Snaptare

Privacy policy

Last updated: 30 April 2026 · Effective: 30 April 2026

Snaptare is operated by Petitgen Ltd (registered in New Zealand). We're committed to protecting the privacy of merchants who install our Shopify app and the customers of those merchants. This policy explains what data we receive, what we store, what we don't store, and how to reach us with questions.

1. What Snaptare is

Snaptare is a point-of-sale application for Shopify merchants who sell products by weight. It runs on a tablet (iPad or Android), keeps the merchant's product catalog on the device for fast offline operation, and writes draft orders back to the merchant's Shopify store.

2. Data we collect from merchants

When a Shopify merchant installs Snaptare, we receive:

3. End-customer data — search-only, never stored

Snaptare uses Shopify's read_customers scope so the operator can attach a customer to a draft order at the till (for example, to link a regular's purchase to their Shopify customer record). When the operator searches for a customer, Snaptare proxies the live query to Shopify's Admin API and shows the matches. Search results are never cached on our backend or on the device — they vanish the moment the search modal closes. The only end-customer reference we persist is the Shopify customer ID attached to a saved draft order, which is what Shopify itself requires to link the order.

4. Data we do not collect

5. Data stored on the merchant's device

Snaptare's tablet PWA stores the following locally in the browser's IndexedDB: product catalog (read-only copy), in-progress cart drafts, saved tare presets, and a session token issued by our backend. None of this leaves the device unless the merchant explicitly sends a draft order to Shopify or signs out.

6. Where data lives

7. How long we keep data

We retain merchant data while the app is installed. When a merchant uninstalls Snaptare, Shopify sends an app/uninstalled webhook and the shop/redact compliance webhook (typically within 48 hours). On receipt, we hard-delete the merchant's row and all related rows in our Postgres within 7 days. We also remove cached webhook payloads from our audit log within 30 days.

8. Compliance webhooks (GDPR + CCPA)

We implement the three compliance webhooks Shopify requires:

9. Sub-processors

10. Your rights

Under GDPR (EU), CCPA (California), and equivalent regimes elsewhere, you may request access to, correction of, or deletion of your data. To exercise any of these rights, contact us at the address below. We respond within 30 days.

11. Changes to this policy

We may update this policy occasionally. Changes will be posted at this URL with a revised "Last updated" date. Material changes will be communicated via email to installed merchants where appropriate.

12. Contact

Petitgen Ltd
Email: [email protected] · [email protected]
For privacy-specific requests, please use the subject line "Privacy request".