Privacy

Catalog monitoring with a narrow data footprint.

This policy explains what Ellefsen Marketing processes when a merchant installs and uses Lige SKU Sentinel.

Last updated: July 24, 2026

Who operates the app

Lige SKU Sentinel is operated by Ellefsen Marketing (organization number 930 711 160), Korvettveien 23, 4624 Kristiansand S, Norway. Ellefsen Marketing is the controller of the information described in this policy. Privacy questions and requests can be sent to ellefsenmarketing+skusentinel@gmail.com.

Information we process

The app processes the shop domain and Shopify shop identifier; product and variant identifiers, titles, SKUs, barcodes, and update timestamps; scan jobs and issue findings; and dismissal, snooze, and scan settings. We also store the Shopify app session and access or refresh tokens needed to authenticate the installed app.

When Shopify includes it in an authenticated session, limited staff session metadata such as a user identifier, name, email, locale, and account-owner status may also be processed. Shopify provides the current app-subscription status; we store the resulting plan tier but do not receive payment-card details.

The app does not request or store customer, order, or payment data.

How we use information

We use this information to authenticate the app, scan the catalog, group potential SKU and barcode issues, preserve merchant workflow choices, provide plan features, secure and troubleshoot the service, and comply with Shopify requirements and applicable law. We do not sell merchant or catalog information or use it for third-party advertising.

Service providers

We use Vercel for application hosting and runtime services and Neon for managed PostgreSQL database services. These providers process information on our behalf to operate the app. Shopify separately provides the commerce platform, installation, authentication, and app billing services under its own terms and privacy policy.

Retention and deletion

Current catalog snapshots, open or merchant-managed findings, app settings, and sessions are kept while the app is installed and as needed to provide the service. Resolved issue groups and completed or failed scan-job records are deleted after 30 days.

When the app receives a valid uninstall or Shopify shop-redaction request, it deletes the shop record, catalog snapshot, findings, scan jobs, settings, and sessions from the primary database. Where provider backups are enabled, deleted data is isolated from normal use and expires from those backups within 30 days.

Security

We use encrypted network connections, managed infrastructure with encryption at rest, restricted production access, and secrets kept outside application source code. No internet service can guarantee absolute security.

Your choices and rights

Merchants can dismiss or snooze findings in the app, change plans through Shopify, and uninstall the app from Shopify Admin. To request access, correction, deletion, or another privacy right that applies in your location, email the address above and include the store domain. We may need to verify the request before acting on it.

Changes

We may update this policy when the service or legal requirements change. The updated date at the top identifies the current version.