Reorda, Privacy Policy
Last updated: September 30, 2026
Reorda ("we", "our", "the app") is a Shopify app that helps merchants manage suppliers, purchase orders, and low-stock alerts. This policy describes what data we access and how we use it.
What we access
- Products and inventory, product titles, SKUs, variants, and inventory quantities, to let you create purchase orders and track low stock.
- Order line items, variant ID, SKU, and quantity ordered (via the orders/create webhook and periodic sync), used only to calculate a 30-day sales velocity per product for low-stock forecasting.
- Locations, to let you choose where purchase orders are received.
Customer information
Inventory features use product and order-line information, not customer profiles. Shopify webhook payloads may include additional order fields; our sales calculations use variant IDs and quantities. We do not build or store customer profiles or use customer contact or payment information for replenishment calculations.
Data we store
We store, per shop: suppliers you add (including any supplier data you import from a Stocky CSV export), purchase orders and their line items, product-to-supplier price links, low-stock thresholds, stocktake counts, aggregate sales statistics per product, and the authentication tokens required to operate the app. We also store shop settings, stock transfers, inventory snapshots, supplier invoice links and Shopify session metadata. Trial and subscription eligibility records are retained to prevent trial resets after reinstallation. Deletion is described below.
Data sharing
We do not sell your data. Service providers process data needed to host, secure, monitor and operate Reorda. Purchase order emails are sent to the supplier email addresses you provide, and optional daily low-stock digest emails are sent to the address you configure in Settings, via our email delivery provider (Resend).
Where your data lives
Application and database hosting and database backup processing are provided by Railway. Email delivery is provided by Resend. Cloudflare provides website traffic handling and backup storage. Historical backup artifacts on GitHub expire under their existing retention policy; new backups are stored in Cloudflare R2. Sentry is used for error monitoring when configured; operational alerts can be delivered through Telegram. These services may process relevant technical metadata. This policy does not imply that every provider receives every category of shop data.
Data retention and deletion
Uninstalling does not immediately erase purchasing history. Operational shop data is removed when Shopify sends its mandatory shop/redact request, normally at least 48 hours after uninstalling. Limited trial eligibility records are retained to prevent repeated trial resets. Backup copies are separate from the live database and can remain until removed under their storage retention settings. Contact us to request access or deletion and discuss any retained records or backup copies.
Contact
Questions about this policy or your data: support@reorda.app