ID_within Simple Password Lock is a Shopify app built by ID_within.
Information we process
When the app is installed, we store the Shopify shop domain and Shopify session data required to keep the app connected to the merchant's Shopify admin.
When a merchant configures the app, we store the lock settings for that shop, including whether the lock is enabled, the selected lock mode, locked paths, excluded paths, customer-facing message, redirect setting, access duration, and the shared password in a hashed form.
When a storefront visitor enters the correct password, the app sets a browser access token and a Shopify cart attribute so the storefront and checkout validation can recognise that access has been granted.
What we do not store
We do not store customer payment information.
We do not sell personal information.
We do not use the app to build advertising profiles.
How the information is used
The information is used to provide password-lock functionality, keep selected storefront paths open or locked, and block checkout for protected products until access has been granted.
Data retention
Shop settings and session data are retained while the app is installed. When the app is uninstalled, app-specific data can be deleted as part of the uninstall and compliance webhook process.
Shopify compliance webhooks
The app supports Shopify's required compliance webhooks for customer data requests, customer redaction, and shop redaction.
Contact
For privacy questions, contact:
apps@idwithin.com