Privacy policy
Last updated: August 15, 2026
Who we are
RestockDesk is operated by [LEGAL ENTITY NAME], [ADDRESS], [COUNTRY]. Contact: support@restockdesk.com. (These details are completed before the first paid subscription.)
What we process
- Your Shopify store domain, shop name and contact email, so we can identify your account.
- An Admin API access token that you generate yourself, stored encrypted (AES-256-GCM) and used only to read your products and to write the inventory and cost changes you ask for.
- The purchase orders, suppliers and stock counts you create in the app, plus product titles, SKUs, barcodes, costs and quantities pulled from your store to fill them in.
- Billing data handled by Stripe. We never see or store card numbers.
What we do not do
We do not sell or share your data, we do not use it to train models, and we do not read customer personal data from your store — the app requests no customer or order scopes. The free Stocky export tool runs entirely in your browser: those files are never uploaded.
Retention and deletion
Your data lives as long as your account does. Disconnect the store or email support@restockdesk.com and everything, including the encrypted token, is deleted within 30 days. You can also revoke the token yourself in your Shopify admin at any time, which cuts our access immediately.
Your rights (GDPR)
Access, rectification, erasure, portability and objection — write to support@restockdesk.com and we answer within 30 days. Data is processed on servers in the EU/US via our infrastructure providers (Vercel, Supabase, Stripe, Resend), each bound by standard contractual clauses.