StockGap Privacy Policy
Last updated 19 September 2026
The short version
StockGap forecasts inventory. To do that it needs to know what you sell, how much of it you hold, and how many units moved on each day. It does not need to know who bought them, and it does not store that.
What we store
- Products and variants — title, SKU, barcode, price, cost, image URL, and current stock level.
- Daily sales totals — for each variant, the number of units sold and the revenue, per day.
- Stock levels over time — a daily record of how much you had on hand, which is what lets us tell demand apart from a stockout.
- Data you enter — suppliers, lead times, purchase orders and settings.
- An access token for your store, so the app can read the above.
What we do not store
When StockGap reads your orders, it takes the line items and immediately reduces each one to which variant, which day, how many units, how much revenue. Everything else in the order is discarded before anything is written to our database.
That means we hold no:
- customer names, emails, phone numbers or addresses
- order numbers or individual order records
- payment details of any kind — we never see them
- IP addresses or browsing behaviour of your shoppers
Shopify sends apps a request when a shopper asks what personal data is held about them. Our honest answer is none, and that is what we return.
What we change in your store
StockGap is read-only with one exception: if you mark a purchase order as received, it can add the received quantity to your stock level. It never edits products, prices, orders or customers.
Who else sees it
Nobody. Your data is not sold, rented, or shared with advertisers, and it is not used to train any model. It is processed only to produce forecasts for your own store.
We rely on two infrastructure providers to run the service: a hosting provider that runs the application, and a managed PostgreSQL provider that stores the data. Both act only as processors on our instructions.
How long we keep it
While the app is installed, and for 48 hours after you uninstall. Shopify then sends a deletion request and we erase everything belonging to your store — products, sales history, stock history, suppliers, purchase orders and the access token. The 48-hour gap exists so that uninstalling by mistake, or reinstalling, does not throw away months of stock history that cannot be recovered from anywhere else.
If you want it deleted sooner than that, email us and we will do it.
Your rights
If you are in the EU or UK, you have the right to access, correct, export or erase your data, and to object to processing. Because we hold no personal data about your customers, these requests in practice concern your own store data, and we will action any of them on request.
Security
Data is encrypted in transit and at rest by our infrastructure providers. Access tokens are stored in the database and never exposed to the browser. We do not handle card details at any point — billing runs entirely through Shopify, on your existing invoice.
Changes
If this policy changes in a way that affects what we collect or how we use it, we will update the date at the top and notify installed merchants inside the app.