Privacy Policy: ShipEdit
Last updated: July 29, 2026
This Privacy Policy explains how CNR Consulting Services, Inc.
(“CNR,” “we,” “us,” or “our”) collects, uses, and shares information when you use
the ShipEdit Shopify application (the “App”).
ShipEdit lets a merchant’s customers update a shipping address or cancel an
order before fulfillment, under rules the merchant configures. This policy
covers the App. It does not replace your store’s own privacy policy, or
Shopify’s.
1. Roles
-
Merchants install ShipEdit and decide whether customers
may change addresses or cancel, and under what time window.
-
Customers use ShipEdit only on the merchant’s store
(for example on the thank-you or order status page).
-
For customer order and shipping data processed so the App can perform an
edit or cancel, the merchant is the controller (or
equivalent under applicable law). We process that data
on the merchant’s behalf to provide the App.
-
We are the controller of merchant account data we need to operate the
App (for example shop identity, App settings, and support messages you
send us).
2. Information we process
From the merchant / Shopify install
- Shop domain and Shopify authentication credentials needed to call the Shopify Admin API for that shop
- Merchant App settings (edit window, feature toggles, order tag names)
- Subscription / billing status as provided by Shopify for the App
-
Support messages you send through the in-app help form (subject, message,
and related shop / staff context)
From customer use of ShipEdit
-
Order identifiers and order name needed to locate and update the correct
order
-
Shipping address details the customer submits when requesting an address
change (applied to the order in Shopify)
-
Activity log entries for the merchant: shop, order id, order name, action
type (address change or cancel), timestamp, and a short summary of the
new address (for address changes)
We do not sell personal information. We do
not use customer data for advertising or for profiling
unrelated to providing ShipEdit. We do not need payment card numbers to
run address changes or cancellations; payments and refunds stay with
Shopify and the merchant’s payment providers.
3. How we use information
- Authenticate the merchant’s store and keep the App installed and working
- Enforce the merchant’s rules before allowing an address change or cancel
- Update or cancel the order in Shopify at the customer’s request
- Show the merchant an activity log of ShipEdit actions in the embedded admin
- Respond to support requests and operate billing for the App
- Comply with law and with Shopify’s mandatory privacy / compliance webhooks
4. Sharing
We share information only as needed to run the App:
-
Shopify: to authenticate, read order eligibility, and
perform order updates or cancellations
-
Service providers that host or deliver the App and
related email under agreements that limit use of the data
-
Authorities when required by law, or to protect rights,
safety, and security
We do not sell or rent merchant or customer personal information.
5. Retention and deletion
-
Shop sessions, settings, and activity logs for a shop are deleted when
the App is uninstalled. A billing snapshot (including paid-through date)
may be retained after uninstall so a reinstall can honor the remainder of
a paid period; billing is deleted when Shopify sends the mandatory
shop/redact webhook.
-
We honor Shopify’s compliance webhooks. On
customers/data_request, we email the merchant (or our
support inbox if the shop email is unavailable) any ShipEdit activity
log rows for the requested orders. On
customers/redact, we delete those activity rows for the
listed orders. We do not delete the merchant’s Shopify order records.
The lasting record of an address or cancel typically remains on the
Shopify order unless the merchant or Shopify deletes it.
shop/redact deletes remaining App data for that shop,
including billing.
-
Support emails may be retained as long as reasonably needed to handle
your request and keep ordinary business records.
6. Merchant responsibilities
Merchants are responsible for:
- Maintaining a storefront privacy policy that covers how they use customer data
-
Informing customers that they can change a shipping address or cancel
through ShipEdit when those features are enabled
-
Using the App in line with applicable law and Shopify’s terms and
policies
7. Your rights
Depending on where you live, you may have rights to access, correct,
delete, or restrict processing of personal information, or to object to
certain processing. Merchants and their customers should generally start
with the merchant (and Shopify) for store and order data. For data we
control as App provider, contact us using the details below. We may need
to verify the request and will respond as required by applicable law.
8. Children
ShipEdit is for Shopify merchants and their customers in the ordinary
course of commerce. It is not directed at children under 13, and we do not
knowingly collect personal information from children under 13.
9. International processing
Information may be processed in the United States or other countries where
we or our service providers operate. Where required, we use appropriate
safeguards for cross-border transfers.
10. Changes
We may update this Privacy Policy from time to time. The “Last updated”
date at the top will change when we do. Continued use of the App after an
update means you accept the revised policy.
11. Contact
Privacy and support questions about ShipEdit:
Email:
help@partyplansolutions.com
CNR Consulting Services, Inc.