Offerproof Privacy Policy

Effective date: September 8, 2026 (updated the same day to add email notifications)

Offerproof is a Shopify app operated by ReactiveWorks, a sole proprietorship registered in Seoul, South Korea (owner: SiU Ahn). It reads a store's discount configuration and reports discount settings that look risky. It is read-only: it never creates, edits or deletes anything in your store.

Contact for anything in this policy: siwooeo@gmail.com · https://www.reactiveworks.dev

What Offerproof reads from your store

Offerproof asks for two Shopify Admin API access scopes, read_discounts and read_products, and reads only what those allow:

  • Discounts. For each discount: its title, status, start and end dates, when it was created and last updated, its discount classes and combination settings, its usage count and usage limit, whether it is limited to one use per customer, its discount codes (the code strings and their usage counts), the value of the discount (a percentage or a fixed amount with its currency) and which products, variants or collections it applies to. It also reads the discount's event history entries far enough to tell whether an app created the discount, and the identity of that app (its name and handle).
  • Product variants that those discounts apply to: the variant and product identifiers, the variant's title, its price and its compare-at price.
  • Your store's currency code and your store's myshopify.com domain.
  • Your store's Shopify ID. Offerproof sends it to Shopify's Partner API to ask which of this app's plans your store is subscribed to; the answer (the plan, its billing period and any trial end date) decides whether the daily automatic scan runs for your store. That answer is kept in the app's memory for at most five minutes and is not written to the database.
  • An access token for your store, issued by Shopify when you install the app, with its scope and expiry. It is an offline token, so the daily scan can run without anyone being signed in.

What Offerproof does not read

Offerproof does not access customers, orders, draft orders, checkouts, fulfillments, shipping addresses, payment details or staff accounts. The app sends two query documents to Shopify for discounts and prices, plus one that reads only your store's ID, and none of them can select any of those; an automated test in the code base fails if one is ever added. The app does not request protected customer data, and it does not request staff (online) tokens, so it holds no staff names or email addresses.

The one thing you can type into Offerproof is an email address for notifications, and only if you choose to. It is stored for your store, used only to send you the emails described below, never read from your Shopify account, and never shared. There is no sign-up form and no account of the app's own, and nothing is collected from your customers.

What is stored, and for how long

  • Daily snapshots. Whenever you press Scan now, and once a day on the Pro plan, Offerproof stores one record for your store containing the discount and variant-price data listed above, as read that day. Snapshots are kept so the app can compare one day with the next and notice a jump in redemptions. Snapshots are retained while the app is installed; there is no separate time-based deletion.
  • Session. Your store's domain and the access token, with its scope and expiry.
  • Notification setting. The email address you typed, whether alerts are on, and a short list of which findings the last daily scan reported (rule, discount identifier, severity) so the next scan can tell what changed. Kept while the app is installed; deleted when you uninstall.
  • Emails Offerproof sends. When alerts are on (a Pro plan feature), one email after the daily scan on days when a finding is new or has become more severe; one confirmation email when you turn alerts on; and a test email whenever you press Send test email. Each email contains the discount titles involved, the check's name and what to look at, and a link to the app. No customer or order information ever appears in an email, because the app holds none. Emails are sent through Amazon Simple Email Service from noreply@reactiveworks.dev; the service records delivery metadata (the recipient address, timestamps and delivery status) for its own operation.
  • Server logs. Each daily scan writes one summary per store: the store's domain, the date, how many discounts and variant prices were read, how many findings by rule and severity, and any error message. Deliveries of Shopify's privacy webhooks are logged as the topic, the store domain and what was done — never the webhook payload. Logs do not contain discount titles, codes, prices or any customer information.

Data is stored in a database on a server operated by ReactiveWorks in Seoul, South Korea. It is not sold, rented or shared with anyone, and it is used for nothing other than showing you the report and running the daily scan.

Deletion

  • When you uninstall the app, Shopify notifies Offerproof and the app deletes your store's session and your notification setting (the email address) immediately, so it can no longer read anything or write to you.
  • Forty-eight hours after uninstall Shopify sends the shop/redact request, and Offerproof deletes every snapshot, session record and notification setting for your store.
  • Shopify's customers/data_request and customers/redact requests are acknowledged; because Offerproof stores no customer data, there is nothing to provide or erase for them.
  • You can also email siwooeo@gmail.com at any time to have your store's data deleted sooner.

Cookies and tracking

Offerproof embeds no analytics or advertising services. Once installed, the app runs inside the Shopify admin and authenticates with Shopify session tokens; it sets no cookies of its own. During installation only, Shopify's app framework may set a short-lived cookie (shopify_app_state) to protect the authorization redirect.

Changes to this policy

If what the app reads or stores changes, this page and its effective date are updated. The app's access scopes are shown by Shopify at install time and whenever they change.

이 블로그의 인기 게시물

기타 코드 도우미 어플리케이션 개인정보처리방침

모임 출석체크 앱 개인정보처리방침

What I Did 어플리케이션 개인정보취급처리방침