Skip to content

Privacy Policy

Effective August 12, 2026 · Applies to the GOAT Draft Order Invoices app for Shopify and this website.

Who we are

GOAT Draft Order Invoices (“the app”) is built and operated by Conspire, a Shopify development company based in Los Angeles, California. This policy explains what information the app collects when a merchant installs it, how that information is used, and the choices merchants and their customers have.

Information we collect

When you install the app, we collect and store:

  • Store information — your store domain, store name, and contact details Shopify shares with apps, plus the API access token that lets the app read and manage draft orders on your behalf. Access tokens are stored encrypted.
  • Draft order data — draft orders and their contents (line items, prices, notes, tags, invoice URLs) and the customer name, email address, and billing and shipping addresses attached to them. This is the data the app exists to display and act on.
  • Staff account details — the name and email address of staff members who open the app, used to send onboarding and product-update email.
  • Usage events — events such as invoice views, emails sent, and feature usage, used for the app’s analytics dashboard and to improve the product.
  • Quote requests — when a customer submits a quote request, the cart contents and the contact details they provide (name, email, phone, notes).

How we use it

  • Showing each logged-in customer their own open draft order invoices on the account page, including line item details and PDF copies. Customers can only access invoices associated with their own email address.
  • Sending invoice and payment reminder emails on your behalf, and logging delivery so you can see what a customer received.
  • Operating quote requests, the admin dashboard, Shopify POS features, and support.
  • Aggregate product analytics and error monitoring so we can fix problems and improve the app.

We do not sell or rent merchant or customer data, and we do not use your customers’ personal information for advertising.

Payments

The app never sees or processes payment card details. Customers pay invoices through Shopify’s own secure invoice checkout, using the payment providers already configured on your store.

Service providers

We rely on a small number of infrastructure providers to run the app, each processing data only on our instructions: Vercel and Cloudflare (hosting and networking), Neon (database), Resend (transactional email), Sentry (error monitoring), Mixpanel (aggregate product analytics), and Intercom (support chat on this website and in the app admin).

Data retention and deletion

Data is retained while the app is installed. When you uninstall, the app’s access to your store is revoked immediately and stored sessions are deleted. We honor Shopify’s mandatory privacy webhooks: customer data requests, customer data erasure, and shop data erasure are processed automatically on the schedule Shopify defines, permanently deleting the associated records.

You can also request deletion at any time by emailing hello@conspireagency.com.

Security

All data is encrypted in transit over HTTPS and encrypted at rest by our database provider. Shopify API access tokens are additionally encrypted at the application level before storage. Access to production systems is limited to the small team that operates the app.

This website

This marketing and documentation site does not require an account and does not set advertising cookies. The support chat widget (Intercom) sets its own functional cookies when you use it.

Changes and contact

If we make material changes to this policy we will update this page and the effective date above. Questions and privacy requests: hello@conspireagency.com · Conspire, 145 S. Fairfax Ave, Suite 200, Los Angeles, CA 90036, US.