Smart Discounts · operated by Debugee Technologies Private Limited
Effective date: June 13, 2026
This Privacy Policy explains how Debugee Technologies Private Limited ("we", "us", "our") collects, uses, stores, and protects information when a merchant ("Merchant", "you") installs and uses the Smart Discounts application (the "App") on their Shopify store, and how we handle data relating to the Merchant's customers ("Customers"). We act as a data processor on the Merchant's behalf; the Merchant is the data controller for their store and Customer data.
To provide membership-based discounts, the App accesses and stores a limited set of Customer data, classified by Shopify as protected customer data, including the protected fields name and email (Level 2):
custom.is_member metafield so the discount can be applied at checkout.We do not access or store Customer addresses, phone numbers, payment details, or browsing behaviour. We do not access protected customer fields beyond name and email.
We use the minimum data required to provide the App's functionality. We do not sell personal data, and we do not use Customer data for advertising or for any purpose other than providing the App to the Merchant.
We process Customer data on the documented instructions of the Merchant, who is responsible for having a lawful basis (such as the Customer's consent or legitimate interest) and for honouring Customer privacy choices. We honour Merchant and Customer opt-out and deletion requests as described below.
We do not sell or rent data. We share data only with the infrastructure providers required to run the App:
| Sub-processor | Purpose | Location |
|---|---|---|
| Shopify Inc. | Hosting platform & APIs the App integrates with | Per Shopify |
| Vercel Inc. | Application hosting | United States |
| Neon, Inc. (PostgreSQL) | Database storage of app & membership data | AWS Asia Pacific (Singapore) |
We may also disclose data where required by law.
Data is stored in an encrypted-in-transit PostgreSQL database and accessed over secure (TLS) connections. Access tokens and credentials are restricted to the App's backend. We apply reasonable technical and organizational measures to protect data against unauthorized access, loss, or misuse. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
customers/data_request,
customers/redact, and shop/redact. On a Customer redaction request,
we delete that Customer's membership records and remove their data from our database.Depending on their location, Customers may have rights to access, correct, delete, or restrict the processing of their personal data, and to data portability, under laws such as the GDPR and CCPA. Because we process Customer data on the Merchant's behalf, Customers should direct such requests to the Merchant, who can submit them to us. Merchants may contact us to exercise these rights on a Customer's behalf, or to request export or deletion of their store's data.
Your data may be processed in countries other than your own, including the United States and India. Where required, we rely on appropriate safeguards for such transfers.
The App is not directed to individuals under the age of 16, and we do not knowingly collect their personal data.
We may update this Privacy Policy from time to time. Material changes will be reflected by an updated effective date on this page. Continued use of the App after changes take effect constitutes acceptance of the updated policy.
For privacy questions or requests, contact:
Debugee Technologies Private Limited
Pune, Maharashtra, India
Email: debugee.tech@gmail.com