This policy explains what personal data Reviewcap processes, why, and who else is involved. It covers the Reviewcap Shopify app, the storefront widget it installs on your theme, and this website.
1. Who is responsible for your data
The data controller for merchant account data is:
Patrick Hasler (sole trader / self-employed)
Via Renon 18/B
39100 Bolzano (BZ)
Italy
Email: support@reviewcap.ai
Reviewcap is operated from Italy, within the European Union, and is subject to the EU General Data Protection Regulation (GDPR).
Where Reviewcap processes product review content belonging to your shop, the merchant is the controller of that data and Reviewcap acts as a processor on the merchant's behalf. For the merchant's own account data, Reviewcap is the controller.
2. Merchant data we access through the Shopify API
When a merchant installs Reviewcap, Shopify grants the app the following access scopes: read_products, write_products, read_themes and read_locales. Reviewcap does not request access to Shopify customer records, orders, or checkout data.
We store the following for each connected shop:
- Shop identity and access — the myshopify.com domain, the granted access scopes and the Shopify API access token needed to call the API on your behalf.
- Shop profile — when the app is installed we retrieve the shop record from Shopify and store it. This record is provided by Shopify and includes the shop contact email address, shop owner name, phone number and business address, alongside the shop's country, currency and language settings. We use the contact email to reach you about the service; the locale fields determine the language your summaries are generated in.
- Plan and billing state — your selected plan, active plan name, usage caps and the subscription record returned by Shopify's Billing API.
- Product and review data — products in your catalogue and the review content described in section 3.
Payments are handled entirely by Shopify through the Shopify Billing API and appear on your regular Shopify invoice. Reviewcap never receives, sees or stores your card or bank details.
3. Product review content
Reviewcap's purpose is to summarise the product reviews a merchant has already collected. Depending on the merchant's configuration, review data is imported from their review provider — for example Judge.me, Loox, Yotpo, Okendo, Stamped, Trustpilot, Fera or others — or from the shop itself.
For each review we store the review text, the rating, the review date, an external identifier, and the raw payload returned by the review provider. That payload can contain personal data written or supplied by the end customer, such as the reviewer's display name. Review text is free-form and may itself contain personal information if a customer chose to include it.
Reviewcap does not ask end customers for data, does not create customer profiles, and does not track individual shoppers.
What is sent to the AI provider
To generate a summary, we send only the review text together with the product name and instructions to our AI subprocessor. Reviewer names, email addresses and provider payload fields are not included in that request. The generated summary is an aggregate description of what customers said and is designed not to identify individual reviewers.
4. Why we process this data, and on what legal basis
- To provide the service (importing reviews, generating and publishing summaries, showing the storefront widget) — performance of a contract, Art. 6(1)(b) GDPR, for merchant data; and on the merchant's documented instructions as processor for review content.
- To bill correctly (counting summarised reviews against your plan) — performance of a contract, Art. 6(1)(b) GDPR.
- To keep the service working and secure (error reports, diagnosing failures) — legitimate interests, Art. 6(1)(f) GDPR.
- To respond to support requests you send us — performance of a contract and legitimate interests.
5. Subprocessors
We use the following providers. This list reflects the services the application actually calls.
| Provider | Role | Data involved | Location |
|---|---|---|---|
| OpenAI | Large language model that generates the review summaries | Review text and product name | USA |
| Google (Gemini API) | Generates the vector embeddings used by the optional "answer questions from reviews" feature | Review text and the question text a shopper types into the question widget | USA |
| Railway | Application hosting and managed PostgreSQL database where all data described above is stored | All stored data | USA |
| Sentry | Error tracking, so failures are noticed and fixed | Error messages and stack traces. Sending of personally identifying request data is explicitly disabled in our configuration. | USA |
| Shopify | The platform itself: source of shop, product and billing data, and processor of all payments | Shop profile, subscription and usage records | Canada / USA |
We do not use advertising networks, analytics platforms or customer-tracking services. There is no Google Analytics, no Meta pixel and no comparable tool in the app, in the storefront widget or on this website.
International transfers
The providers above are based outside the European Economic Area, primarily in the United States. Transfers rely on the European Commission's Standard Contractual Clauses and, where applicable, the EU–US Data Privacy Framework, together with the data processing terms of each provider.
6. Cookies and tracking
The storefront widget that displays summaries on your product pages sets no cookies and uses no local storage, no browser fingerprinting and no analytics. It does not track shoppers.
The Reviewcap admin app inside your Shopify admin uses a session cookie that is strictly necessary to keep you signed in. This website uses no cookies. Fonts on this site are loaded from Google Fonts, which means your browser contacts Google's servers to fetch them.
7. How long we keep data, and what happens when you uninstall
We keep shop, product, review and summary data for as long as the app remains installed, because the service cannot function without it.
When you uninstall Reviewcap, Shopify notifies the app and we delete your shop record immediately. Deleting the shop cascades to and permanently removes your products, all imported reviews, review summarisers, generated summaries, published summaries, stored questions and answers, and billing period records. Deletion is not reversible, and there is no retention window after uninstall.
Backups held by our hosting provider may retain copies for a short period until they are rotated out in the ordinary course.
If you want your data deleted while the app is still installed, or you want to make any other request described in section 8, email support@reviewcap.ai. Requests are handled manually by us and we respond within 30 days.
8. Your rights
Under the GDPR you have the right to:
- Access the personal data we hold about you and receive a copy of it.
- Rectification — have inaccurate data corrected.
- Erasure — have your data deleted.
- Portability — receive your data in a structured, machine-readable format.
- Restriction of processing, and to object to processing based on our legitimate interests.
- Withdraw consent at any time, where processing relies on consent.
To exercise any of these, contact support@reviewcap.ai. Because Reviewcap acts as a processor for review content, a shopper who wants their review data removed should contact the merchant whose shop published the review, or the review platform that collected it; we will assist that merchant in fulfilling the request.
You also have the right to lodge a complaint with a supervisory authority. In Italy this is the Garante per la protezione dei dati personali (garanteprivacy.it).
9. Security
Data is transmitted over TLS and stored in a managed PostgreSQL database that is not publicly exposed. Access to production systems is limited to the operator named in section 1. Shopify API tokens are stored so the app can act on your behalf and are removed when the shop record is deleted.
10. Changes to this policy
If we change how we process data — for example by adding a subprocessor — we will update this page and revise the "Last updated" date at the top. For changes that materially affect merchants, we will additionally notify the shop contact email address we hold for you before the change takes effect.
11. Contact
Questions about this policy or about your data: support@reviewcap.ai
Patrick Hasler, Via Renon 18/B, 39100 Bolzano (BZ), Italy