Staff Notes

Staff Notes Privacy Policy

Last Updated: August 15, 2026


1. Overview & Data Ownership

Staff Notes (“the App”), developed by Buddhadeb Mukherjee, is built exclusively for Shopify merchants to create and manage private internal administrative notes across products, orders, customers, draft orders, and abandoned checkouts. We prioritize merchant privacy and data ownership above all else.

2. Native Metafield Architecture (Zero External Data Hoarding)

All staff notes, comments, assignments, and tags created through Staff Notes are saved directly inside your store’s native Shopify Metafields ($app:content and $app:checkout_notes). We do not store your private notes or customer data in any third-party external data warehouse or broker.

3. Information Collected & Scopes

The App requests only the standard Shopify OAuth access scopes necessary to read and write notes on authorized resources:

  • Products & Draft Orders: To display and attach internal supplier, inventory, and merchandising notes.
  • Orders & Checkouts: To attach fulfillment, shipping, and follow-up notes.
  • Customers: To record VIP, communication, or account-specific staff notes.

4. GDPR, CCPA & Mandatory Webhooks

Staff Notes fully complies with Shopify’s mandatory GDPR/CCPA data privacy webhooks:

  • Customer Data Request: Any data requests are fulfilled via Shopify’s standard data export tools.
  • Customer Redaction: When a customer redaction request is received, associated metafields are purged in accordance with Shopify guidelines.
  • Shop Redaction: Upon app uninstallation, session tokens are immediately invalidated.

5. Contact Us

If you have questions about this Privacy Policy or need technical support, please contact:
Developer: Buddhadeb Mukherjee
Email: staffnotes.help@gmail.com