VarSortPrivacy Policy
Last updated: September 1, 2026
1. Introduction
This Privacy Policy describes how VarSort (“the App”), operated by Jedi Apps (“we”, “us”, or “our”), collects, uses, and shares information when merchants install the App on their Shopify store.
VarSort reorders product variants automatically using the rules and schedules a merchant configures — for example, moving sold-out sizes or colours to the end of the variant list. By installing or using the App, you agree to the collection and use of information as described in this policy.
2. Information We Collect
When the App is installed, we access certain Shopify store data through the permissions (scopes) granted during installation, and we store the automations you create in the App:
- Store information: your shop domain, store name, and the authentication tokens required for the App to communicate with Shopify on your behalf, along with the name and email address of the store staff account that installs or uses the App.
- Product, variant, and inventory information: products and their variants, together with inventory levels and locations, read so the App can evaluate your sorting rules and write the resulting variant order back to your products.
- Automation configuration: the automations you build — name, status, priority, product selection, rule stack, and schedule — plus your app preferences.
- Run records: a history of each automation run, including trigger, status, timestamps, and counts of products scanned, matched, and sorted, so you can see what the App changed and troubleshoot it.
We store no customer or order data. The App does not request access to customers or orders, and it holds no personal information about your shoppers.
We do not collect or store payment or credit card information. Payments are handled entirely by Shopify.
3. How We Use Your Information
We use the information we collect to:
- provide the App’s core functionality — evaluating your rules against your products and variants, and reordering variants on the schedule you set;
- display your automations, run history, and results in Shopify admin;
- respond to support requests and troubleshoot issues; and
- improve the reliability and performance of the App.
We do not sell, rent, or trade your data, and we do not use it for advertising or marketing to your customers.
4. Data Storage and Security
Automation, run, and session data are stored in a secured database operated by us. All data is transmitted over encrypted connections (HTTPS/TLS), and access to production systems is restricted to authorized personnel who need it to operate and support the App.
While we take commercially reasonable measures to protect your information, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
5. Data Sharing and Disclosure
We only share information in the following limited circumstances:
- Service providers: with infrastructure providers (such as cloud hosting and database services) strictly as needed to run the App;
- Shopify: data flows between the App and Shopify as required for the App to function; and
- Legal requirements: when required to comply with applicable law, regulation, legal process, or enforceable governmental request.
6. Data Retention and Deletion
We retain store, automation, and run data for as long as the App is installed on your store. When you uninstall the App, Shopify notifies us through its mandatory privacy webhooks, and we delete the store’s data within the timeframes Shopify requires:
- Customer data requests and erasure — because the App stores no customer data, there is nothing to compile or erase for these requests beyond confirming that fact;
- Shop data erasure — after uninstallation, Shopify issues the shop redact request and we delete every automation, run record, and setting held for your store.
Merchants can also request deletion of their data at any time by contacting us directly.
7. Your Rights
Depending on where you are located, you may have rights under data protection laws such as the GDPR (European Economic Area / United Kingdom) or the CCPA (California), including the right to:
- access the personal information we hold about you;
- request correction of inaccurate information;
- request deletion of your personal information; and
- receive a copy of your data in a portable format.
To exercise any of these rights, contact us using the details below. If you are a customer of a store using VarSort, note that we hold no personal information about you — the App works only with product and variant data.
8. Cookies
The App uses session tokens and strictly necessary cookies solely to authenticate merchants inside Shopify admin and keep the App working securely. We do not use advertising, analytics, or cross-site tracking cookies in the App.
9. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in the App or in applicable law. When we do, we will revise the “last updated” date at the top of this page. Significant changes will be communicated to merchants through the App or by email.
10. Contact Us
If you have questions about this Privacy Policy or how your data is handled, contact us at support@jediapps.com.