1. Controller
PlanLatch is provided by KWM Power & Property s.r.o., J. A. Bati 5648, 760 01 Zlín, Czech Republic, IČO 218 85 613 (“PlanLatch”, “we”, “us”).
Privacy contact: hello@planlatch.com
2. Scope
This policy applies to the PlanLatch Shopify application, the planlatch.com website, the free Subscription Health Check form, alert delivery, and related support.
PlanLatch monitors public storefront product and temporary-cart behavior. It does not request or intentionally collect Shopify customer records, orders, payment methods, checkout data, or subscription contracts.
3. Data we process
For the Shopify application we process:
- Shopify authentication sessions, shop domain, shop identifier and display name;
- product identifiers, titles, public product URLs, handles and selling-plan counts obtained through the
read_productsscope; - scan timing, status, operational warnings and incident evidence;
- screenshots of public storefront states;
- an optional merchant-supplied alert email;
- an optional Slack incoming webhook, storefront password, or Shopify Crawling access headers, all encrypted at rest; and
- app plan and billing status returned by Shopify App Pricing.
Synthetic checks can place a product variant and selling-plan identifier in an isolated temporary cart. The cart is cleared after the check. PlanLatch does not proceed to checkout or create an order, payment, or subscription contract.
For a free Subscription Health Check we process the submitted business email, company name, public Shopify product URL, selected subscription app, optional context, and confirmation that the requester is authorized to request the check. The form provider can also record technical request metadata, including IP address, user agent and referrer, for delivery, security and abuse prevention.
For support we process the sender's business contact details and the content needed to investigate the request. Please do not send customer exports, payment data, passwords, API tokens, or other unnecessary confidential data.
4. Purposes and legal bases
We process app data to provide and secure the service, authenticate the merchant, discover eligible products, run requested and scheduled checks, display results, send configured alerts, administer plans, and provide support. This processing is necessary to perform the service contract.
We process a requested free health check and related response to take steps at the requester's request before a possible service relationship. We use limited security, abuse-prevention, logging, and service-improvement data for our legitimate interests in operating a reliable B2B service. We process records when necessary to meet legal obligations or establish, exercise, or defend legal claims.
We do not sell personal data, use it for unrelated advertising, or make decisions that produce legal or similarly significant effects solely through automated processing.
5. Providers and processing locations
We use the following service providers:
- Shopify for app installation, OAuth, product data access, required webhooks, App Store distribution, and Shopify App Pricing.
- Hetzner for the production application, PostgreSQL database, and browser-based storefront checks. The current production server is in Hetzner's Helsinki region (
hel1, EU). - Resend for optional transactional alert email. Resend documents Ireland as its email-sending region and the United States as the location for account data, metadata, logs, API records, and related service data.
- Netlify for the public website and free health-check form. Verified form submissions are stored in Netlify's user database. We do not state a storage region that Netlify has not contractually confirmed to us.
- Google Workspace for PlanLatch business and support email.
Providers process data under their own security and privacy terms and only for the service purposes described here. Where personal data is transferred outside the European Economic Area, we rely on applicable lawful transfer mechanisms and provider contractual safeguards.
6. Retention and deletion
Live Shopify authentication, shop configuration, monitored products, scan runs, incidents, and screenshots are deleted from the production database when the app is uninstalled or a valid Shopify shop-redaction webhook is received.
The production database is backed up daily in encrypted form. Backup files are automatically deleted after 14 days. Data removed from the live database can therefore remain inaccessible in encrypted backups until that rolling period expires.
Optional alert details and encrypted storefront access secrets are removed when the merchant clears them in the app or when shop data is deleted.
Free health-check submissions are retained for up to 90 days after the request is completed unless a service relationship begins, the requester asks us to retain the correspondence, or a longer period is required for security or legal claims. Support and business correspondence is kept only as long as reasonably necessary for the request and applicable record-keeping duties.
7. Security
Data is encrypted in transit. Storefront passwords, Slack webhooks, and Shopify Crawling access headers are encrypted at rest. Access is restricted to service operation and support. Shopify webhook signatures are verified before processing. Production backups are encrypted and restore-tested.
No online service is completely secure. If we identify a breach that requires notification, we will notify affected parties and authorities as required by applicable law.
8. Your choices and rights
Merchants can remove optional alert and storefront-access details in App Home, change their Shopify-hosted pricing plan, or uninstall the app.
Depending on applicable law, an individual may request access, correction, deletion, restriction, objection, or portability of personal data. Contact hello@planlatch.com and include the relevant shop domain or request reference. We may need to verify authority before acting on a request.
You can also lodge a complaint with the Czech Office for Personal Data Protection (Úřad pro ochranu osobních údajů) or another competent supervisory authority.
9. Changes
We may update this policy when the service, providers, or legal requirements change. The effective date will be updated and material changes will be communicated through an appropriate service channel.
10. Contact
KWM Power & Property s.r.o.
J. A. Bati 5648, 760 01 Zlín, Czech Republic
IČO 218 85 613
hello@planlatch.com