Privacy policy
KOALABS LLC operates S4G Connector, which adds verified commerce context to GitHub issues for stores that install and configure the app.
Data the app processes
The app processes the Shopify store domain, encrypted Shopify access and refresh tokens, granted scopes, the connected GitHub installation and repository names, GitHub issue titles, bodies, comments, usernames, and URLs. To verify references, it reads product, variant, theme, and order identifiers and order names or numbers. It does not request or read customer names, email addresses, phone numbers, postal addresses, payment details, or full order contents.
How data is used and shared
Data is used only to detect and verify commerce references and maintain the app's context comment. Relevant issue text and verified commerce facts can be sent to Google's Gemini API to extract references and generate a short technical diagnosis. Generated comments are posted to the connected repository through GitHub. Shopify, GitHub, Google, and the app's infrastructure providers process data under their own terms. We do not sell personal data or use it for advertising.
Storage and retention
Shopify tokens are encrypted at rest. The app stores store-to-repository mappings and webhook delivery identifiers, but it does not store copies of orders or customer records in its database. Store credentials and mappings are removed when the app is uninstalled, and remaining shop records are deleted when Shopify sends a shop-redaction request. Webhook delivery identifiers are retained for up to 30 days for replay protection. Content posted to GitHub remains subject to the repository owner's GitHub retention and deletion controls.
Your choices and contact
A merchant can stop processing by uninstalling either integration. For access, correction, deletion, or privacy questions, email dario@mory.dev.