Privacy Policy for OptionForge
Last updated: 2026-07-07
Who we are
OptionForge is a Shopify app that lets merchants add product options and personalization to their products, including reusable option sets, conditional logic, and server-side add-on pricing applied at checkout by a Shopify Cart Transform Function.
This Privacy Policy explains what data the OptionForge app accesses, how that data is processed, and the rights available to merchants who install the app. OptionForge is developed and operated by an independent developer (referred to in this policy as “we,” “us,” or “OptionForge”).
If you have any questions about this policy or about how your data is handled, you can contact us at: robin.schorgere@gmail.com
What data the app accesses
When you install OptionForge on your Shopify store, the app accesses only the data it needs to provide its features. Specifically:
- Store information — your shop domain and basic store details provided by Shopify when the app is installed, used to identify your store and connect it to your OptionForge account.
- Product data — your products and their details, so you can assign option sets to specific products and so the widget can display the correct options on your product pages. The app requests the
read_productsandwrite_productspermissions for this purpose. - Cart and order line metadata via the Cart Transform — when a shopper selects options on a product page, the choices they made and any associated add-on price are passed to the Cart Transform Function so the surcharge is applied to the cart line at checkout. The selected options and add-on then appear on the order in your Shopify admin. The app requests the
write_cart_transformspermission for this purpose.
OptionForge does not collect or store end-customer personal information beyond the option choices and configuration that you, the merchant, set up. The app does not build customer profiles, and it does not store shopper names, email addresses, payment details, or other end-customer personal identifiers. The option values a shopper enters (for example, a name to be engraved or a note) are transmitted as part of the cart and order so they appear on the order in your admin, but they are handled to fulfill the order and are not used for any other purpose.
Where your data is processed and hosted
OptionForge is hosted on a dedicated server provided by OVH, located in the European Union (France). Application data is stored in a PostgreSQL database on that server. Data processed by the app is kept within the EU.
Shopify remains the source of record for your store, products, and orders, and Shopify processes data in accordance with its own privacy practices.
Shopify GDPR mandatory webhooks
OptionForge implements the mandatory Shopify GDPR webhooks and responds to them as follows:
customers/data_request— when a store owner requests the data an app holds about a specific customer, this webhook is delivered to OptionForge. Because OptionForge does not store end-customer personal information beyond the merchant-configured option data described above, we have no separate customer data store to export.customers/redact— when a store owner requests deletion of a specific customer’s data, this webhook is delivered to OptionForge. Because OptionForge does not maintain a separate store of end-customer personal information, we have no separate customer data store to delete in response to this request.shop/redact— this webhook is sent by Shopify approximately 48 hours after an app is uninstalled. On receipt, OptionForge deletes the store’s data from its systems.
Data deletion on uninstall
When you uninstall OptionForge from your store, Shopify immediately revokes the app’s access to your store. Shopify then sends the shop/redact webhook approximately 48 hours after uninstall, and on receipt of that webhook OptionForge deletes your store’s data from its systems. This includes your option sets, product assignments, and store configuration held by the app.
Data retention
OptionForge retains store data only for as long as the app is installed and needed to provide its features. When the app is uninstalled, your store’s data is deleted upon receipt of the shop/redact webhook that Shopify sends approximately 48 hours after uninstall, as described above. We do not retain your store data longer than necessary for the purposes described in this policy or as required to comply with applicable law.
Merchant rights
As a merchant using OptionForge, you can:
- Access — request a copy of the data the app holds about your store.
- Deletion — request deletion of your store’s data. Uninstalling the app leads to deletion of your store data upon receipt of the
shop/redactwebhook Shopify sends after uninstall, and you may also contact us directly to request deletion. - Correction — request correction of inaccurate data the app holds about your store.
To exercise any of these rights, contact us at robin.schorgere@gmail.com. Depending on your location, you may have additional rights under applicable data protection laws, including the EU General Data Protection Regulation (GDPR).
Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page. Continued use of the app after an update means you accept the revised policy.
Contact
For any questions or requests regarding this Privacy Policy or your data, contact us at: robin.schorgere@gmail.com