← Burn the Ships

Privacy policy

Last updated: September 10, 2026

Burn the Ships operates this app to analyze Shopify stores, prepare redesigns, and measure merchant-approved experiments. This policy explains the information the app processes for merchants and their storefront visitors. Contact us at go@burntheships.ai with privacy questions or requests.

Data used by the app

We use store and product information, storefront content, theme files, and order totals to identify opportunities and measure results. Experiment records contain pseudonymous visitor identifiers, order identifiers, purchase values, currency, and test assignments. We also store app authorization sessions, merchant feedback and screenshots, generated designs, and billing-plan information. Shopify authorization may also provide the signed-in merchant user’s name, email, and account role. Shopify handles subscription payment details; we do not store payment-card numbers. The app’s purchase and visitor event records do not require customers’ names, email addresses, or shipping addresses.

How we use information

We use this information to provide the app, choose the applicable order pricing band, prepare and revise designs, attribute test visits and purchases, provide support, and protect the service. Storefront test assignment uses pseudonymous browser identifiers. Analytics collection follows the Shopify customer-privacy consent settings available to the app. Merchants remain responsible for their storefront privacy notices and consent configuration. We do not sell this information or use customers’ experiment data for advertising.

Service providers and design generation

Storefront material and aggregate store analysis are processed with OpenAI services to create and review designs. Builds run on a Burn the Ships-operated computer or a hosted backup worker. Working files and review images may be stored in those environments; application data is hosted on Railway. Shopify provides installation, billing, storefront, and order services. If an experiment has a linked GrowthBook report, the app retrieves its analysis for display. Service providers may process information outside your country under their applicable terms. Do not include customer contact details, payment details, passwords, or access tokens in feedback or design briefs.

Your choices and requests

You control whether a redesign launches. You can request corrections through the app and manage the installation in Shopify. Merchants can send customer data-access and deletion requests through Shopify or contact us using the email above. Customers can contact the store where they shopped so the merchant can identify the relevant request. We process Shopify’s required privacy webhooks and keep a request record so access requests can be fulfilled. Customer redaction removes the matching purchase and associated visitor events; a suppression record helps prevent delayed events from restoring deleted information.

Retention, uninstall, and deletion

We retain app records while your store is installed and the records are needed to provide designs, historical experiment results, billing, and support. Uninstall cancels queued work and removes app authorization sessions. When Shopify sends a shop-redaction request for an uninstalled store, shop data is deleted from the application database and an erasure command is saved for local and hosted build files. Workers erase these files when available and idle; an offline computer processes the command when it returns. Files already added to your Shopify theme remain under your control in Shopify.

Recovery backups are separate from the active service and may retain earlier records until their configured expiration or removal. Contact us to include these copies, support correspondence, or a separately linked report in a deletion request. Information required to meet a legal obligation or resolve a billing or security issue may be retained for that purpose. Shopify and other providers manage their own service records under their policies.

Contact support about access, correction, or deletion.