this app are significantly reduced.

The limited data we do retain (your shop domain and saved settings) relates to your business, not to any identified natural person, and is processed under a legitimate-interest basis to operate the service you have installed. If you have specific questions about your compliance obligations, we recommend consulting a qualified legal adviser.

Your rights as a merchant

As the merchant, you have the right to:

To exercise any of these rights, contact us at support@scurix.com. We will respond within 5 business days.

Changes to this policy

We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top of the page and, where the changes are material, notify you via the Shopify admin notification system.

Continued use of the app after any changes constitutes your acceptance of the updated policy.

Contact

If you have any questions about this Privacy Policy or how your data is handled, please contact us: