Skip to content
upproof.

Data & privacy · Updated 11 September 2026

Your designs have a purpose.

Upproof helps Shopify stores collect customer artwork, share proofs, record approval, and prepare personalized products for production. This notice describes the current pilot implementation. The operator’s legal identity and final public-launch privacy details have not yet been published.

Information the app handles

Upproof stores the shop domain and app session credentials needed to connect to Shopify; order, line, product, and variant identifiers; quantities; uploaded artwork and file names; customer design notes; proof versions and production details; approval decisions, revision comments, and workflow timestamps. Shopify privacy requests may also provide customer and order identifiers so the affected records can be located.

Files and written notes can contain personal information. Only upload material needed for the order. A customer account is not required to use a design or proof link.

How it is used and accessed

This information links a design to its order line, shows the customer the correct proof, records their decision, and helps the merchant verify the work before production. New proof-job counts are used to enforce the store’s monthly allowance.

The store accesses its jobs through the authenticated Shopify app. Anyone with a valid customer link can access the design or proof operation that link permits, so treat links as private. Merchants copy and send these links through their chosen messaging service; Upproof does not currently send automatic proof emails.

The pilot runs on Microsoft Azure hosting and uses Shopify for store integration. Paid-plan billing is planned through Shopify; public paid signup is not yet open. The operator may need access to app records and operational logs to maintain the service and investigate problems.

Files, security checks, and retention

Uploads are checked for supported file structure and active content. Stored file hashes are checked when files are retrieved; a mismatch holds the file from further download. These checks are not malware scanning or a guarantee that a file is safe.

Files for completed or cancelled jobs become eligible for retention cleanup 90 days after Upproof records completion or cancellation. Eligibility does not itself delete a file: cleanup requires an operator to run the purge. Older jobs without a reliable closing date need review. Unclaimed uploads are also eligible for cleanup after their binding period and a grace period.

Retention cleanup removes eligible source and proof files while keeping the job and audit record. Active jobs are not covered by the closed-job purge. Downloaded files, printed production cards, copies sent through a messaging service, and backups are separate copies; this app’s purge does not recall those copies. Backup retention and the complete public-launch operating policy still need to be finalized.

Access and deletion requests

If you bought a product, contact the store where you ordered it. The merchant handles your order and can use Upproof’s data-request inventory to prepare a response. That response is sent by the merchant; the app does not send it automatically.

Upproof implements Shopify customer-data and shop-deletion webhooks. Customer redaction removes the affected stored artwork, proof files, customer notes, and revision comments; operational job records and monthly usage counts can remain. Shop redaction removes the shop’s stored files and app records. A failed file deletion is not recorded as completed, so it can be retried.

Privacy contact

Email upproofsupport@gmail.com.