Về trang chủ

Withly Inbox Privacy Policy

Last updated: July 18, 2026

1. Overview

Withly (“we”, “us”, or “our”) provides Withly Inbox – AI Chat Bot, a Shopify app that helps merchants answer customer questions using content from their Shopify stores. This policy explains how the app handles information.

2. Information We Process

Merchant and store information

We process the shop domain, Shopify account information supplied during authentication, merchant contact email, app plan and usage information, and the access credentials required to operate the app.

Store content

With your authorization, we read products, collections, pages, blog articles, store policies, and theme information. We use this content to configure the chat widget and provide relevant answers. We also create embeddings, which are numerical representations used to search that content.

Customer chat data

We process anonymous chat session identifiers, chat messages, and conversation history submitted through the widget. We do not request or access Shopify customer records. A shopper may voluntarily include personal information in a message; merchants should avoid asking shoppers to send sensitive information through the chat.

3. How We Use Information

  • Provide, secure, and improve Withly Inbox.
  • Sync store content and generate context-aware chat responses.
  • Manage app usage, subscriptions, and service notifications.
  • Respond to support requests and investigate reliability or security issues.
  • Meet Shopify’s required privacy and data-deletion webhook obligations.

We do not sell personal information or use it for third-party advertising.

4. Service Providers

  • Shopify provides authentication, store APIs, and app billing.
  • Google Gemini processes store content and chat messages to create embeddings and generate AI responses.
  • SendGrid sends transactional emails when email notifications are enabled.
  • Crisp provides the merchant-facing support chat used in the app administration experience.
  • Telegram may receive limited operational notifications, such as installation, billing, or error alerts.

5. Retention and Deletion

  • Conversation records are configured for deletion after 30 days.
  • When a merchant uninstalls the app or Shopify sends a shop-redaction request, we delete the shop’s app data and access sessions.
  • We retain compliance-request logs for up to two years to document how those requests were handled.

6. Your Privacy Choices

Merchants can request access to, correction of, or deletion of app data by contacting us. We also process Shopify’s mandatory data-request and redaction webhooks. For a customer request concerning a merchant’s store, please contact that merchant first.

7. Security

We use access controls and encryption in transit to protect information. No method of storage or transmission is completely secure, so we cannot guarantee absolute security.

8. Changes and Contact

We may update this policy as the app changes. The current version is published at this URL. For privacy questions or requests, email support@withly.org.