Who we are
Storestead Labs provides QuoteStead, a Shopify app.
Contact: contact@quotestead.com
What data we process
QuoteStead is a business-to-business quoting and ordering app. To provide it, we process:
- Buyer and contact data: name, email address, phone number, job title, and the company they buy on behalf of.
- Billing and shipping addresses attached to buyer organizations, quotes, and orders.
- Quote, quote request, and lead content: line items, pricing, notes the buyer or merchant staff enter, and the status history of each record.
- Merchant staff data: the display name and email of each team member added to the app, linked to their Shopify staff account for sign-in.
- Shopify session and authentication data, including access tokens, needed to call the Shopify Admin API on the merchant's behalf.
- Access and activity logs: a record of which staff member viewed or changed a given customer, contact, quote, request, or lead, used for security and accountability.
Why we process data
- Authenticate the app and maintain installed shop sessions.
- Let merchant staff build, send, and track quotes and orders for their B2B buyers, and let invited buyers view and act on their own quotes through the buyer portal.
- Match buyers to the correct company, location, and pricing terms.
- Maintain an access log of who viewed or changed protected customer data, for security review and incident response.
- Operate billing, security, diagnostics, and optional automation.
Data retention
- Shopify session records are retained for up to 30 days after expiry, then deleted.
- Access and activity log entries are retained for up to 180 days, then deleted.
- Quotes, requests, leads, organizations, contacts, and orders are retained for the life of the app installation, since merchants rely on them as ongoing business records.
- If a merchant uninstalls the app, all of the above business records for that store are deleted within the window Shopify requires after receiving the uninstall webhook.
- If a buyer's personal data must be erased while the app remains installed (for example, at Shopify's or the buyer's request), we anonymize the identifying fields — name, email, phone, and address — on their quotes, requests, and leads, and delete their contact and sign-in records, while keeping the underlying business record (amounts, line items, status) intact. Free-text notes and historical activity-log entries written before a redaction request may still reference the buyer by name; these age out automatically under the 180-day access-log retention period above.
Subprocessors
- Shopify: App platform, merchant installation, and commerce data source.
- Postgres: Application database storage.
Security
All traffic to and from the app is served over HTTPS, and the app database connection requires TLS. Shopify session tokens are encrypted at rest with AES-256-GCM before persistence. Buyer portal sessions use signed, tamper-evident cookies. Access to protected customer data within the app is limited to authenticated merchant staff and logged as described above.
Updates
We may update this policy from time to time. Material updates will be reflected by revising the effective date on this page.