Prepaid Pass logoPrepaid Pass
Home

Privacy & data use

This policy explains what data Prepaid Pass collects, how it is used to run prepaid pass programs, where it is stored, how long it is kept, and the choices available to merchants and their customers. Prepaid Pass only processes data needed to sell and redeem prepaid passes in a merchant's store.

Last updated: June 4, 2026

Information we collect through Shopify's APIs

Prepaid Pass keeps a small ledger in its own database so that purchases, redemptions, refunds, and transfers stay accurate over time. This information is read from Shopify's APIs and is scoped to each merchant's shop.

  • Store session — the shop domain, the offline access token Shopify issues to the app, the granted permission scopes, and (while a staff member is signed in) their name and email. Tokens are used only to call Shopify on the merchant's behalf.
  • Customers — the Shopify customer ID of each customer who buys or holds a prepaid pass. We do not store name, email, or other information.
  • Passes & balances — each purchased pass, its remaining balance or quantity (stored as whole cents), eligibility, and a snapshot of the campaign it came from.
  • Transaction ledger — one row per purchase, consume, refund, transfer, or adjustment, including the related order name and line item references used to reconcile activity.
  • Webhook delivery records — short-lived identifiers used to process each Shopify webhook exactly once.

Information we collect directly

  • From the merchant — the pass campaign settings you configure inside the app (such as prices, eligibility, and pass defaults). We do not ask you for separate contact details; the staff name and email above come from your Shopify session, not from a form.
  • Operational logs — we generate automated logs (for example, webhook processing and error logs) to keep the app running and to diagnose problems. These can include your shop domain and related identifiers, and are used only to operate and support the app.
  • From your customers' devices — none. Prepaid Pass does not set cookies, pixels, or other tracking technologies on your customers' devices, and it does not log how customers browse your storefront. Pass balances shown on your storefront are read from Shopify metafields, not collected from the customer's browser.

How we use it

  • Create and sync the Shopify automatic discount that represents each pass campaign.
  • Apply prepaid pricing at checkout through Shopify's discount function.
  • Record every purchase, redemption, refund, and customer transfer so balances stay correct.
  • Mirror each customer's current pass state to a Shopify customer metafield so the storefront can display balances and eligibility.

We do not sell merchant or customer data, and we do not use it for advertising. We share data with Shopify through its official APIs, and with the service providers that host and operate the app (such as our cloud hosting and database providers). This public page also loads fonts from Google Fonts.

Where data is stored & international transfers

Prepaid Pass is operated from Mexico, and the app and its database are hosted on cloud infrastructure located in the United States. As a result, personal data is processed outside the European Economic Area (EEA) and the United Kingdom. Where data originates from those regions, we rely on appropriate data-transfer safeguards (such as standard contractual clauses) with our service providers, in addition to the protections in your agreement with Shopify.

Retention & deletion

When the app is uninstalled, the stored access token and staff contact details are cleared immediately, and active campaigns are returned to draft. Configuration and ledger history are then kept for a limited window (about 30 days by default) so a reinstall can pick up where the merchant left off, after which a background cleanup permanently deletes them. Webhook delivery records are pruned on a similar schedule (about 90 days by default).

Shopify privacy requests

Prepaid Pass honors Shopify's mandatory privacy webhooks. A customer data request is acknowledged but does not trigger an automatic export — the merchant can review everything we hold for that customer in the app's Customers section. A customer redaction removes the order identifiers tied to that customer's transaction history. A shop redaction permanently deletes all data for that store.

Data rights of individuals

Depending on where they live, individuals may have the right to access, correct, erase, or restrict the processing of their personal data. The merchant is the controller of their customers' data. If a customer asks to access or delete their information, the merchant can submit the request from their Shopify admin under Settings → Customer privacy, and Prepaid Pass will respond to the resulting Shopify privacy webhook automatically. Merchants can also exercise these rights for their own store data, or ask us for help, using the contact details below.

Contact us

If you have questions about this policy or want to make a privacy request, contact us at tuemeg@gmail.com. Prepaid Pass is operated from Mexico.

Prepaid Pass logoPrepaid Pass
Home
© 2026 Prepaid Pass. All rights reserved.