HideKit Privacy Policy
Last updated: August 1, 2026
HideKit ("the app") helps Shopify merchants hide, rename, and reorder payment methods and shipping options at checkout. This policy explains what data the app handles and how.
Data we store
- Shop authentication sessions. When you install the app we store an OAuth access token and shop domain so the app can operate on your store. This is the only data stored on our servers.
- Your rule configuration. Rules are stored as metafields inside your own Shopify store, not in our database. Uninstalling the app removes the app-owned metafields and customizations via Shopify's standard cleanup.
Customer data
The app's checkout functions read buyer identity fields provided by Shopify (such as shipping country, cart totals, customer tags, and total spent) solely to evaluate the rules you configure. This data is processed transiently inside Shopify's Functions infrastructure and is never transmitted to, stored on, or accessible from our servers. We do not collect, sell, or share personal data of your customers.
GDPR requests
The app implements Shopify's mandatory privacy webhooks. Customer data requests and redaction requests complete immediately because no customer data is stored. Shop redaction removes stored session records for the shop.
Third parties
The app is hosted on Vercel with a Neon (PostgreSQL) database, which store only the session records described above. No analytics or advertising trackers are embedded in the app.
Contact
Questions about this policy or data handling: thoopring@gmail.com