This Privacy Policy applies specifically to Flourish Forms (the “App”), a form-builder application for Shopify stores published by Flourish Software Pvt Ltd. Each Flourish app has its own privacy policy; this one governs Flourish Forms only. It explains what data the App processes, why, who we share it with, and the rights available to merchants and their shoppers.
1. Roles & whose data this covers
- Merchant — the Shopify store owner who installs the App.
- Shopper — a person who submits a merchant’s form on the storefront.
For form submissions, the merchant is the data controller and Flourish is a data processor acting on the merchant’s documented instructions. For a merchant’s own account and billing data, Flourish is the controller.
2. Information we process
| Category | Examples | Why |
|---|---|---|
| Form definitions | Fields, labels, logic, and settings a merchant builds | To render forms and validate submissions |
| Form submissions | Answers a shopper enters — may include name, email, phone, message, and uploaded files, depending on the form the merchant built | So the merchant can view and act on them |
| Store identifier | The store’s myshopify.com domain | To scope and isolate data per store |
| Operational metadata | Hashed IP + user-agent on submissions, submission counts, form-view counts | Spam/abuse prevention and merchant analytics. We do not store raw IP addresses. |
| AI prompts (optional) | The text description and optional store-context note when a merchant clicks “Generate with AI” | To generate a form on request |
| Account & billing | Store contact details and subscription status provided by Shopify | To provision the App and manage plans |
We do not process Shopify customer records, order or checkout data, or payment card data. The App’s permissions are limited to app-owned metaobjects.
3. Purposes & legal bases
We process data to provide and operate the form builder; render forms; store and display submissions; send merchant notification emails; prevent spam and abuse; provide analytics to the merchant; and, only when a merchant triggers it, generate forms with AI. Where GDPR/UK GDPR applies, our legal bases are performance of a contract (providing the App to the merchant), legitimate interests (security, abuse prevention, and service improvement, balanced against your rights), and consent where required. For shopper submissions, the merchant is responsible for establishing the lawful basis and any required consent.
4. Sub-processors
We use the following providers to run the service. Each is bound by data-protection terms and processes data only to provide their service to us:
| Sub-processor | Purpose | Location |
|---|---|---|
| Google Cloud Platform / Firebase | Hosting, Cloud Functions, Firestore database, Cloud Storage (form definitions, submissions, files) | asia-south1 (Mumbai) |
| Google Gemini API | Processes AI-generation prompts only when a merchant clicks “Generate with AI.” Prompts are not used to train models via the API. | Google infrastructure |
| Resend | Delivers merchant notification emails | United States |
| Shopify | The platform the App runs on; signs storefront App Proxy requests | Per Shopify |
5. Data retention & deletion
- Form definitions and submissions are retained while the App is installed.
- On uninstall or a Shopify
shop/redactrequest, we delete the store’s data (forms, submissions, files) within 30 days. - We honour Shopify’s mandatory
customers/data_requestandcustomers/redactwebhooks: submissions matching a shopper are provided to, or erased for, the merchant on request. - Merchants can delete individual submissions in-app at any time.
6. Cookies & tracking
The storefront form does not set advertising or cross-site tracking cookies. The merchant admin uses only the cookies/tokens required to keep you signed in and secure the session. We do not sell personal information or share it for cross-context behavioural advertising.
7. Security
Data is encrypted in transit (TLS) and at rest (Google-managed encryption). Sensitive credentials are encrypted with app-managed keys. Access to production data is limited and authenticated, and every request is tenant-scoped so one store cannot read another’s data. No method is 100% secure; we operate to a small-blast-radius, fast-recovery model and will notify affected merchants of a breach as required by law.
8. Your rights
Depending on your jurisdiction (GDPR, UK GDPR, CCPA/CPRA, and others) you may have rights to access, correct, port, or delete personal data, and to object to or restrict certain processing.
- Shoppers should contact the merchant (the controller) whose form they submitted. We assist merchants in fulfilling these requests.
- Merchants can contact us at support@flourishsoftware.co.
9. International transfers
Data may be processed in India and in other regions where our sub-processors operate. Where required, transfers rely on appropriate safeguards such as Standard Contractual Clauses.
10. Children
The App is not directed to children under 16. Merchants must not use it to collect data from children without lawful consent.
11. Changes to this policy
We may update this policy; material changes will be posted on this page with a new effective date.
12. Contact
Flourish Software Pvt Ltd —
support@flourishsoftware.co
For data-protection enquiries, please put “Privacy — Flourish Forms” in the subject line.