Skip to main content
Account Canvas processes data only to provide, secure, support, and maintain the merchant-configured customer account experience and to meet applicable obligations. It does not sell personal data or use it for cross-merchant behavioral advertising.

Retention summary

  • Workflow submissions and linked analytics: normally 45 days.
  • Local operational issue records: 30 days.
  • Expired online authentication sessions: removed by the recurring retention process. Offline credentials can be retained for authorized background access and refresh.
  • Merchant-authored content: retained until merchant deletion or Shopify’s final shop-redaction request after uninstall.
An authorized case-specific hold can preserve one workflow submission for an active support, security, merchant-request, or legal case. A hold cannot extend more than 90 days from the first hold and never overrides a Shopify customer or shop redaction request.

Privacy requests

Customers should contact the Shopify merchant that controls their account. Account Canvas supports Shopify’s mandatory customer data request, customer redaction, and shop redaction webhooks. Customer exports are generated for an authenticated merchant and are not returned in the webhook response. The encrypted request scope expires after 30 days. Customer redaction removes matching local workflow submissions and related analytics. Verified shop redaction removes shop-owned Account Canvas data. Ambiguous installation state or unresolved external copies may require reconciliation; contact support about an outstanding request rather than assuming cleanup has finished.

Service providers

Account Canvas relies on Shopify and a limited set of infrastructure, email, monitoring, website, and documentation providers. See the complete Privacy Policy, Terms of Use, and Subprocessors list. For privacy assistance, email support@accountcanvas.app. Do not send passwords, access tokens, payment card data, or unredacted customer records by email. See install and uninstall for removal and reinstall guidance, and workflows and forms for the difference between a stored submission, a Shopify field write, and a notification.