Privacy Policy
Last updated 10 September 2026
HashiraLabs provides product sourcing, quotation, fulfilment and shipping services to online sellers. This policy explains what information we collect through our website, our client portal and the HashiraLabs app for Shopify, why we collect it, and how we protect it.
Information from connected Shopify stores
When a merchant installs the HashiraLabs app, we receive read-only access to their store through the Shopify Admin API. We read:
- Products: titles, descriptions, images, variants, SKUs, weights and customs codes.
- Inventory and locations: stock levels and the locations that hold them.
- Orders: order numbers, dates, payment and fulfilment status, line items, quantities, totals, fulfilments and tracking numbers, and the destination country.
We do not request or store the names, email addresses, phone numbers or street addresses of the merchant’s customers. The app never changes anything in the store.
We use this information only to provide our services to the merchant: reconciling orders and stock, planning sourcing and shipments, and showing the merchant their own data in the app and in our client portal. We process it on the merchant’s behalf and follow the merchant’s instructions.
Information you give us
When you send an enquiry or request a quote, we collect the details you choose to enter, such as your contact details, your company and what you want to source, and use them to reply and prepare quotes. Client portal accounts hold a login email address and password.
Cookies
Our client portal uses a cookie to keep you signed in. The HashiraLabs app for Shopify uses no cookies; it authenticates with session tokens issued by Shopify. Our website does not use advertising or analytics cookies.
How we protect information
Information is transmitted over encrypted connections (TLS), and Shopify access credentials are encrypted at rest. Access to store data is limited to HashiraLabs staff who need it to serve the merchant.
How long we keep it
- When a merchant uninstalls the app, we delete its access credentials immediately and stop reading the store.
- When Shopify asks us to erase a store’s data, which it does 48 hours after the app is uninstalled, we delete the store’s synced products and orders.
- When Shopify forwards a customer’s erasure request, we delete the orders it names.
- Enquiries and client account details are kept while we have a business relationship with you, and deleted on request unless the law requires us to keep them.
Sharing
We do not sell or rent personal information. We share it only with providers that host and operate our platform on our behalf, with carriers and warehouses where needed to fulfil an order you have asked us to handle, and where the law requires it.
Your choices and rights
Merchants can disconnect at any time by uninstalling the app from their Shopify admin. You can ask us to access, correct or delete information we hold about you by emailing admin@hashiralabs.com. We respond within 30 days.
Contact
Questions about this policy: admin@hashiralabs.com. We will post any changes on this page and update the date above.