01. Who we are
Replumi is operated by Andrew Duong ("Replumi," "we," "us"). This policy covers replumi.com, the Replumi Shopify application, and communications with us. Andrew Duong is responsible for privacy inquiries at andrew@replumi.com.
For store information supplied through Shopify or a merchant, we process it to provide the merchant's inventory planning service. The merchant remains responsible for its relationship with its customers and for providing appropriate notices and permissions. We manage our own website, support correspondence, and service administration.
Replumi is being prepared for a supervised beta. The app practices below apply to connected merchant workspaces; visiting this website alone does not connect a store. The service is intended for business users, not children.
02. Information we handle
- Shopify store and connection details
- Store name, store domain, currency, identifiers, authorized permissions, installation and synchronization status, and credentials needed to maintain the connection. Shopify authentication also supplies information needed to verify a staff member's access.
- Products, inventory, and sales activity
- Product and variant identifiers, titles, SKUs, barcodes, vendors, prices and costs, location names and identifiers, available and incoming quantities, and order identifiers, dates, cancellation or test status, and item quantities, including changes associated with refunds.
- Information you enter or import
- Supplier names and business contact details, notes, mapped catalog rows, filenames and column mappings, prices, availability, order minimums, case sizes, lead times, purchasing settings, saved plans, purchase orders, receipts, and beta feedback.
- Support and service operation
- Your email address, name, messages and attachments when you contact us; diagnostic records such as internal store and request identifiers, timestamps, synchronization failures, and operator actions. Our servers and service providers also process connection information, such as IP addresses, when handling requests.
Our forecasting queries do not request customer names, email addresses, phone numbers, billing or shipping addresses, or payment card details. Order identifiers can still relate to an individual through the merchant's records; we do not treat all order data as anonymous.
Shopify webhook messages can contain customer details. We verify those messages and filter them to the identifiers needed for processing before saving them to our work queue. Please do not include unnecessary customer details, passwords, or payment information in supplier files, notes, feedback, or support messages.
03. How we use it
We use this information to connect your store, synchronize inventory and sales, estimate demand, compare supplier offers, calculate purchasing recommendations, and maintain your purchasing records. We also use it to answer support requests, investigate errors, protect access, and handle privacy or legal requests.
Recommendations concern stock and purchasing quantities. You review purchasing decisions; Replumi does not automatically send orders to suppliers. We do not sell personal information, share it for cross-context behavioral advertising, or use merchant data to train general-purpose AI models.
Where applicable law requires a legal basis for our own processing, we rely on providing the service you request, legitimate interests in operating and securing it, legal obligations, or consent where required. Information handled on a merchant's behalf is processed for that merchant's service purposes.
04. Sharing & service providers
Information is made available to authorized store users and to the operator as needed for support, maintenance, security, and privacy requests. We use these services:
- Amazon Web Services: hosting the website, application, and database.
- Shopify: store authentication, authorized API access, and store or privacy notifications.
- Zoho Mail: receiving and storing correspondence sent to our Replumi email address.
- Discord: operational alerts containing internal reference identifiers, timestamps, and limited error summaries. Deployment notifications also include software release identifiers, deployment results, and links to workflow runs. The alert integration excludes store names and domains, catalogs, privacy-report contents, and access tokens.
- Google Fonts: delivering the fonts used by our website and application. Your browser contacts Google's servers to load them.
We may also disclose information where reasonably necessary to comply with a legal obligation, respond to a valid legal request, or protect the service and people's rights. If the business is incorporated, reorganized, or transferred, relevant information may transfer to the successor operator, subject to applicable privacy obligations and notice where required.
Exported files and emails you send to suppliers are under your control. Shopify and other services also handle information under their own applicable terms and privacy notices.
05. Where data is processed
Our primary application hosting and database are on AWS in Northern Virginia, United States. Email, font delivery, and operational service providers may process information in other countries. Information can therefore be processed outside your province, country, or region, where laws and government access rules may differ.
Contact us before onboarding if your business requires a particular data location or a data processing agreement. We do not currently offer a Canada-only or EU-only hosting option.
06. Safeguards
Our safeguards include HTTPS for public connections, encryption of stored Shopify access and refresh tokens, checks that restrict application access to the relevant store, and restricted server access. Operational logging is designed to avoid recording credentials and full customer webhook messages.
Authorized administrators can access service data when needed for the purposes described here. These measures reduce risk, but no service can guarantee absolute security.
07. Retention & deletion
- Connected workspaces: we retain imported store records, supplier history, saved plans, and purchasing records while needed to provide the workspace, unless removed through an available feature or a verified request. Choosing a shorter forecasting period does not automatically delete older imported records.
- Uninstallation: processing an uninstall notification clears the stored Shopify credentials and stops further store synchronization. Store records are removed from the live database when Shopify's subsequent store-erasure notification is processed. Shopify normally sends that notification about 48 hours after uninstall; this is not a guarantee that every copy is deleted within 48 hours. Reinstalling before erasure can preserve an active workspace.
- Customer privacy requests: we use the order identifiers supplied by Shopify to identify relevant activity. Deletion handling removes matching order records and their activity from retained privacy reports, and keeps minimal order identifiers to prevent reimport. Access requests can create reports for an authorized operator to review and securely deliver to the verified store owner. Recording completed delivery erases the report held in the live database. We retain a limited record of the request, review, deletion or delivery method, and completion dates. Delivery and removal of temporary downloaded copies require operator action.
- Work queues and diagnostics: successfully processed webhook payloads are cleared. Failed jobs retain the limited identifiers needed for investigation and retry. Diagnostic and privacy records may remain while needed for service operation and handling the request.
- Backups: deletion from the live database does not immediately remove existing backup copies. The current local backup process removes copies older than seven days during successful backup runs; a paused or failed backup process can delay cleanup. Backup copies are also considered when reviewing a deletion request.
- Correspondence and legal records: support messages and request records are kept as needed to resolve the matter, document our response, and meet applicable legal obligations. Where we must retain information despite a deletion request, we explain the applicable reason.
Contact us if you need earlier deletion or a specific retention arrangement. Some requests require manual action; uninstalling does not itself delete emails you previously sent us or copies you exported.
08. Your choices & rights
You can ask what personal information we hold about you, request access or correction, or request deletion. Depending on applicable law, you may also have rights to portability, restriction, objection, or withdrawal of consent. Withdrawing required access can prevent us from providing the app.
Merchants: email andrew@replumi.com with your store domain and the nature of your request. You can also uninstall through Shopify to end the connection.
Store customers: contact the store where you shopped first so it can identify the relevant records and submit a request through Shopify. If you contact us directly, we may coordinate with that merchant.
We verify identity and authority before disclosing or changing data. We aim to complete requests within 30 days, or the applicable legal deadline, and will explain any permitted extension or exception. You may raise concerns with Andrew Duong or with your local privacy regulator, including the Office of the Privacy Commissioner of Canada.
10. Changes to this policy
We will update this page and its date when our practices or operator details change, including after incorporation. For material changes, we will provide an appropriate notice through the website, app, or available contact channel, and obtain consent where required.
LET’S KEEP IT CLEAR
11. Contact us
For a privacy question, access request, correction, deletion request, or complaint, contact:
Andrew Duong — Replumi
andrew@replumi.com
Please include only the information needed to explain your request.