Privacy Policy
Last Updated: December 10, 2025
1. Introduction
Semantic Devs (“we”, “us”, “our”) is committed to protecting your personal information and your business data. This Privacy Policy explains how we collect, use, and share information when you install or use our applications (the “Apps”)—including Semantic Vision, ComplianceGuard AI, and KeyDispatch—through the Shopify App Store or other platforms.
2. Information We Collect
When you install our Apps, we access specific types of information to provide our AI and automation services:
2.1. Store Information (General)
We collect data required for account management and authentication:
- Shop Domain: Your primary URL (e.g.,
yourstore.myshopify.com). - Access Tokens: Encrypted keys (Online and Offline) used to authenticate API requests and background jobs.
- Contact Email: The primary email address associated with the store.
- Configuration Settings: Preferences you save within the Apps (e.g., daily scan schedules, alert toggles).
2.2. Product & Visual Data (Semantic Vision)
To provide image optimization and alt-text generation:
- Product Titles & Descriptions: Used as context for the AI.
- Image URLs: Fetched temporarily for analysis by our Vision Engine.
2.3. Compliance & Policy Data (ComplianceGuard AI)
To provide audit and policy generation services:
- Store Pages: We access the text content of “About Us,” “Contact,” and policy pages to verify compliance with Google Merchant Center guidelines.
- Theme Assets: We verify the presence of visual trust elements (e.g., payment icons, physical address in footer).
- User Inputs: Data you voluntarily enter into the Policy Generator (e.g., return window days, restocking fees).
2.4. Fulfillment & Order Data (KeyDispatch)
To automate the delivery of digital products:
- Customer Contact Info: We process the Name and Email Address associated with new orders to deliver digital goods.
- Order Details: We read Line Items (Product IDs and SKUs) to match purchased items with the correct license key in your inventory.
- Merchant Inventory: We store the license keys, serial numbers, or access codes you upload to the App’s database.
2.5. Analytics Data
We use Google Analytics to track anonymous usage patterns (e.g., button clicks, page load times) to improve performance. This data is aggregated and does not contain personally identifiable information (PII).
3. How We Process Your Data
We operate distinct processing models depending on which App you use:
3.1. Transient Processing (Semantic Vision)
For visual analysis, we do not permanently store your images:
- Fetch: We retrieve the public URL of your product image.
- Analyze: The image is passed to our AI Provider (Google Cloud) for immediate analysis.
- Discard: Once the text description is generated, the image data is discarded from our processing memory.
3.2. Automated Auditing & Scraping (ComplianceGuard AI)
For compliance monitoring, we use automated background processes:
- Scraping: Our servers perform automated browser-based visits to your public storefront to capture screenshots and analyze HTML structures (footers, headers).
- AI Analysis: Text and structural data are sent to Google Gemini (Vertex AI) to assess trust factors and missing legal clauses.
- Storage: Unlike visual data, Audit Logs (results of scans) are retained in our database to provide you with a history of your compliance health.
3.3. Digital Fulfillment (KeyDispatch)
For the automated delivery of software or game keys:
- Event Trigger: We listen for the “Orders Paid” webhook from Shopify.
- Allocation: Our system searches your uploaded inventory for an available key, marks it as “SOLD,” and permanently links it to the specific Shopify Order ID to prevent duplicate sales.
- Dispatch: The assigned key and the customer’s email address are transmitted to our email service provider to send the delivery notification.
4. Data Sharing & Third Parties
We share data only with the infrastructure providers necessary to deliver the Service:
- Google Cloud Platform (Vertex AI / Gemini): For image analysis, text generation, and compliance auditing.
- Resend: For delivering transactional emails containing license keys (KeyDispatch only).
- Railway / AWS: For hosting our application logic and database.
- Redis Cloud: For managing background job queues.
- Shopify: We interact with Shopify’s APIs for billing and store data access.
We do not sell, trade, or otherwise transfer your personally identifiable information to outside parties for marketing purposes.
5. Data Retention & Removal
5.1. Retention Periods
- Account Metadata: Retained as long as the App is installed.
- Audit Logs (ComplianceGuard): Retained to display historical progress unless deletion is requested.
- Inventory Logs (KeyDispatch): We retain records of “Sold” keys linked to Order IDs permanently to ensure you maintain a valid transaction history for support and refunds. “Available” keys are deleted if you uninstall the app.
- Generated Policies: Policies generated by you are not permanently archived by us once you copy them to your store; they are processed temporarily.
5.2. Automatic Removal (Shopify)
If you uninstall an App, we receive a shop/redact webhook from Shopify within 48 hours. Upon receipt, our system automatically:
- Deletes your Access Token (severing our connection to your store).
- Marks your account as “Inactive” in our database.
5.3. “Right to be Forgotten”
You may request full deletion of all activity logs, audit histories, and generated content by emailing data@semanticdevs.com. We will process this request within 30 days in accordance with GDPR/CCPA regulations.
6. Changes to This Policy
We may update this privacy policy from time to time in order to reflect, for example, changes to our practices or for other operational, legal, or regulatory reasons.