Douple
Privacy Policy
This Privacy Policy explains how Douple (“we”, “us”, “our”) collects, uses, and shares information when merchants install and use the FeedHat Shopify app (the “App”). By installing or using the App, you agree to this policy.
1. Who we are
Douple operates FeedHat, a Shopify application that lets customers mark issues on a screenshot of a storefront page and lets merchants review those notes in the Shopify admin.
Contact: support@douple.net
2. Information we collect
We process information needed to provide the App:
- Shop information — shop domain, Shopify shop ID, and installation/session data required for authentication.
- Feedback submissions — the note, optional title, page URL, annotation pins, status, and a screenshot of the page. Screenshots are stored in our application database (as image data or a file URL).
- Reporter details — a name and email address only if the person submitting feedback types them into the widget. These fields are optional.
- Device and visit context — browser, operating system, screen and viewport size, user agent, referrer, landing URL, UTM parameters, locale, and timezone sent with the submission.
- Merchant settings — button appearance, targeting, notification addresses, webhook URLs, assignee routes, and similar configuration you save in the App.
- Brand files — if you upload a white-label logo, we store that file in your Shopify Files so the storefront can load it.
- Billing information — subscription plan status is handled by Shopify Billing. We do not store your payment card details.
The App does not pull Shopify customer accounts by default. A customer’s name or email reaches us only when they type it into the feedback form.
3. How we use information
- Authenticate the App and keep your session secure
- Show the feedback button, accept submissions, and display them in your admin inbox
- Email you about a new note when you turn notifications on, using our email provider
- Send a submission payload to a webhook URL you configure (for example Slack or Discord)
- Process subscription billing through Shopify
- Respond to support requests and improve the App
- Comply with legal obligations and Shopify’s mandatory privacy webhooks
We do not sell personal information.
4. How information is stored and shared
- App hosting — sessions, settings, and feedback (including screenshots and optional reporter name and email) are stored in our application database, hosted with our cloud providers (for example Vercel and our database provider).
- Shopify — authentication, billing, theme app embed, and uploaded brand logos in Shopify Files stay on Shopify’s platform. Shopify’s own privacy terms apply to that data.
- Email — when merchant notifications are enabled, we send mail through Resend. The message can include the note, page URL, and reporter name or email if the visitor provided them.
- Webhooks — if you add a webhook URL, we POST submission details to that address. You control that destination.
- CAPTCHA — if you enable bot protection, the storefront loads Cloudflare Turnstile and we verify the token with Cloudflare using the keys you save.
- We may use infrastructure subprocessors solely to host and operate the App. They process data on our instructions and are not permitted to use it for their own marketing.
5. Cookies and similar technologies
The embedded App admin uses session cookies or tokens required for Shopify authentication (including session tokens via App Bridge). We do not use third-party advertising cookies in the App.
6. Data retention and deletion
- Feedback and settings stay until you delete them in the App, or until a deletion event below runs.
- On uninstall, if “delete data on uninstall” is enabled, we delete that shop’s feedback, settings, and sessions. If it is off, we delete sessions and keep shop data until a later redact request.
- When Shopify sends a
shop/redactwebhook, we delete the feedback, settings, and session records we store for that shop. - When Shopify sends a
customers/redactwebhook, we clear reporter name and email stored on feedback for that shop. - We acknowledge Shopify’s
customers/data_requestwebhook. Reporter name and email are the customer personal data we may hold, and only when someone typed them into the form.
7. International transfers
Our hosting providers may process data in the United States or other countries. By using the App, you understand that information may be transferred to and processed outside your country of residence, with appropriate safeguards where required.
8. Security
We use measures appropriate to a Shopify embedded app, including HTTPS, Shopify session authentication, and access limited to necessary staff and systems. No method of transmission or storage is completely secure.
9. Children’s privacy
The App is intended for merchants operating Shopify stores. It is not directed to children under 16, and we do not knowingly collect children’s personal information.
10. Your rights and choices
Depending on your location, you may have rights to access, correct, or delete certain information we hold. Merchants can delete feedback in the App, uninstall the App, or contact us at support@douple.net. Shopify also provides account and data tools for your store.
11. Changes to this policy
We may update this Privacy Policy from time to time. The “Last updated” date at the top will change when we do. Continued use of the App after changes means you accept the updated policy.
12. Contact
Questions about privacy or this policy:
Douple · support@douple.net
App: https://feedhat.douple.net