Quotient
Privacy Policy
Last updated September 12, 2026
Quotient (“we”, “us”) is a Shopify app that helps merchants receive requests, build and send B2B quotes, and convert accepted quotes into Shopify draft orders. This policy explains what data the app processes, why, and the choices available to you. It applies to the Quotient app only; the merchant (“store”) that installs Quotient is the data controller for their customers’ personal data, and we act as their processor.
Information we process
- Store & account data. Your myshopify.com domain, access token, and app settings (e.g. quote expiry, notification email), used to operate the app.
- Product data. Product titles, SKUs, variants, and prices we read from your catalog to build quote line items.
- Buyer / customer data. For each quote or client application, the company name, contact name, email address, and any note or custom-form answers a merchant or buyer enters. When a quote is approved we may create or tag a Shopify customer and send an account invite.
- Quote content. Line items, quantities, list and offered prices, messages, and status history for each quote.
We do not collect payment card numbers, and we do not sell personal data.
How we use it
- To provide the app’s core features — creating, sending, and tracking quotes and client applications, and converting accepted quotes to Shopify draft orders.
- To email quote offers to buyers and notifications to the merchant.
- To secure, maintain, and improve the service.
Sharing & subprocessors
We share data only with the services that run the app on your behalf:
- Shopify — the platform the app is built on; source of store, product, and customer data via the Shopify Admin API.
- DigitalOcean — application hosting and the managed PostgreSQL database where the app stores its data (United States region).
- Resend — transactional email delivery for quote offers and notifications.
We do not share personal data with any other third parties except where required by law.
Data retention
We retain quote and application data for as long as the app is installed so you can reference your pipeline. When you uninstall the app, Shopify sends us a shop/redact request (about 48 hours later) and we permanently delete all of your store’s data. We also honor customers/redact requests to erase an individual buyer’s data on demand.
Your rights
Depending on your location, you (or a buyer, via the store) may have rights to access, correct, export, or delete personal data. Because the store is the controller, buyers should direct requests to the store; the store can use Shopify’s customer data-request and redaction tools, which we support, or contact us at [email protected].
Security
Data is transmitted over TLS and stored in an access-controlled managed database. Access tokens and API keys are held as encrypted secrets. No method of transmission or storage is perfectly secure, but we take reasonable measures to protect your data.
Changes
We may update this policy; material changes will be reflected by the “last updated” date above.
Contact
Questions about this policy or your data? Email [email protected].