Privacy Policy
Amazon Review Sync (Shopify app) and Amazon Review Sync Collector (Chrome extension), by Technophile. Last updated: 6 October 2026.
This policy explains what data the Amazon Review Sync Shopify app and its optional Chrome extension handle, why, and how it is deleted. Questions: support@tangledata.com.
Shopify app
When a merchant installs the app, we store only what the app needs to work:
| Data | Why |
|---|---|
| Shop domain and the Shopify access token | To sign in to the app and read the merchant's products |
| Product connections: product and variant IDs, product name, SKU, Amazon product ID (ASIN) and marketplace | To know which Amazon reviews belong to which product |
| Imported Amazon reviews: reviewer display name as shown publicly on Amazon, star rating, title, text, date, verified-purchase flag | To show the reviews on the merchant's product pages |
| Reviews written by shoppers on the store: name, email, Shopify customer ID if signed in, rating, title, text, and a one-way hash of the IP address | To let the merchant moderate and publish them, and to limit spam |
| The merchant's edits and public replies to reviews, and the reasons for hiding Amazon reviews (an edit can contain a shopper's name) | To show the edited reviews and the store's replies on product pages, and keep hidden reviews hidden after re-imports |
| App settings (for example "show only 5-star reviews") and the Appearance page's brand colors and layout (also saved to the app's own metafield on the merchant's store, so the review blocks can use them) | To remember the merchant's choices and style the review blocks |
| Support messages sent from the app's Help window: the email address the merchant enters, the message and subject, the shop's name and domain, the store owner's email from Shopify, and the app page they were on. The app itself keeps only the shop and the time of each message (to limit messages to 5 per hour) | To answer the merchant. The message is sent by Amazon Web Services (Amazon SES) to support@tangledata.com, which Cloudflare Email Routing forwards to our Google (Gmail) inbox |
| AI review summaries: a short summary of a product's reviews, made from their star ratings, titles and text | To show the summary on the product page, when the merchant turns it on |
We do not read orders, payment details or the merchant's customer list. We don't sell data, show ads or share data with third parties, except the hosting providers that run the app's servers and database, the email services that deliver support messages a merchant chooses to send (Amazon SES, Cloudflare Email Routing and Google Gmail), and, only when the merchant turns on the AI review summary, the AI provider below. The store owner's email is read from Shopify only to fill in and send a support message; the app doesn't store it.
AI review summary (optional). When a merchant turns on "Show AI summary of reviews" in the Reviews block, the star ratings, titles and text of that product's published reviews are sent to OpenRouter, which passes them to the language model that writes the summary. Reviewer names, emails, customer IDs and IP hashes are never sent. Summaries are shown labelled as AI-generated, are replaced when the reviews change, and are deleted with the shop's data or, for a shopper's review, when that shopper's data is deleted.
Chrome extension
The Amazon Review Sync Collector extension is optional. Merchants can always import reviews from a CSV file instead.
- When it runs: only after the merchant clicks Collect on Amazon in the Shopify app. That creates a job for one product, valid for 30 minutes. On any other Amazon page, or without a job, it does nothing.
- What it reads: the public review content shown on that product's Amazon review pages (reviewer display name, rating, title, text, date, verified-purchase flag) and the star breakdown.
- Where it sends it: only to the Amazon Review Sync app at
https://amazon-review.fly.dev, with the job's one-time token. - What it stores in the browser: the current job and its progress (
chrome.storage.local), removed once the reviews are sent. - What it never collects: Amazon sign-in details, cookies, browsing history, purchase history, or any other personal information about the person using the browser. It has no analytics or tracking.
The use of information received from the extension complies with the Chrome Web Store User Data Policy, including the Limited Use requirements. The data is used only to provide the review import the merchant asked for. It is not used for advertising, sold, or transferred for any other purpose.
Retention and deletion
- Each Amazon import replaces the product's previous Amazon reviews.
- When a merchant uninstalls the app, all of that shop's data (connections, reviews, shopper reviews, edits, replies and hidden reviews, AI summaries, settings, appearance, support message times and sessions) is deleted, and Shopify removes the app's metafield with the installation. It is deleted again when Shopify sends its shop data erasure request.
- When Shopify sends a customer data erasure request, that customer's shopper reviews are deleted, with the AI summaries of the products they reviewed.
- Collect jobs expire after 30 minutes.
- Support emails are kept in our support inbox only as long as needed to help the merchant and follow up. To have them deleted, email us.
Security
All traffic uses HTTPS. Requests from Shopify are verified with Shopify's signatures, and secrets are kept out of source code.
Contact and changes
For data requests or questions, email support@tangledata.com. If this policy changes, we update the date at the top of this page.