What Alkazam processes
Alkazam processes the merchant’s Shopify shop domain, app session, charge rules, conditions, managed product and variant IDs, theme installation state, appearance settings, uploaded media, and operational audit events. When you choose an order tag, Alkazam also receives the order-created event long enough to find the managed charge lines and add that tag.
What Alkazam does not store
Alkazam does not store customer profiles, names, contact details, addresses, payment details, checkout data, or a copy of the full order. It keeps only the order and charge references needed for tagging and merchant reporting. Cart evaluation receives only the normalized cart information needed to decide eligibility.
Shopify and service providers
Shopify remains the source of truth for the merchant’s store, products, cart, checkout, and files. Alkazam runs its app service, PostgreSQL database, and image-generation worker on Railway. An image prompt is merchant-authored and must not contain customer information. Generated media is saved only after the merchant previews and selects it.
Retention and deletion
Uninstall and Shopify shop-redaction webhooks remove the shop’s app records, sessions, media jobs, snapshots, and audit data. Customer privacy webhooks return successfully because Alkazam does not hold customer records. A merchant can request help with deletion using the support contact below.