Privacy policy
Last updated 5 August 2026
Endcap is a Shopify app that audits product data. This policy explains exactly what it reads, what it stores, and what it never touches.
Who is responsible
Endcap is operated by Felix Francia, an individual established in Uruguay. There is no company behind it, which is worth saying plainly: you are contracting with a person, and that person is the data controller for everything described below.
Processing is governed by Ley N° 18.331, Ley de Protección de Datos Personales y Acción de Habeas Data, supervised by the Unidad Reguladora y de Control de Datos Personales (URCDP). The European Commission recognised Uruguay as providing an adequate level of data protection in 2012 by Decision 2012/484/EU.
That adequacy decision describes where the operator is established. It does not describe where your data is stored, which is the United States, on Railway. Both facts are set out in the third parties section below so that neither is read without the other.
What we do not collect
Endcap does not request, receive or store customer data of any kind. The app asks Shopify only for product permissions, so it has no technical ability to read customers, orders, carts, addresses or payment information, even if asked to.
This is why our responses to Shopify's customer data request and customer redaction webhooks confirm that no customer data exists to return or erase.
What we read
- Product titles, descriptions, types, vendors, tags, status and publication state
- Variants, including prices, barcodes and option names
- Product images and collection membership
- Your store's published legal policies, to check they exist
- Your shop domain and subscription status, to run the app and bill correctly
What we store
| Data | Why | Kept for |
|---|---|---|
| Scan results and scores | To show whether your catalog improved or regressed | Until uninstall |
| Your question set | Visibility trends require identical questions between runs | Until uninstall |
| Visibility results | To chart share of voice over time | Until uninstall |
| Applied fixes with previous values | So any bulk change can be undone | Until uninstall |
| App usage events | To see where merchants drop from the ranking-check and upgrade flow | Until uninstall |
| Shopify session token | To authenticate API calls on your behalf | Until uninstall |
| Email address entered for a public scan report | To deliver the report, record the request as a lead, and send product updates only when separately accepted | Until you request deletion |
| Public store domain, report and connection identifier | To return the scan, prevent duplicate crawling and limit abuse | Cached in application memory for 15 minutes |
Deletion
When you uninstall, Shopify notifies us and we delete your session immediately. Shopify then sends a shop redaction request, on receipt of which we erase every scan, question set, visibility run, usage event and fix history belonging to your store. You can also request deletion at any time by emailing [email protected].
Third parties
The processors below receive only the data needed for their role. None receives Shopify customer or order data.
- Railway hosts the application and its database, located in the United States.
- Resend receives an email address and the public storefront report only when you ask Endcap to email that report. It is not used to subscribe you to marketing. Resend handles delivery records under its own data retention terms.
- Cloudflare Turnstile receives connection and browser verification data to prevent automated abuse when you request a report by email.
- OpenAI receives two kinds of request. Visibility scans send category questions such as "what are the best coffee brands", which contain no merchant data. Description drafting sends the individual product's own fields so a description can be written from them. Nothing is sent for model training.
What we never do
- We do not sell, rent or share your data
- We do not use your catalog to train models
- We do not add scripts, pixels or tracking to your storefront
- We do not store answer text or product titles in app usage events
- We do not write to your products without your explicit approval of each change
Your rights
Under Ley N° 18.331 you may ask what data is held about you, have inaccurate data corrected, and have it deleted. In practice the fastest route to deletion is uninstalling, which triggers the process described above without you having to ask anyone.
- Access. Ask what is stored for your shop and we will send it.
- Correction. Product data is corrected in your Shopify admin and re-read on the next scan; anything we derived from it can be recalculated or removed.
- Deletion. Uninstall, or email us and we will erase your records without waiting for the uninstall webhook.
Requests go to [email protected] and are answered within one business day. If you are not satisfied with how a request was handled, you can complain to the Unidad Reguladora y de Control de Datos Personales (URCDP).
Changes to this policy
The date at the top of this page is the last time it changed. Material changes to what is collected or who receives it will be announced in the changelog rather than applied quietly.
Contact
Felix Francia, Uruguay. [email protected]. See also our terms of service.