Who We Are
SeoQuill is a Shopify application that generates AI-powered product descriptions and SEO metadata for Shopify merchants. Our app is available at apps.shopify.com/seoquill. This policy explains what data we access, why, and how we protect it.
Website Analytics
With your consent, seoquill.app uses Google Analytics 4 to understand website traffic, page engagement, and which calls to action lead visitors to the Shopify App Store. Google Analytics may collect session statistics, approximate location, and browser and device information, and uses a first-party cookie to distinguish visitors and sessions.
Analytics is disabled by default and the Google tag is not loaded unless you select “Accept analytics.” We do not send names, email addresses, Shopify store data, or other directly identifying information to Google Analytics. You can decline analytics or change your choice at any time through “Cookie settings” in the website footer.
What Data We Access
When you install SeoQuill, we request access to your Shopify store through Shopify's official OAuth. We access only what is required to generate content:
- Product data — titles, descriptions, images (for Vision AI), vendor, product type, and tags
- Collection data — collection titles and descriptions
- Shop metadata — store name and primary language
We do not access customer data, order history, payment information, or any other store data beyond what is listed above.
How We Use Your Data
- To generate product descriptions and SEO metadata using AI
- To perform product-related web searches when you explicitly enable Market Research
- To track your credit usage and enforce plan limits
- To write approved content back to your Shopify store (only when you explicitly click Save)
We do not sell, rent, or share your store data with third parties beyond the AI provider required to generate content.
Data Storage
We store the minimum necessary data in a secure PostgreSQL database hosted on Supabase (EU region). This includes your Shopify access token (encrypted), your plan and credit balance, and generation logs. Product content sent to our AI provider for generation is not retained by us beyond the request lifetime.
Access tokens are stored using Supabase Vault (encrypted at rest). We do not log or cache product descriptions on our servers after generation.
Third-Party Services
- AI Provider — Product data (title, description, images) is sent to our AI provider's API to generate content. When you enable Market Research, relevant product information may also be used to perform web searches for additional context. We use the API in a way that does not allow the provider to use your data for model training.
- Shopify — We operate within Shopify's partner ecosystem and comply with the Shopify Partner Program Agreement.
- Railway — Our application backend is hosted on Railway (US region).
- Supabase — Our database is hosted on Supabase (EU region) with encryption at rest.
- Google Analytics — When a website visitor consents, we use Google Analytics 4 to measure website traffic and interactions. Analytics remains disabled when consent is declined.
GDPR & Your Rights
If you are based in the European Economic Area (EEA), you have the following rights under GDPR:
- Access — Request a copy of the data we hold about your store
- Erasure — Request deletion of your store data
- Portability — Request your data in a structured, machine-readable format
- Objection — Object to processing of your data
To exercise any of these rights, email us at support@tryseoquill.com. We comply with Shopify's mandatory GDPR webhooks for customer data requests and shop data deletion.
Data Retention
We retain your store's access token and usage data for as long as your store has SeoQuill installed. When you uninstall the app, we receive a Shopify uninstall webhook and delete your access token within 24 hours. Generation logs are retained for 90 days for debugging purposes, then purged.
Security
We follow industry-standard security practices: HTTPS-only communication, encrypted credentials, HMAC verification for all Shopify webhooks, and rate limiting per store. No customer or order data is ever accessed or stored.
Changes to This Policy
We may update this policy as the app evolves. Material changes will be communicated via the Shopify Partner Dashboard. The "Last updated" date at the top of this page always reflects the current version.
Contact
Questions about this policy? Email us at support@tryseoquill.com or visit our contact page. We respond within one business day.