Data & privacy
Your data stays yours.
Handing a stranger access to your store and your customer list is a real decision, so here is the plain version: what we connect to, what we do with it, how it is protected, and how you take the keys back. No certification theater, no legal fog.
The rules we run on
Four commitments, no asterisks.
We work inside your accounts
Flows, agents, and dashboards are built in your Shopify, Klaviyo, and analytics accounts. We are a named user in your tools, not a middleman holding a copy of your list.
The least access that does the job
Access is scoped to what a build actually needs. No owner seats when a staff seat works, and no standing access to systems outside the retention stack.
Revoke any time, keep everything
Remove our access in your platform settings and the work stays where it was built. Nothing stops running, and nothing leaves with us.
Never sold, never shared
Your customer data is never sold, rented, or used to train anything for another client. It is used to run your retention system and nothing else.
What we access
Every connection, and why it exists.
A retention system cannot be built blind. This is the whole list of what gets connected during a build, and the reason each one is on it.
| Platform | What we touch | Why |
|---|---|---|
| Shopify | Orders, customers, products, discounts | Build cohorts, trigger post-purchase and replenishment flows, and measure repeat revenue. |
| Klaviyo | Profiles, lists, segments, flows, campaign metrics | Build and run the email and SMS system, and read what it earned. |
| Analytics (GA4) | Traffic, conversion, and channel data | Work out true CAC and attribute repeat revenue against it. |
| Helpdesk | Ticket history and macros | Train support agents on your real questions and your brand voice. |
How it is protected
Small surface, tight habits.
The strongest protection here is structural. Your data mostly never moves: it stays inside platforms that already run serious security programs, and we operate as a scoped user inside them rather than shipping copies somewhere else.
Straight talk: webridgeAI is a small, independent studio, not an enterprise vendor. There is no SOC 2 report or ISO certificate behind this page, and we are not going to imply otherwise. What you get instead is a very small number of people with access, named accounts, and the ability to cut that access off in one click.
Practices
- Two-factor authentication on every account that touches your data
- Named individual logins, never a shared team password
- Customer data stays in your platforms; we avoid bulk exports, and any working file used during a build is deleted when it ships
- Access is reviewed at the end of the 90-day build and removed when an engagement ends
- A password manager for every credential, with nothing stored in plain text
Compliance posture
You are the controller. We are the processor.
It is your store, your customer relationship, and your list. You decide what is collected and why. webridgeAI only handles that data to deliver work you asked for, on your instructions. In practice that means a few things worth stating outright.
- webridgeAI operates from Calgary, Canada, and handles personal information under Canadian privacy law (PIPEDA).
- If you sell into the EU or UK, you are the data controller and we act as your processor under your instructions.
- Consent, unsubscribe handling, and sending rules stay enforced in your platform, where the law expects them to live.
- Marketing flows we build honour your existing consent state. We do not message people who never opted in.
Need a signed data processing agreement, a sub-processor list, or answers for your own privacy review? Ask and you will get a straight answer, including an honest no if something is outside what a studio this size can sign.
Your rights
Ask, and it gets done.
Because your data lives in your platforms, most requests are yours to run directly and instantly. For anything we touched, ask and it is handled.
- Revoke our access in your platform settings, no notice needed
- Ask what we hold and get a plain list back
- Ask for any working file to be deleted
- Take the flows, agents, and dashboards with you
Still want to see the numbers first?
The free Profit-Leak Audit runs on read-only access and tells you what your store is leaking. You can decide about everything else after.