Privacy Policy
This Privacy Policy explains how Curobi (the “Curobi” app, “we”, “us”), operated by Vibhora, collects, uses, stores, discloses, and protects information in connection with the Curobi subscription application for Shopify (the “App”). It covers both the merchants who install the App and their customers whose data the App processes.
Curobi runs on Shopify’s native subscription and billing rails. Recurring charges are processed by Shopify, so the App never handles, sees, or stores customer payment-card data.
1. Our role: data processor
When you install Curobi, you (the merchant) remain the data controllerof your store’s and your customers’ personal data. Curobi acts as adata processor, processing that data only on your instructions and only to provide the App’s functionality. We do not sell personal data, and we do not use it for advertising, profiling, or any purpose beyond operating the App.
2. Information we access and store
Curobi is built to process the minimum data necessary. It accesses the following through Shopify’s APIs. Data marked transient is read in-request to create or manage a subscription and is never written to our database.
| Data | Accessed | Stored by Curobi |
|---|---|---|
| Customer ID (Shopify GID) | Yes | Yes — identifier only |
| Customer name | Yes (transient) | No |
| Shipping / delivery address | Yes (transient) | No |
| Payment-method ID (vaulted token reference) | Yes (transient) | No |
| Subscription contract data | Yes | Mirror — IDs and status only |
| Customer email | No | No |
| Customer phone | No | No |
| Payment-card / bank details | No | No |
For merchants, Curobi also stores your store domain, the offline access token issued by Shopify, and the granted API scopes so the App can operate against your store. To power its merchant dashboards, Curobi stores non-identifying operational records such as subscription status, billing dates, and aggregate analytics.
Key point: Curobi persists only Shopify identifiers (GIDs) and subscription status. Customer name, address, and payment details are read only in-request to build a subscription contract and are never stored at rest. There is no raw customer personally identifiable information (PII) in our database.
3. Shopify API scopes we request
The App requests only the scopes it needs to function:
write_products,write_purchase_options— create and manage subscription plans and purchase options.read_own_subscription_contracts,write_own_subscription_contracts— create and manage subscription contracts.read_orders— read the originating order to build a contract.read_customers,customer_read_customers— read the customer identifier and shipping address for a subscription.read_customer_payment_methods— read the vaulted payment-method reference (not card data) to attach to a contract.read_themes— render the storefront subscription widget.
Under Shopify’s Protected Customer Data requirements, the App requests access only to the Name and Address protected fields — never email or phone.
4. How we use information
- Create and manage subscription contracts, plans, bundles, and boxes.
- Render the merchant admin dashboard and the customer self-service portal.
- Recover failed recurring payments (retries and payment-update prompts).
- Send transactional and subscription-lifecycle emails on the merchant’s behalf.
- Produce aggregate analytics (e.g. MRR, churn, renewal forecasts) for the merchant.
- Maintain the security, integrity, and reliability of the App.
5. Sub-processors
We use a small number of trusted service providers to run the App. Each processes data only as needed to provide its service to us and is bound by appropriate data-protection terms.
| Sub-processor | Purpose | Region |
|---|---|---|
| Shopify Inc. | Core platform, native subscription billing, and system of record. Recurring charges are processed by Shopify — Curobi never handles or stores card data. | USA / Canada |
| Neon (Postgres database) | Stores the app's operational data (Shopify identifiers and subscription status). Encrypts data and backups at rest. | USA |
| Vercel | Application hosting and serverless compute. All traffic is served over HTTPS. | USA |
| Resend | Delivery of transactional and subscription-lifecycle emails (e.g. renewal reminders, payment-update prompts) on the merchant's behalf. | USA |
6. Data retention and deletion
We retain data only as long as needed to provide the App, and we honor Shopify’s mandatory data-privacy webhooks:
- Customer data request (
customers/data_request) — we assemble every record we hold for that customer and provide it to the merchant so they can respond within the required window. We hold no raw customer PII of our own to export. - Customer redaction (
customers/redact) — we delete the subscription records referencing that customer for the store. - Shop redaction (
shop/redact) — after a merchant uninstalls the App (approximately 48 hours later), we delete all of that store’s subscription, offer, and session records.
Deletions requested through these webhooks are completed within 30 days. We retain no personal data beyond the identifiers needed for an active subscription.
7. Security
- Encryption in transit: all connections to Shopify and to our database use TLS; the App is served exclusively over HTTPS.
- Encryption at rest: our database provider encrypts stored data and backups at rest.
- Data minimization: no raw customer PII is stored at rest — only Shopify identifiers and subscription status.
- Access control: production credentials are tightly restricted, protected by strong, unique passwords and two-factor authentication.
- Environment separation: development and production use separate deployments, databases, and credentials.
- Access logging: we emit PII-free, structured logs each time customer data is accessed, recording who/what/when — never the data values themselves.
- Incident response: we maintain a documented security-incident and breach-notification procedure. On a confirmed personal-data breach we notify affected merchants without undue delay so they can meet their own obligations (including the GDPR 72-hour window) and notify Shopify through its Trust/Partner channels.
8. International data transfers
Our sub-processors are located in the United States and Canada. Where personal data is transferred internationally, it is protected by appropriate safeguards (such as Standard Contractual Clauses) and by the data-protection terms in the Shopify Partner Program Agreement and API Terms, which govern our processor relationship.
9. Your rights (merchants and customers)
Depending on your location, you may have rights under laws such as the GDPR and the CCPA to access, correct, delete, or restrict the use of your personal data, and to object to or port it.
- Customers of a store: because we process your data on behalf of the merchant (the controller), please direct data-subject requests to the store you subscribed with. The merchant can trigger data-request and deletion through Shopify, and we will act on it.
- Merchants: you can uninstall the App at any time, which triggers deletion of your store’s data as described in Section 6, or contact us directly using the details below.
We do not engage in automated decision-making or profiling about customers.
10. Cookies and the Curobi website
This website (curobi.com) uses Google Analytics to understand aggregate, anonymized traffic and improve our content. These analytics cookies are set only on our marketing website and are unrelated to the data the App processes inside a merchant’s store. You can block or delete cookies through your browser settings.
11. Children’s privacy
The App is a business tool for Shopify merchants and is not directed to children. We do not knowingly collect personal data from children.
12. Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will revise the effective date above and, where appropriate, notify merchants. Your continued use of the App after an update constitutes acceptance of the revised policy.
13. Contact us
For any question about this policy or to exercise a data-protection right, contact us at:
- Email: info@curobi.com
Curobi is operated by Vibhora. Curobi is not affiliated with or endorsed by Shopify Inc.
6 months free, on us.
The first 50 stores to install Curobi get 6 months of full access — every feature and 0% transaction fees — completely free. No card required, no catch.
Reserve your spot
Tell us where to reach you and we'll lock in your founding-merchant offer.
You're on the list.
Thanks — we've got your details and we'll be in touch to lock in your spot.
