This policy covers the Mowz apps for Shopify. It is written for the merchants who install them. It says what we collect, why, who else sees it, and how to make us delete it.
Tech2Change BV, a private limited company registered in the Netherlands, is the data controller for everything described here. Mowz is Tech2Change BV's brand and the name its Shopify apps are published under; it is not a separate legal entity.
Write to us at info@mowz.nl about anything on this page, including a request to see or delete what we hold.
| App | Permissions it asks Shopify for |
|---|---|
| Mowz Countdown Timer Bar | read_themes |
| Mowz Delivery Deadline | read_themes |
| Mowz Product Labels & Badges | read_themes, read_products, read_inventory |
None of them asks for access to customers, orders, checkouts or payments. We could not read your shoppers' personal data if we wanted to, and we do not want to. Where this policy says "no customer personal data", that is what enforces it.
Your myshopify.com domain, the access token Shopify issues when you
install, and the permissions you granted. This is what lets the app talk to your
store at all.
Whatever you configure: the text of a countdown bar and when it ends, cutoff times and transit days, label rules and which badge they show. Settings are stored against your store, and separately for each app — the three apps do not share a database between them.
read_themes lets us read the settings file of your published theme for
one purpose: to tell you, on the app's first screen, whether the Mowz app embed is
switched on in the theme your customers actually see, and to name that theme. It is
the difference between "the widget isn't showing" being a support ticket and being a
sentence on screen. We read; we never write to a theme, and we do not read any other
theme file.
Mowz Product Labels & Badges reads product and inventory data so a label rule such as "on sale" or "out of stock" can be evaluated. That is product data, not customer data.
We record five things, each as a store domain plus a timestamp: an install, an uninstall, the first time a bar, block or label goes live, a daily note of whether the app is still configured, and a click on a "Pro waitlist" button. We use them to decide whether these apps are worth continuing. They contain nothing about your shoppers and nothing about what you sell.
The Mowz storefront widgets run entirely inside your own theme. They make no request to any host other than your own domain and Shopify's CDN — not a font, not an icon, not an analytics ping. They set no cookie, they read no cookie, and they send us nothing. We receive no data about the people who visit your store, and we do not track them across sites.
We do not sell your data. We do not use it for advertising, and we do not share it with advertisers or data brokers. We do not use it to train anything. We do not profile you or your shoppers, and nothing here makes an automated decision about anyone.
Each Mowz app includes a live-chat window inside the Shopify admin, provided on our behalf by Crisp IM SAS (Nantes, France). Tech2Change BV is the data controller; Crisp is a processor acting on our instructions under the data processing agreement in its terms of service. The chat window loads only in the app's admin pages — never on your storefront — so it is never shown to your customers and processes no shopper data.
When you open a chat we send Crisp your myshopify.com store domain,
which of our apps you are writing from, and that app's version, so that we can help
you without asking you to repeat it. Crisp also processes what you write to us, your
email address if you give one, and the technical information a chat widget receives
from your browser — IP address, browser and device details, and cookies or similar
local storage set by the chat window in your browser. We process this to provide and
support the app you have installed. We use it to answer your question and to keep a
record of the conversation; we do not use it for advertising and we do not sell it.
We keep support conversations for up to 12 months after your last message, and delete them sooner on request. Crisp hosts its core infrastructure in the European Union and publishes its list of sub-processors. To ask what we hold about you, or to have it deleted, write to info@mowz.nl.
These are our processors. They act on our instructions and for no other purpose.
| Processor | What it does for us | Where |
|---|---|---|
| Google Cloud (Google Ireland Ltd / Google LLC) | Runs the app servers | United States (us-east1) |
| Neon Inc. | Hosts the database holding your settings | United States (AWS us-east-1) |
| Crisp IM SAS | The admin live-chat window — see §6 | France / European Union |
| Cloudflare, Inc. | Serves this website and mowz.nl's DNS | Global network |
| Shopify International Ltd | Your store, and the platform the apps run on | Per Shopify's own terms |
Our app servers and database are in the United States. What sits there is your store domain, your app settings, and the usage events in §3 — no customer personal data, because we never receive any. Those transfers are covered by the standard contractual clauses in our agreements with Google Cloud and Neon.
| What | How long |
|---|---|
| Your access token and session | Deleted when you uninstall |
| Your app settings | Deleted when Shopify tells us your store has been redacted, which is normally 48 hours after uninstall |
| Support conversations | Up to 12 months after your last message — see §6 |
| Usage events (store domain, event, timestamp) | Up to 24 months |
Anything on this list is deleted sooner if you ask.
Shopify requires every app to answer three mandatory privacy requests. All three of ours are registered and answer:
| Request | What we do |
|---|---|
customers/data_request | We hold no personal data about your customers, so there is nothing to return. We log the request so the answer is auditable. |
customers/redact | Nothing to erase, for the same reason. Logged. |
shop/redact | We delete everything the app holds for your store. |
Under the GDPR you can ask us for a copy of what we hold about you, ask us to correct it or delete it, ask us to restrict or stop a particular use, and ask for it in a portable form. Write to info@mowz.nl and we will answer within one month.
If you think we have handled your data badly you can complain to the Dutch data protection authority, the Autoriteit Persoonsgegevens, or to the supervisory authority where you live.
If we change what we collect or who processes it, we update this page and the date at the top. Material changes are announced in the app.