Lot Foundry Privacy Policy
Last updated: July 26, 2026
This policy covers the Shopify apps built by Lot Foundry: COA Vault, Label Panel, Gatekeeper, and Lot Foundry Delivery & Pickup (each, “the Service”). The shared core below describes how every Lot Foundry app handles data. Each app then has its own short section for what is specific to it.
Jump to: COA VaultLabel PanelGatekeeperDelivery & Pickup
What is the same across every Lot Foundry app
Permissions. Each app asks Shopify for the fewest permissions it needs to do its job. We do not access Shopify’s protected customer fields or payment information, and we do not request Shopify permissions that would allow it.
Shoppers. The storefront features are anonymous by design. We do not collect or store your name, email address, IP address, location, order history, or any other personal information, and we do not set advertising cookies or use trackers. Anything an app stores in your own browser is described in its section below.
Merchants. For your store we keep your store’s domain, the authentication tokens Shopify issues, and, where Shopify provides it, the name, email address, Shopify user ID, locale, and account-status details of the staff account that installed or authenticated the app. Those are merchant account details, never a shopper’s. We also keep the settings and content you create in the app, and standard technical logs (such as requests and errors) generated automatically by our hosting providers to operate and debug the Service, retained briefly and not used for profiling. The exact content each app stores is listed in its section below.
How information is used. Solely to operate the Service. We do not sell or rent any data, use it for advertising, or share it with third parties except the service providers below.
Service providers. Shopify (app platform; for COA Vault, also file storage and billing), Vercel (application hosting, USA), Render (application hosting, USA), and Supabase (database hosting, USA).
Retention, deletion, and location. All data is processed and stored in the United States. We retain your store’s records for as long as the Service is installed. If you uninstall, Shopify notifies us and the records we hold for your store are permanently deleted in accordance with Shopify’s mandatory data removal process. You may also request deletion at any time using the contact below.
GDPR and CCPA. Each Service responds to Shopify’s standard privacy webhooks, including customer data requests and redaction requests. Because the apps do not collect shopper personal data, such requests ordinarily return no records. Merchants and shoppers may contact us directly with privacy requests.
Changes. We may update this policy from time to time. Material changes will be indicated by updating the date above.
Contact. Privacy questions or requests: brian@lotfoundry.com.
COA Vault
COA Vault is a certificate-of-analysis app. Merchants upload lab documents, link them to batch and lot numbers, and shoppers look up the right document by batch number or QR code.
Shoppers using a batch lookup. The lookup is anonymous. When you enter a batch number or scan a QR code, we record only the batch number searched, whether a document was found, whether the search came from a QR code or a typed form, and the time. No personal information, no cookies, no trackers.
Merchants. In addition to the shared core, COA Vault stores the records you create: document titles and metadata (lab name, test and expiry dates), batch and lot numbers, optional product links, and internal notes, plus anonymous lookup statistics. The document files themselves stay in your own store’s Shopify file storage, not on our servers, and remain under your control if you uninstall.
Label Panel
Label Panel displays product compliance information, Supplement Facts and required disclaimers, on a merchant’s storefront product pages.
Shoppers viewing a product page. The panel is anonymous. It shows the product information the merchant entered. No personal information, no cookies, no trackers.
Merchants. In addition to the shared core, Label Panel stores the panel content you create: Supplement Facts values, disclaimer selections and custom text, the products you attach panels to, and cached product titles for display in the app.
Gatekeeper
Gatekeeper shows an age-verification gate on a merchant’s storefront. It requests no Shopify access scopes, so it cannot read your customers, orders, products, or theme content.
Shoppers visiting a store. The gate is anonymous. When you confirm your age, the Service stores a single flag in your browser (local storage) so you are not asked again for a set number of days. We do not collect or store your name, email address, IP address, precise location, date of birth, or order history, and we do not set advertising cookies or use trackers. If the store is on the paid plan, the Service records an anonymous, aggregate count of age checks (pass or did-not-pass) together with a coarse two-letter country code derived from the store’s own localization. These are tallies for the merchant’s records and are not linked to you, your device, or any identifier.
Merchants. In addition to the shared core, Gatekeeper stores the gate settings you choose (minimum age, wording, colors, country rules, and related options) and, on the paid plan, the anonymous aggregate verification counts described above.
Lot Foundry Delivery & Pickup
Delivery & Pickup collects a delivery or pickup date from a shopper at checkout and keeps it attached to the order.
Shoppers choosing a date. The Service does not store shopper personal information at any point: no names, email addresses, phone numbers, billing or shipping addresses, or payment details. Shopify’s order webhooks do contain those details. The Service discards them on receipt. A single function keeps only the order ID, the chosen date, the method, the cart token, and the product IDs, and nothing else reaches the Service’s database. While a shopper’s cart is open, the Service stores a short-lived hold keyed to that cart, which expires on its own.
Merchants. In addition to the shared core, Delivery & Pickup stores the delivery rules you configure (days you deliver, cutoff times, lead times, blackout dates, daily capacity limits, and any per-product, per-collection, or per-tag overrides) and a record of which products those rules were applied to. To enforce a daily capacity limit, it stores a per-day count of orders together with the order IDs counted against that day. The chosen date itself lives on your own order inside Shopify as an order attribute, plus a readable order tag such as Delivery 2026-07-30. We keep no separate copy. You can export it at any time through Shopify’s order export or the Service’s own CSV export and calendar feed. On uninstall, access ends immediately and the settings and capacity records above are deleted. Dates already written to past orders stay on those orders in Shopify. They are your data, not ours. The Service requests base-level (Level 1) protected customer data access only. It does not request or receive Shopify’s protected customer fields.