TagFlow AI
← Back to TagFlow AI

Privacy Policy

Last updated: Sep 2, 2026

Brisknodes ("we", "us", "our") operates TagFlow AI (the "App"), a Shopify application that automatically tags orders, products, and customers based on rules you configure. This policy explains what data the App accesses, why, and how it's handled.

1. Information we collect

When you install TagFlow AI, Shopify grants the App access to the following data on your store, scoped to what the App's tagging features actually use:

  • Orders — order details, line items, financial and fulfillment status, shipping and billing address fields, discount codes, and order tags, so the App can evaluate your workflow rules and apply or remove tags.
  • Products — product and variant details (title, type, vendor, tags, inventory levels), for product-tagging workflows.
  • Customers — customer profile fields (name, email, order count, tags, marketing consent), for customer-tagging workflows and for cross-tagging a customer based on an order-triggered rule.
  • Discounts — discount code details, used when a workflow condition or the discount-code lookup feature references a code.
  • Store and account information — your shop domain, store owner contact email, and installation/billing status, to operate the App and manage your subscription.

We only request the Shopify API access scopes the App's features actually use, and we periodically review and remove scopes that are no longer needed.

2. How we use this information

  • To evaluate the workflow rules you create and apply or remove tags on orders, products, and customers accordingly.
  • To display order/tagging history, dashboards, and setup guidance inside the App.
  • To process retroactive ("backdating") tagging runs you request across your historical orders, within the date range and limits you specify.
  • To operate subscription billing through Shopify's Billing API (see Section 4).
  • To provide customer support when you contact us.

We do not sell your data, and we do not use your store's order, product, or customer data to train any AI or machine-learning model.

3. AI-assisted rule suggestions

TagFlow AI includes an optional feature that lets you describe a tagging rule in plain English and have the App generate matching conditions automatically. If you use this feature, the text you type is sent to a third-party AI provider (Groq or Google Gemini, depending on configuration) to generate the suggested rule. Your store's order, product, or customer data is not included in that request — only the description you write in that field. Review the respective provider's own privacy policy for how they handle text submitted to their API:

  • Groq: https://groq.com/privacy-policy/
  • Google (Gemini API): https://policies.google.com/privacy

This feature is optional — you can build every rule manually without ever using it.

4. Billing

Subscription billing is handled entirely through Shopify's Billing API. TagFlow AI does not collect, process, or store your payment card details — Shopify does. We store a local record of your subscription plan and billing status (plan name, price, status, billing dates) to manage feature access and usage limits.

5. Data retention

We retain the data described in Section 1 for as long as your store has the App installed, plus a limited period afterward as described below.

When you uninstall the App, your store's access is suspended immediately. If the App is not reinstalled, Shopify issues a shop redaction request 48 hours after uninstallation, and on receiving it we permanently delete your store's data — including workflow configurations, tagging history, and account records — in line with Shopify's data protection requirements.

6. Your rights and data requests

In line with Shopify's mandatory data protection requirements for apps, TagFlow AI implements automated handling for:

  • Customer data requests — if a customer asks a store for the personal data an app holds about them, we compile the relevant records we store (see Section 1) so the store owner can fulfil that request.
  • Customer redaction requests — if a store owner or customer requests deletion of a specific customer's data, we erase or anonymize that customer's personal information from our systems.
  • Shop redaction — 48 hours after a store uninstalls the App (and doesn't reinstall), we permanently delete all data associated with that store.

If you're a merchant using TagFlow AI and want to exercise these rights directly, or if you're a customer of a store that uses TagFlow AI and have a question about your data, contact us using the details in Section 11.

7. Data security

Data is stored in a PostgreSQL database with access restricted to authorized personnel, and all communication between the App, your browser, and Shopify occurs over HTTPS. Authentication uses Shopify's own session token system rather than storing your Shopify password.

8. Third parties

Beyond Shopify itself (the platform the App operates on and integrates with) and the optional AI provider described in Section 3, we do not share your data with third parties, except where required by law.

9. Children's privacy

TagFlow AI is a business tool intended for use by merchants operating a Shopify store. It is not directed at, and we do not knowingly collect data from, individuals under 16.

10. Changes to this policy

We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date above. Continued use of the App after a change constitutes acceptance of the updated policy.

11. Contact us

Questions about this policy or your data can be sent to:

Brisknodes
Email: hello@brisknodes.com

Built by Brisknodes
Privacy hello@brisknodes.com
© 2026 Brisknodes · Shopify is a trademark of Shopify Inc.

Shopify is a trademark of Shopify Inc. TagFlow AI is not affiliated with Shopify.