Privacy Policy

PDF Catalog, operated by add-ons.org · Last updated 3 August 2026

PDF Catalog is a Shopify app that turns a merchant’s own product data into PDF catalogs, price lists and spec sheets. This policy explains exactly what the app reads, what it keeps, and for how long.

What the app reads from a store

The app requests three access scopes and no others:

ScopeWhat it is used for
read_products Product and collection titles, images, descriptions, SKUs, prices, variants and metafields — the content that appears in a generated PDF.
read_customers One field only: customer.companyContactProfiles, to find which B2B company a signed-in buyer belongs to.
read_companies Company location IDs and contract pricing, so a B2B buyer’s price list shows their negotiated prices.

The app does not read, receive or store customer names, email addresses, phone numbers or postal addresses. The only customer-related query it makes returns a company location ID, which is used during rendering and never written to storage. The app has no access to orders and does not request the read_orders scope.

What the app stores

DataWhyRetained
Shopify session and access tokenTo call the Shopify API on the store’s behalfUntil uninstall
Shop settings — shop name, currency, locale, logo URL, brand colour, planTo render documents and apply the correct planUntil uninstall
Catalog designs created in the appThey are the merchant’s own workUntil deleted or uninstall
Generated PDF files, cached on the app serverSo a repeated download is served instantly instead of re-renderingUntil the underlying product, collection or design changes, or uninstall
Usage events — a timestamp, document type, which design, and whether the file came from cacheMonthly usage counting and the in-app dashboardUntil uninstall

None of these records contain personal data about a store’s customers. Product content is the merchant’s own catalog data.

Requests the app makes to other services

The app sends no data to analytics providers, advertising networks or data brokers.

Billing

Paid plans are handled entirely by Shopify’s Billing API. Payment details are never seen, handled or stored by this app. The app records only which plan a store is on and how many PDFs it has built in the current calendar month.

Deletion

Uninstalling the app stops all access immediately. On Shopify’s shop/redact request, the app permanently deletes everything it holds for that store — settings, designs, usage events, sessions, and the cached PDF files on disk.

Shopify’s customers/data_request and customers/redact requests are acknowledged with nothing to return or erase, because the app stores no customer personal data in the first place.

A merchant may also request deletion at any time by writing to admin@add-ons.org.

Security

Changes

If this policy changes materially, the date at the top of this page is updated and merchants are notified in the app before the change takes effect.

Contact

add-ons.org — admin@add-ons.org