Giftpop ("the app") is a Shopify app that adds free-gift-with-purchase, BOGO, and gift-with-purchase offers to a merchant's store. This policy explains what data the app accesses and how it is handled.
When a merchant installs Giftpop, the app accesses, via the Shopify Admin API:
read_products) — to let the merchant choose a gift product and build rules.write_discounts) — to create and update the automatic discount that prices the gift.Giftpop does not read or store customer personal data, order contents, or payment information.
On Giftpop's servers (Supabase / Postgres, hosted in the EU) we store only:
No end-customer personal data is stored.
The storefront banner runs in the shopper's browser. It reads the cart and adds/removes the gift item. It does not collect, transmit, or store any personal data about shoppers.
We do not sell or share data. Sub-processors: Shopify (platform), Supabase (database), and our hosting provider. Each processes data only to operate the app.
app/uninstalled webhook).shop/redact webhook).customers/data_request and customers/redact webhooks are honored; since we store no customer data, there is nothing to return or erase.Merchants (and their customers) may request access to or deletion of any data we hold by contacting us. Because we store no customer-level data, most requests resolve immediately.
support@brandpeneur.com
Brandpeneur B.V. · KvK 88576655 · VAT NL864700301B01
Burgemeester Pabstlaan 10-B1, 2131 XE Hoofddorp, Netherlands
© 2026 Brandpeneur B.V. · Giftpop