Loyalty & Rewards by Ecombone
Privacy Policy
Last updated: September 11, 2026
Loyalty & Rewards by Ecombone (“the App”) is a Shopify app that lets merchants run a loyalty program: customers earn points, reach VIP tiers and redeem rewards. This policy explains what information the App collects, why, who it is shared with and how it is deleted. It covers merchants who install the App and the customers of their stores.
Who is responsible for the data
The merchant who installs the App decides how its loyalty program works and is the controller of their customers’ personal data. Ecombone (“we”, “us”) processes that data on the merchant’s behalf and only to provide the App. If you are a customer of a store and have a question about your data, please contact that store first. We will help the merchant respond.
Information we collect
About the merchant’s store
- Store domain, store currency and the access token Shopify issues when the App is installed.
- Loyalty program settings: ways to earn, rewards, VIP tiers, surveys and plan.
- Credentials for integrations the merchant chooses to connect, such as a Klaviyo API key or a Judge.me token. These are encrypted before they are stored.
We do not store the names or email addresses of store staff.
About the store’s customers, received from Shopify
- Customer ID, name, email address and customer tags.
- For each order: order ID, order total, currency, date and the discount codes used. We use these to calculate points, attribute referrals and mark rewards as used.
Created or provided while using the program
- Points balance, points history, VIP tier, rewards redeemed and discount codes issued.
- Birthday (day and month, and year if the customer provides it), used to send a birthday bonus.
- Answers to surveys the merchant publishes, if the customer chooses to respond.
- A phone number, only if the customer subscribes to SMS marketing from their account. It is passed to Shopify together with the customer’s consent and is not stored by the App.
- The email address on a Judge.me review, if the merchant connects Judge.me, used only to match the review to a customer and award points.
Technical information
When something fails, we record an error report with the store domain, the page or feature involved and, for customer-facing errors, the customer’s numeric ID. Error reports are deleted after 30 days without recurrence.
What we do not collect
We do not collect addresses, payment details or the products in an order. The App does not use advertising or analytics cookies and does not track customers across websites.
How we use information
- To run the loyalty program: award and adjust points, assign VIP tiers, create discount codes and store credit, and send birthday bonuses.
- To show the program to the merchant in the Shopify admin and to customers in their account and on the store.
- To keep points and tier information up to date on the customer record in Shopify (customer tags and metafields).
- To send loyalty events to the integrations the merchant has enabled.
- To bill the merchant through Shopify. Usage reports contain only order counts, never customer information.
- To keep the App secure and working: rate limiting, fraud prevention and troubleshooting.
We do not sell personal data, use it for advertising or use it to train artificial intelligence models.
Who we share information with
- Shopify, to read orders and customers, create discounts and store credit, and handle billing.
- Vercel, which hosts the App (servers in Dublin, Ireland).
- Supabase, which hosts the App’s database (servers in Ireland).
- Klaviyo, only if the merchant connects it: customer ID, email address, points, tier and loyalty events such as a tier upgrade or a referral.
- Judge.me, only if the merchant connects it. The App receives review notifications from Judge.me and does not send it customer data.
We may also disclose information if required by law or to protect the rights, property or safety of our users.
International transfers
Data is stored in the European Union (Ireland). Where a service provider processes data outside the European Economic Area, the transfer is covered by appropriate safeguards such as the European Commission’s Standard Contractual Clauses.
Security
All traffic is encrypted with HTTPS/TLS and the database is encrypted at rest. Integration credentials are additionally encrypted with AES-256-GCM. Each store’s data is kept separate from every other store, requests from Shopify are verified, and access to production systems is limited and protected with two-factor authentication.
Retention and deletion
- Loyalty data is kept while the merchant uses the App, because a points balance is a commitment to the customer and the history is its record.
- When the App is uninstalled, the program is paused. When Shopify sends its store deletion request, 48 hours after uninstalling, we permanently delete all data belonging to that store.
- When a merchant or customer asks Shopify to erase a customer’s data, we delete that customer’s personal data, including survey answers.
- When a customer asks for a copy of their data, we prepare their profile, points history, redemptions and survey answers for the merchant to provide.
Your rights
Depending on where you live, including under the GDPR and the CCPA, you may have the right to access, correct, delete or receive a copy of your personal data, and to object to or restrict its processing. You may also complain to your local data protection authority. Customers should contact the store where they are a member. Merchants can contact us directly.
Children
The App is not intended for children, and we do not knowingly collect personal data from children.
Changes to this policy
We may update this policy when the App changes. The date at the top shows the latest version. We will notify merchants of significant changes by email.
Contact
For privacy questions or requests, email info@ecombone.com.